ARTICLE
10 March 2022

NYDFS Issues Cybersecurity Guidance In Response To Events In Ukraine

SM
Sheppard Mullin Richter & Hampton

Contributor

Sheppard Mullin is a full service Global 100 firm with over 1,000 attorneys in 16 offices located in the United States, Europe and Asia. Since 1927, companies have turned to Sheppard Mullin to handle corporate and technology matters, high stakes litigation and complex financial transactions. In the US, the firm’s clients include more than half of the Fortune 100.
In light of Russia's recent military actions in Ukraine, the New York Department of Financial Services issued guidance on its cybersecurity and virtual currency regulations.
United States New York Technology

In light of Russia's recent military actions in Ukraine, the New York Department of Financial Services issued guidance on its cybersecurity and virtual currency regulations. The Department is specifically concerned about heightened risk for Russia's cyberattacks against Ukraine, which could in turn lead to retaliatory attacks against U.S. critical infrastructure due to U.S. sanctions against Russia.

The Department clarified that regulated entities should comply with U.S. sanctions on Russia, but should take measures to mitigate potential security risks. The following includes some recommendations to mitigate increased cyber threats:

  • Review cybersecurity programs with a particular eye on security hygiene measures, such as multi-factor authentication;
  • Review, update and test incident response and business continuity planning;
  • Implement practices not already in place in the Department's June 2021 Ransomware Guidance;
  • Conduct regular penetration testing to check ability to restore backups; and
  • Provide additional cybersecurity awareness trainings and reminders for employees within the organization.

Putting it into Practice: Current world events serve as a reminder for why it is important for organizations to prioritize their cybersecurity programs and ensure that they take mitigation efforts to prevent the devastating effects of cyber-attacks.

The content of this article is intended to provide a general guide to the subject matter. Specialist advice should be sought about your specific circumstances.

Mondaq uses cookies on this website. By using our website you agree to our use of cookies as set out in our Privacy Policy.

Learn More