Financial Services Firms Face New Cybersecurity Regulation

White and Williams LLP
Contact

White and Williams LLP

The close of 2019 witnessed a significant development in data security law that impacts companies engaged in the trading of public securities, as well as those companies that provide services to such organizations. Nationwide, the regulation significantly impacts approximately 3,000 organizations, including banks, securities brokerage firms and insurance carriers.

In October, the National Securities Clearing Corporation (NSCC) filed with the SEC a Proposed Rule Change to Require Confirmation of Cybersecurity Program. The regulation requires NSCC members, as well as organizations applying for membership, to submit a Cybersecurity Confirmation as part of the initial membership application and on an ongoing basis at least every two years. In addition, any organization that reports trade data to the NSCC could be held to the same standard. The Cybersecurity Confirmation is a form provided by NSCC that, according to the new rule, must be “signed by the submitting entity’s designated senior executive” making “specific representations regarding the submitting entity’s cybersecurity program and framework.”

The regulation went into effect on December 9, 2019 meaning that NSCC members are now federally regulated in terms of the substance and reasonableness of their written cybersecurity programs, with a member of senior management responsible for certifying compliance. This is no simple “check-the-box” undertaking.

[View source.]

DISCLAIMER: Because of the generality of this update, the information provided herein may not be applicable in all situations and should not be acted upon without specific legal advice based on particular situations.

© White and Williams LLP | Attorney Advertising

Written by:

White and Williams LLP
Contact
more
less

PUBLISH YOUR CONTENT ON JD SUPRA NOW

  • Increased visibility
  • Actionable analytics
  • Ongoing guidance

White and Williams LLP on:

Reporters on Deadline

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
Custom Email Digest
- hide
- hide