SECP calls for precautionary measures for eZfile portal to avoid cyber attacks

SECP brings to light new precautions in circular number 23 of 2024 on cybersecurity guidelines for eZfile users
An undated image. — SECP
An undated image. — SECP

In what seems to be a proactive approach aimed at reducing the risks of any potential cyber attack, the Securities and Exchange Commission of Pakistan has issued an advisory.

The warning requires the corporate users of eZfile to take precautionary measures to avoid potential misuse or misreporting of company data in the eZfile portal.

Perhaps owing to an expected cyber attack, the commission brought to light this precaution in circular number 23 of 2024 on cybersecurity guidelines for eZfile users.

Launched in February earlier this year, the portal was designed to make it easier for users to submit documents, striking the portal with overhauled experience (UX) and regulatory compliance.

Although the portal offers secured access to its data, the advisory urges users to pay heed to mishaps while entering their login credentials to ensure utmost data protection, as these credentials serve as the gateway leading to sensitive corporate data and allow them to access company records.

In case of non-compliance, higher-ups and key decision-makers in corporate governance might risk their eZfile login credentials, leading to potential data breaches, unauthorised access, data manipulation and changes to company records.

The securities commission also directed all the directors, chief executives, subscribers, authorised officers and authorised intermediaries, obliging them to fetch eZfile login credentials by registering with the Commission.