# SMCR – Are you Ready?
Author:  Pal Sinha, Barnali 
Author URL: https://financedigest.com/author/pal-sinha-barnali
Published: 2019-03-07
Category: FINANCE
Category URL: https://financedigest.com/category/finance
Meta Title: Understanding the Senior Managers and Certification Regime
Meta Description: Learn how the SMCR aims to drive governance, increase accountability, and deter misconduct within the financial services industry, with potential consequences
URL: https://financedigest.com/smcr-are-you-readyhtml

![undefined](https://prod.superblogcdn.com/site_cuid_cm5qst7v3003gwirgwqtxn8i8/images/smcr-1736839115641-compressed.png)

_By_ **_Bruce Penson,_** _Managing Director of Pro Drive IT_

If there were a major cyber security breach at your company, what would happen? Chances are it would be very difficult to pinpoint the exact person or people responsible, meaning those involved could potentially get off scot-free.

Now, what if the responsibility of any wrongdoing wasn’t placed on your firm but lay solely on senior managers? Suddenly it’s a whole different ball game. The Senior Managers and Certification Regime (SMCR) has created a real culture of fear within the financial [services industry](https://www.financedigest.com/balancing-innovation-and-security-within-the-financial-services-industry.html "Balancing innovation and security within the financial services industry") – and rightly so. We’re not just talking a slap on the wrist; concerns include a hefty fine at best and potentially imprisonment in the worst-case scenario.

By now, anyone [working within the sector will already be well](https://www.financedigest.com/biden-says-he-is-doing-well-working-after-testing-positive-for-covid.html "Biden says he is ‘doing well,’ working after testing positive for COVID") aware of the extended SMCR regulations coming into force from 9th December 2019. But the question is: are you really prepared for them?

**Why was the regime introduced?**

When years of irresponsible lending by banks came to a head in the great financial [crisis](https://www.financedigest.com/six-ways-to-prepare-for-a-personal-finance-crisis.html "Six ways to prepare for a personal finance crisis") of 2008, an opaque and bureaucratic system meant people were able to easily hide behind others. As a result, regulators struggled to find the individuals responsible and it was the taxpayers who [ended up bailing out the banks](https://www.financedigest.com/more-banks-join-european-instant-payments-pilot-from-end-2023.html "More banks join European instant payments pilot from end 2023").

To help drive governance and accountability within financial [services firms](https://www.financedigest.com/how-financial-services-firms-can-mitigate-against-their-top-data-security-threats.html "How Financial Services Firms Can Mitigate Against Their Top Data Security Threats"), the Financial Conduct Authority (FCA) then introduced the SMCR, which aims to deter misconduct and improve awareness of conduct issues across firms – as well as ensure retail customers are protected.

Banks and the larger regulated [insurance firms](https://www.financedigest.com/digital-marketing-for-finance-and-insurance-firms-is-changing-are-you-ready.html "Digital marketing for finance and insurance firms is changing — Are you ready?") are already subject to the SMCR. But this will now be extended in December 2019 to cover all other FSMA authorised firms too, as the FCA seeks to place an even greater emphasis on personal accountability.

For too long, it has been easy to pass the buck or hide behind other individuals. Not anymore. Senior managers [must start taking active measures NOW to show their firm](https://www.financedigest.com/oil-firms-must-step-up-exploration-off-norway-to-unlock-potential-npd.html "Oil firms must step up exploration off Norway to unlock potential -NPD") is acting according to the clients’ best interests, within suitable conduct rules.

**Who is most likely to get caught out?**

Although other [members of staff](https://www.financedigest.com/gumgum-appoints-new-staff-members-across-germany.html "GumGum appoints new staff members across Germany") are subject to the certification part of the regime, it still ultimately goes all the way to the top – and this is where the regulators will come knocking should something go wrong. As such, the prospect of the SMCR is perhaps scarier for large corporations. Would you feel comfortable having ultimate responsibility for the hundreds of employees beneath you who could potentially do something wrong?

However, big organisations will also have a [whole team](https://www.financedigest.com/are-your-it-team-telling-you-the-whole-truth.html "Are your IT team telling you the whole truth?") dedicated to ensuring the correct processes are in place and that they are carried out to the letter. But what if you’re a small to medium FCA solo [regulated firm](https://www.financedigest.com/evolving-ransomware-and-regulations-is-your-firm-ready.html "Evolving Ransomware and Regulations: Is your firm ready?") or a one-man IFA? Chances are you’ll have to take on all these responsibilities and do a lot of the work yourself.

Smaller firms often won’t have the necessary knowledge or resources needed to ensure the company practices are compliant or to continually monitor processes. But if it’s your neck on the line, then you definitely won’t want to be [cutting any corners](https://www.financedigest.com/when-it-comes-to-cookies-lets-not-cut-corners.html "When it comes to cookies, let’s not cut corners"), so outsourcing can prove invaluable.

**How can Pro Drive IT help?**

Most firms already have suitable systems to spot and deal with typical financial crime like [money laundering](https://www.financedigest.com/are-compliance-and-anti-money-laundering-aml-regulations-hurting-your-sales.html "Are compliance and anti-money laundering (AML) regulations hurting your sales?") and insider dealings but are completely out of their depth when it comes to cyber crime.

[Cyber security is a growing and constantly evolving industry](https://www.financedigest.com/industrial-cyber-security-solutions-and-services-strong-increase-in-user-base-pans-out-for-north-america-to-lead-market.html "Industrial Cyber Security Solutions and Services – Strong Increase in User Base Pans Out for North America to Lead Market") though and a significant threat to companies big and small.

So, to protect the [integrity](https://www.financedigest.com/why-embedded-finance-will-be-integral-in-the-future-of-b2b-marketplaces.html "Why embedded finance will be integral in the future of B2B Marketplaces") of your financial system, you’ll need the help of someone with expertise in the field who you can trust to outsource these prescribed responsibilities to. Someone who can run a [full diagnostic and help you get all the right documentation in check](https://www.financedigest.com/britain-delays-full-post-brexit-import-checks-until-late-2023-2.html "Britain delays full post-Brexit import checks until late 2023") to ensure you’re covered in the event the regulators come after you – and who understands the repercussions of getting it wrong.

This is where we come in. Our [services include a range of Cyber](https://www.financedigest.com/a-culture-of-cyber-security-throughout-financial-services-organisations.html "A Culture of Cyber Security Throughout Financial Services Organisations") Essentials packages that help you prepare for the UK government standard. Not only will this help you guard against the most common [cyber threats](https://www.financedigest.com/7-cyber-threats-fintech-companies-should-watch-out-for.html "7 Cyber Threats FinTech Companies Should Watch Out For") (the certification can reduce the threat of attack by up to 80%), but it will also demonstrate and prove to regulators that you are committed to cyber security and have taken the appropriate measures to ensure compliance.


---
This blog is powered by Superblog. Visit https://superblog.ai to know more.
---

