Sitemap

Member-only story

NYDFS — 2nd Amendment (Part-1)

Understanding the NYDFS Second Amendment to 23 NYCRR 500

In this story, we will look at the original versus the second amendment requirements of NYCRR 500 to identify the key deltas.

500.2 Cybersecurity Program

Press enter or click to view image in full size

500.3 Cybersecurity Policy

Press enter or click to view image in full size

500.4 Chief Information Security Officer (Original)

500.4 Cyber Governance (Title Changed in the Second Amendment)

Press enter or click to view image in full size

500.5 Penetration Testing and Vulnerability Assessments. (Original)

500.5 Vulnerability Management (Second Amendment)

Press enter or click to view image in full size
500.5 Penetration Testing and Vulnerability v/s Vulnerability Management

500.6 Audit Trail

No Change — Same as the original requirement

--

--

Aakif Shaikh, CISSP, CEH, CHFI, CISA, GWAPT
Aakif Shaikh, CISSP, CEH, CHFI, CISA, GWAPT

Written by Aakif Shaikh, CISSP, CEH, CHFI, CISA, GWAPT

Over 18 years of experience in a wide variety of technical domains within information security including information assurance, compliance, and risk management.