FTC Requires Non-Banking Financial Institutions to Report Data Security Breaches
February 12, 2024Cybersecurity, Privacy & Data Protection, Data Breach
Beginning May 11, 2024, non-banking financial institutions regulated by the Federal Trade Commission (FTC) will be required to submit notifications of data breaches or other security events that impact 500+ consumers. The FTC issued a final rule (the Rule) amending its Safeguards Rule1 to impose this notification requirement. The FTC has indicated that such notices will be entered into a publicly available database. Below, we have outlined key requirements for non-banking financial institutions and next steps for compliance.
Get the latest updates on cybersecurity, privacy and data protection delivered to your inbox.