Get 40% Off
👀 👁 🧿 All eyes on Biogen, up +4,56% after posting earnings. Our AI picked it in March 2024.
Which stocks will surge next?
Unlock AI-picked Stocks

New York financial regulator pushes banks to plug gaps in cybersecurity

Published 10/21/2014, 09:18 PM
Updated 10/21/2014, 09:18 PM
New York financial regulator pushes banks to plug gaps in cybersecurity

(Reuters) - Following the massive cyber attack on the biggest U.S. bank JPMorgan Chase & Co (N:JPM) disclosed in August, and other financial institutions, government authorities in United States are pushing financial institutions and brokerage houses to close glaring gaps in cybersecurity.

In a letter sent to many banks on Tuesday, the New York State Department of Financial Services superintendent, Benjamin Lawsky, expressed concern about the "level of insight financial institutions have into the sufficiency of cybersecurity controls of their third-party service providers."

The New York State's top financial regulator has requested banks to disclose "any policies and procedures governing relationships with third-party service providers," according to a copy of the letter obtained by Reuters.

Lawsky said that banks must provide "any due diligence processes used to evaluate" the adequacy of security procedures of third-party service providers.

He has asked financial institutions to outline all methods of protection used to safeguard sensitive data that is sent to, received from, or accessible to vendors.

"It is abundantly clear that, in many respects, a firm's level of cybersecurity is only as good as the cybersecurity of its vendors," Lawsky said in the letter.

Names, addresses, phone numbers and email addresses of the holders of some 83 million households and small business accounts were exposed when computer systems at JPMorgan Chase & Co were recently compromised by hackers, making it one of the biggest data breaches in history.

Yet the bank has said there is no evidence that account numbers, passwords, user IDs, birth dates or Social Security numbers had been stolen.

3rd party Ad. Not an offer or recommendation by Investing.com. See disclosure here or remove ads .

Last month Lawsky noted at a Bloomberg Markets event at the Museum of Jewish Heritage in lower Manhattan that, while there's a role for policy makers and legislators to address the issue, the public sector also may be able to prod the private sector to take steps to better handle the risk. (http://reut.rs/1rjrrn3)

"We need to think about ways to incentivize the market participants to do more to protect themselves from attacks," Lawsky said.

A series of prominent cyber attacks this year has underscored how vulnerable much data has become.

In September, Home Depot revealed some 56 million payment cards were likely compromised in a cyber attack at its stores, dwarfing another recent high-profile attack at retailer Target.

(Reporting by Karen Freifeld in New York and Ankit Ajmera in Bangalore; Editing by Bernard Orr)

Latest comments

Risk Disclosure: Trading in financial instruments and/or cryptocurrencies involves high risks including the risk of losing some, or all, of your investment amount, and may not be suitable for all investors. Prices of cryptocurrencies are extremely volatile and may be affected by external factors such as financial, regulatory or political events. Trading on margin increases the financial risks.
Before deciding to trade in financial instrument or cryptocurrencies you should be fully informed of the risks and costs associated with trading the financial markets, carefully consider your investment objectives, level of experience, and risk appetite, and seek professional advice where needed.
Fusion Media would like to remind you that the data contained in this website is not necessarily real-time nor accurate. The data and prices on the website are not necessarily provided by any market or exchange, but may be provided by market makers, and so prices may not be accurate and may differ from the actual price at any given market, meaning prices are indicative and not appropriate for trading purposes. Fusion Media and any provider of the data contained in this website will not accept liability for any loss or damage as a result of your trading, or your reliance on the information contained within this website.
It is prohibited to use, store, reproduce, display, modify, transmit or distribute the data contained in this website without the explicit prior written permission of Fusion Media and/or the data provider. All intellectual property rights are reserved by the providers and/or the exchange providing the data contained in this website.
Fusion Media may be compensated by the advertisers that appear on the website, based on your interaction with the advertisements or advertisers.
© 2007-2024 - Fusion Media Limited. All Rights Reserved.