The New York State Department of Financial Services has been actively working on proposed updates to their Cybersecurity Requirements for Financial Services Companies.
Dating back to August 2017, the NYDFS has steadily increased and matured regulations: protection of consumers non-public data, documented and board approved policies, and authority notification timelines for when an incident has occurred are samples of a few NYDFS demands. Much of this proposal mirrors the SEC cybersecurity regulations.
Institutions regulated by the NYDFS are required to follow the updated regulations. The maturing of the NYDFS regulations clearly reflect a response to the ever increasing and complex threat landscape. The agency noted that from January 2020 and May 2021, 74 ransomware attacks were reported, some causing days-long shutdowns.
What’s new?
While these regulations are still proposals, it’s fair to say that financial institutions and third parties servicing financial institutions can count on higher demands.
To learn more or continue this conversation, please contact Fortrex Technologies for a no-obligation meeting.