Cybersecurity consulting and managed security services built exclusively for Registered Investment Advisers — aligned with Regulation S-P, NIST CSF 2.0, and the day-to-day realities of running an RIA.
Get StartedAdvisorDefense is the cybersecurity partner built around how RIAs actually operate, delivering rigorous, RIA-specific protection to firms of every size. We provide the tools, expertise, and strategies firms need to navigate a constantly evolving landscape of cyber risk and regulation. Through our affiliation with AdvisorAssist, a leading RIA compliance and risk management consulting firm, we deliver fully integrated compliance and cybersecurity solutions.
Purpose-built for the RIA channel, not a one-size-fits-all service provider.
Led by an industry veteran with decades of real-world CISO experience inside RIAs, asset managers, and broker-dealers.
Services aligned to the SEC's Reg S-P amendments, NIST CSF 2.0, and NIST SP 800-30.
Core cybersecurity capabilities built around how RIAs actually operate.
Annual NIST CSF 2.0 / SP 800-30 assessments tailored to your environment, vendors, and data flows.
Curated library of vendor findings covering the FinTech, CRM, archiving, and portfolio management tools RIAs actually use.
Hands-on help responding to SEC and state cybersecurity exam requests, DOL information demands, and regulator follow-ups.
Cybersecurity Policy and Incident Response Plans aligned to Reg S-P, with annual reviews and RIA-specific tabletop exercises.
Microsoft 365 and Google Workspace security inspections benchmarked to CIS Foundations and CISA cloud best practices.
Embedded IR support — assessment, containment, evidence preservation, and 30-day client notification analysis.
Philip Coniglio is the founder and CEO of AdvisorDefense. With over two decades of experience in financial services technology and security, he has held senior leadership roles at some of the industry's most prominent firms. Philip currently serves as Chief Information Security Officer (CISO) for AdvisorAssist, Outsourced CISO for Private Advisor Group, and Fractional CISO for Archive Intel. Previously, he was CISO and Chief Technology Officer of Private Advisor Group, where he led enterprise-wide technology and cybersecurity strategy for one of the country's largest RIA networks. Before that, Philip spent over a decade at International Value Advisers as CISO and Director of Fund Operations, helping scale the firm's infrastructure as it grew from $100 million to $20 billion in assets under management. Earlier in his career, he served as Director of Investment Products and Managed Accounts at Morgan Stanley, overseeing more than $500 billion in assets. Across every role, Philip has built practical, scalable, and secure solutions aligned with regulatory expectations and business growth.
The SEC's amended Regulation S-P requires RIAs to enhance how they safeguard client information. Firms must detect, respond to, and recover from unauthorized access to client data — with formal procedures for assessment, containment, and client notification within 30 days, plus oversight of service providers and breach notifications within 72 hours. AdvisorDefense helps you meet these mandates.
Detect, respond to, and recover from unauthorized access to client data — with formal procedures for assessment, containment, and client notification within 30 days.
Vendor due diligence and ongoing monitoring to confirm your service providers have robust controls — including breach notifications within 72 hours.
Tiered programs aligned to your firm's size, risk, and regulatory profile — from foundational compliance to a fully managed cybersecurity partnership.
Foundational cybersecurity and compliance program for smaller RIAs, with annual risk assessment, written policies, ongoing strategy calls, and AdvisorCloud360® platform access.
Expanded program for growing RIAs that need a more active cybersecurity partner — adding gap analysis, quarterly strategy engagement, MSP oversight, limited exam support, and our vendor risk management library.
Our most comprehensive program for larger or more complex RIAs — adding monthly strategy engagement, full regulatory exam support, and annual firm-wide cybersecurity training.
Targeted modules that can be added to any tier — or, in select cases, engaged on their own to address a specific need.
Curated library of vendor security findings covering the FinTech, CRM, archiving, and portfolio management tools RIAs actually use.
Included in CA and CAP. Available as an add-on to CE or on a standalone basis.
Incident Response Plan, RIA-specific tabletop exercises, an IR-focused risk assessment, and remediation guidance when an event occurs.
Available as an add-on to any tier or on a standalone basis.
Deeper technical assessments including Microsoft 365 and Google Workspace security reviews benchmarked to CIS Foundations and CISA cloud best practices.
Available as an add-on to any tier.
Ongoing oversight of supervised persons, covering personal device use, communication monitoring, and access reviews aligned to RIA supervisory obligations.
Available as an add-on to any tier. Scales with your supervised-person count.
Optional managed security controls available alongside any tier.
Access your personalized cybersecurity dashboard, reports, and resources through our secure Client Portal.
Client PortalReach out for a tailored conversation about your firm's risk profile, regulatory exposure, and the program that fits — including a complimentary 30-minute RIA cybersecurity consultation.
Phone: (800) 456-5357
Email: sales@advisordefense.com
892 Plain Street | Suite 10 | Marshfield, MA 02050
By contacting us, you agree to our Privacy Policy. SMS consent is not shared with third parties.