Credit Reporting Agency Signs Data Security Improvement Deal with 8 States

Weiner Brodsky Kider PC

Weiner Brodsky Kider PC

Regulators in eight states signed a consent order with a large, national credit reporting agency requiring it to improve its data security and information technology systems in order to prevent potential harm caused by an event akin to its 2017 data breach, wherein hackers stole the personal information of over 147 million people.  The multi-state consent order became effective on June 25, 2018.

Although the credit reporting agency says it has taken steps to remedy its data security issues, regulators in the participating states—Texas, California, New York, Massachusetts, North Carolina, Georgia, Alabama and Maine—required it to take further measures to address deficiencies in its current assessment and auditing programs.

The consent order requires that the credit reporting agency:

  • Require its board of directors to approve an information risk assessment within 90 days;
  • Review, approve, and improve oversight and documentation with regard to its vendor management, patch management, and information security programs;
  • Submit a list of its ongoing remediation projects to all eight participating states; and
  • Establish and intuit an internal technology audit program.

The consent order may be found here.

DISCLAIMER: Because of the generality of this update, the information provided herein may not be applicable in all situations and should not be acted upon without specific legal advice based on particular situations.

© Weiner Brodsky Kider PC | Attorney Advertising

Written by:

Weiner Brodsky Kider PC

Weiner Brodsky Kider PC on:

Reporters on Deadline

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
Custom Email Digest
- hide
- hide

This website uses cookies to improve user experience, track anonymous site usage, store authorization tokens and permit sharing on social media networks. By continuing to browse this website you accept the use of cookies. Click here to read more about how we use cookies.