Compliance

FFIEC Extends Filing Deadlines Amid COVID-19 Crisis

The Council’s members met last week to discuss their response to the growing crisis… An article review. As the COVID-19 crisis deepens, many industries have been facing delays and disruptions.  The FFIEC acknowledged those disruptions in a press release last W...

FFIEC Releases Updated Pandemic Guidance

As reports of Coronavirus spread, the agency has updated its 2007 guidance… An article review. As what began as a few isolated incidents late last year have bloomed into a what some are calling a pandemic, fears of Coronavirus (also known as COVID-19) have spread in...

The Threat From Within

One of the biggest data security threats you face comes from inside… An article review. We spend a lot of time thinking about the threats to our network posed by hackers: from ransomware and phishing scams to data breaches, we often view the culprit as being some un...

From Arizona to Wyoming: An Inventory of State Laws

What do you need to be compliant in your state? An article review. One subprocess to incident response many of our banking Clients are currently wrestling with is how to address customers living in “other states.” If we’re on the border between Indiana a...

California Implements New Consumer Privacy Law

The California Consumer Privacy Act is here, but its impact remains unclear… An article review. On January 1st a new consumer privacy law went into effect in California, and while some are calling it “California’s GDPR,” the impact of the new legis...

FFIEC Updates Business Continuity Guidelines

New Guidance On Business Continuity Is Now Available… An article review. As part of a continuing effort to remain up-to-date as technology evolves, the FFIEC has announced the first updates to their guidance on business continuity management since 2015. The new Busi...

Four out of Five Schools Admit To Cybersecurity Incidents

Four out of five schools have experienced a cybersecurity incident… An article review. While it seems like these days every organization faces cybersecurity threats, as we’ve pointed out in the past schools are an increasingly attractive target to hackers—and a new ...

FFIEC Emphasizes The Importance of Standardized Cybersecurity Assessments

These tools will help you assess and improve your cybersecurity preparedness… An article review. If you’re a regular reader of our blog, you know that we think cybersecurity training and the tools that go along with it are vitally important to any organization that ...

Four Risk Appetite Statements

Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . For all the same reasons a board of directors would want to establish a risk appetite statement on loan risk or other major risk categories, the 2015 Cybersecurity Assessm...

Microsoft Considers Changing Password Guidance

Password expiration rules can create more problems than they solve… An article review. Passwords, it seems, are a lot like diets. They’re often necessary, but no one really wants to have to deal with them–and we’re always looking for the next trick...