Infosecurity Fall 2017 Virtual Conference Agenda

I’m speaking at the Infosecurity Fall 2017 Virtual Conference September 20th. My session will be discussing, “All You Need to Know about NYC Cyber Regulations” with two other speakers.

New regulations announced this year will ensure that within New York State, there will be ‘minimum security standards’ that financial services firms will be obliged to meet. The intention of these measures is to encourage organizations to keep pace with changes in technology and ensure a cybersecurity program that ‘is adequately funded and staffed’.

In this opening keynote, we will look at the over-arching obligations of the NYC Cyber Regulations and evaluate what the minimum standards will be and how businesses will need to adapt to fit into this framework.

What exactly are the NYC Cyber Regulations?

  • How can businesses comply and what could the penalties be for non-compliance?
  • Will this spread to other states, like DC and Massachusetts, or even California?
  • How does this effect national companies who operate in all different States, including NYC?

Sign up for the virtual conference with Infosec Magazine here: https://www.infosecurity-magazine.com/virtual-conferences/imvc-fall-2017/

Continue reading Infosecurity Fall 2017 Virtual Conference Agenda

Posted in SBN

What’s needed for the first NYS DFS cybersecurity transitional phase?

The first transitional phase of the New York State’s Department of Financial Services (NYS DFS) cybersecurity regulation is upon us. As of August 28th, 2017 covered entities are required to be in compliance with the first phase of the 23 NYCRR Part 500 standard.

The NYS DFS was kind enough not drop the entire regulation on businesses all at once and broke up adherence within transitional phases. This means organizations will have the opportunity create a phased approach based off these transitional phases to become compliant over the next two years.

With the first phase expiring shortly it means covered entities are required to have these particular aspects of the regulation in place during this timeframe.

For the first transitional phase covered entities that aren’t exempt will need to adhere to the following sections within the guidance. Read the rest of my article at HelpNetSecurity here:

https://www.helpnetsecurity.com/2017/08/23/nys-dfs-cybersecurity-transitional-phase/

Continue reading What’s needed for the first NYS DFS cybersecurity transitional phase?

Posted in SBN