Sullivan & Cromwell LLP Logo
  • Home
  • Lawyers
  • Practices
  • Insights
  • About
  • Careers
  • Alumni
  • Twitter icon
  • LinkedIn icon
  •  icon
  • Podcasts icon
© 2025 Sullivan & Cromwell LLP
    • Home
    • Lawyers
    • Practices
    • Insights
    • About
    • Careers
    • Alumni
    Home /  Insights /  Memos, Newsletters And Alerts /  Memo
    S&C Memos

    SEC Charges SolarWinds and Its CISO with Fraud and Internal Controls Failures

    Full Memo
    • Related Practices
    November 6, 2023

    Complaint Alleges Knowledge and Concealment of Poor Cybersecurity Practices and Heightened Cyber Risks

    On October 30, 2023, the SEC filed a complaint against SolarWinds Corporation and its Chief Information Security Officer alleging securities fraud and failures under the internal accounting controls, reporting, and disclosure controls provisions of the Securities Exchange Act in connection with allegedly material cybersecurity weaknesses and risks. The SEC’s cybersecurity action is novel in several respects, including in alleging securities fraud in violation of Rule 10b-5, internal accounting controls violations, and charges against a CISO individually. The SEC’s allegations have significant implications for companies’ cybersecurity governance, risk management, and control frameworks, and for executives with cybersecurity oversight responsibilities.

    Read More

    Read More
    Stay Updated

    Subscribe to stay current on S&C Insights.

    Related Practices

    • Capital Markets
    • Corporate Governance
    • Cybersecurity
    • Litigation
    Sullivan & Cromwell LLP Logo
    • Twitter icon
    • LinkedIn icon
    • RSS Feed icon
    • Podcasts icon
    • Home
    • Contact Us
    • Information Policy Relating to Cookies
    • Privacy Policy
    • California Privacy Policy
    • Website Notice
    • Attorney Advertising Notice
    © 2025 Sullivan & Cromwell LLP