The Commodity Futures Trading Commission is proposing to amend existing regulations regarding cyber-security testing and safeguards for the automated systems used by the entities it regulates.

The proposals, unanimously approved on Wednesday, identify five types of cyber-security testing as essential to a sound system safeguards program: vulnerability testing, penetration testing, controls testing, security incident response plan testing, and enterprise technology risk assessments. Derivatives clearing organizations, designated contract markets, swap execution facilities, and swap data repositories will be required to conduct each of the five types of cyber-security testing.