Close Menu
Global News HQ
    What's Hot

    Tomb Raider announces two new games

    December 12, 2025

    Transforming agent marketing: Task-bound to scalable systems

    December 12, 2025

    So Much Bonus Money! – See Also – Above the Law

    December 12, 2025
    Recent Posts
    • Tomb Raider announces two new games
    • Transforming agent marketing: Task-bound to scalable systems
    • So Much Bonus Money! – See Also – Above the Law
    • A Britney Spears Producer Turned Blockchain Mogul Listed His Miami Beach Home for $11 Million
    • We Asked 4 Travel Experts the Best Way to Get a Flight Upgrade—and They All Agreed on These Top Tips
    Facebook X (Twitter) Instagram YouTube TikTok
    Trending
    • Tomb Raider announces two new games
    • Transforming agent marketing: Task-bound to scalable systems
    • So Much Bonus Money! – See Also – Above the Law
    • A Britney Spears Producer Turned Blockchain Mogul Listed His Miami Beach Home for $11 Million
    • We Asked 4 Travel Experts the Best Way to Get a Flight Upgrade—and They All Agreed on These Top Tips
    • Is Dogecoin Waking Up? Critical On-Chain Metric Explodes Higher
    • Amy Schumer sells Brooklyn Heights “Moonstruck” home for $11M
    • Gemini’s Tyler Winklevoss Thanks Trump for Ending the Biden Administration’s War on Crypto After DCM License
    Global News HQ
    • Technology & Gadgets
    • Travel & Tourism (Luxury)
    • Health & Wellness (Specialized)
    • Home Improvement & Remodeling
    • Luxury Goods & Services
    • Home
    • Finance & Investment
    • Insurance
    • Legal
    • Real Estate
    • More
      • Cryptocurrency & Blockchain
      • E-commerce & Retail
      • Business & Entrepreneurship
      • Automotive (Car Deals & Maintenance)
    Global News HQ
    Home - Legal - NYDFS Annual Compliance Submissions Due April 15, 2025 and New Compliance Requirements Effective on May 1, 2025
    Legal

    NYDFS Annual Compliance Submissions Due April 15, 2025 and New Compliance Requirements Effective on May 1, 2025

    Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp VKontakte Email
    NYDFS Annual Compliance Submissions Due April 15, 2025 and New Compliance Requirements Effective on May 1, 2025
    Share
    Facebook Twitter LinkedIn Pinterest Email


    As we previously reported, in 2023 the New York State Department of Financial Services (NYDFS) amended its cybersecurity regulation, 23 NYCRR 500 (or Part 500). As of November 1, 2024, Class A Companies and Covered Entities were required to comply with numerous Part 500 compliance obligations outlined here. 

    April 15, 2025 Compliance Certification Deadline

    Covered Entities have been required to submit annual compliance with Part 500 since the regulation”s adoption; however, since 2024, Covered Entities now have the option to submit either a Certification of Material Compliance (certifying they materially complied with the regulation requirements that applied to them in the prior year) or an Acknowledgement of Noncompliance (identifying all sections of the regulation with which they have not complied and providing a remediation timeline).

    The deadline for Covered Entities to submit annual compliance notifications for the 2024 calendar year is April 15, 2025. Submissions can be submitted through the NYDFS Portal. Covered Entities that qualify for full exemptions from Part 500 do not have to submit annual compliance notifications. For more information on the April 15 compliance deadline, guidance on which form to file, and step-by-step instructions, see NYDFS’s Submit a Compliance Filing section in the Cybersecurity Resource Center or contact your Katten attorney.

    May 1, 2025 Compliance Obligations

    On May 1, 2025, Covered Entities are required to meet additional requirements under Part 500, including:

    1. Access Privileges and Management
    • Implement enhanced requirements regarding limiting user access privileges, including privileged account access.
    • Review access privileges and remove or disable accounts and access that are no longer necessary.
    • Disable or securely configure all protocols that permit remote control of devices.
    • Promptly terminate access following personnel departures.
    • Implement a reasonable written password policy to the extent passwords are used. 

    Covered Entities and Class A Companies must also address the below items:

    1. Vulnerability Management: conduct automated scans of information systems, and a manual review of systems not covered by such scans” to discover, analyze, and report vulnerabilities at a frequency determined by their risk assessment and promptly after any material system changes.
    2. Mailicious Code: Implement controls to protect against malicious code.

    Class A Companies must further update their information security programs to include:

    1. Monitoring and Training: Implement (1) endpoint detection and response solution to monitor anomalous activity and (2) centralized logging and security event alert solution. CISOs can approve reasonably equivalent or more secure compensating controls, but approval must be in writing.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Email
    Previous ArticleKeep Your Garden Seeds Fresh from Year to Year with These 5 Storage Tips
    Next Article Why Be A Lawyer When Being A Movie Star Is On The Table? – Above the Law

    Related Posts

    So Much Bonus Money! – See Also – Above the Law

    December 12, 2025

    Investors Allege Florida Man Stole $5M in Bitcoin Escrow Scheme Tied to Law Firm| Law.com

    December 12, 2025

    Florida Targets Starbucks in Latest Fight Over Corporate DEI Initiatives| Law.com

    December 12, 2025

    Introducing the Interim Docket Blog

    December 11, 2025
    Leave A Reply Cancel Reply

    ads
    Don't Miss
    Technology & Gadgets
    1 Min Read

    Tomb Raider announces two new games

    While Geoff Keighley had already announced that Tomb Raider would be making a Game Awards…

    Transforming agent marketing: Task-bound to scalable systems

    December 12, 2025

    So Much Bonus Money! – See Also – Above the Law

    December 12, 2025

    A Britney Spears Producer Turned Blockchain Mogul Listed His Miami Beach Home for $11 Million

    December 12, 2025
    Top
    Technology & Gadgets
    1 Min Read

    Tomb Raider announces two new games

    While Geoff Keighley had already announced that Tomb Raider would be making a Game Awards…

    Transforming agent marketing: Task-bound to scalable systems

    December 12, 2025

    So Much Bonus Money! – See Also – Above the Law

    December 12, 2025
    Our Picks
    Technology & Gadgets
    1 Min Read

    Tomb Raider announces two new games

    While Geoff Keighley had already announced that Tomb Raider would be making a Game Awards…

    Real Estate
    1 Min Read

    Transforming agent marketing: Task-bound to scalable systems

    Troy Palmquist talks with marketing directors about the evolving role of martech and how it…

    Pages
    • About Us
    • Contact Us
    • Disclaimer
    • Homepage
    • Privacy Policy
    Facebook X (Twitter) Instagram YouTube TikTok
    • Home
    © 2025 Global News HQ .

    Type above and press Enter to search. Press Esc to cancel.

    Go to mobile version