ARTICLE
10 March 2022

NYDFS Issues Cybersecurity Guidance In Response To Events In Ukraine

SM
Sheppard, Mullin, Richter & Hampton LLP

Contributor

Businesses turn to Sheppard to deliver sophisticated counsel to help clients move ahead. With more than 1,200 lawyers located in 16 offices worldwide, our client-centered approach is grounded in nearly a century of building enduring relationships on trust and collaboration. Our broad and diversified practices serve global clients—from startups to Fortune 500 companies—at every stage of the business cycle, including high-stakes litigation, complex transactions, sophisticated financings and regulatory issues. With leading edge technologies and innovation behind our team, we pride ourselves on being a strategic partner to our clients.
In light of Russia's recent military actions in Ukraine, the New York Department of Financial Services issued guidance on its cybersecurity and virtual currency regulations.
United States New York Technology
Sheppard, Mullin, Richter & Hampton LLP are most popular:
  • within Cannabis & Hemp topic(s)

In light of Russia's recent military actions in Ukraine, the New York Department of Financial Services issued guidance on its cybersecurity and virtual currency regulations. The Department is specifically concerned about heightened risk for Russia's cyberattacks against Ukraine, which could in turn lead to retaliatory attacks against U.S. critical infrastructure due to U.S. sanctions against Russia.

The Department clarified that regulated entities should comply with U.S. sanctions on Russia, but should take measures to mitigate potential security risks. The following includes some recommendations to mitigate increased cyber threats:

  • Review cybersecurity programs with a particular eye on security hygiene measures, such as multi-factor authentication;
  • Review, update and test incident response and business continuity planning;
  • Implement practices not already in place in the Department's June 2021 Ransomware Guidance;
  • Conduct regular penetration testing to check ability to restore backups; and
  • Provide additional cybersecurity awareness trainings and reminders for employees within the organization.

Putting it into Practice: Current world events serve as a reminder for why it is important for organizations to prioritize their cybersecurity programs and ensure that they take mitigation efforts to prevent the devastating effects of cyber-attacks.

The content of this article is intended to provide a general guide to the subject matter. Specialist advice should be sought about your specific circumstances.

[View Source]

Mondaq uses cookies on this website. By using our website you agree to our use of cookies as set out in our Privacy Policy.

Learn More