close
close
Your Network of Tomorrow
Your Network of Tomorrow
Plan your path toward a faster, more secure, and more resilient network designed for the applications and users that you support.
          Experience Netskope
          Get Hands-on With the Netskope Platform
          Here's your chance to experience the Netskope One single-cloud platform first-hand. Sign up for self-paced, hands-on labs, join us for monthly live product demos, take a free test drive of Netskope Private Access, or join us for a live, instructor-led workshops.
            A Leader in SSE. Now a Leader in Single-Vendor SASE.
            A Leader in SSE. Now a Leader in Single-Vendor SASE.
            Netskope debuts as a Leader in the Gartner® Magic Quadrant™ for Single-Vendor SASE
              Securing Generative AI for Dummies
              Securing Generative AI for Dummies
              Learn how your organization can balance the innovative potential of generative AI with robust data security practices.
                Modern data loss prevention (DLP) for Dummies eBook
                Modern Data Loss Prevention (DLP) for Dummies
                Get tips and tricks for transitioning to a cloud-delivered DLP.
                  Modern SD-WAN for SASE Dummies Book
                  Modern SD-WAN for SASE Dummies
                  Stop playing catch up with your networking architecture
                    Understanding where the risk lies
                    Advanced Analytics transforms the way security operations teams apply data-driven insights to implement better policies. With Advanced Analytics, you can identify trends, zero in on areas of concern and use the data to take action.
                        The 6 Most Compelling Use Cases for Complete Legacy VPN Replacement
                        The 6 Most Compelling Use Cases for Complete Legacy VPN Replacement
                        Netskope One Private Access is the only solution that allows you to retire your VPN for good.
                          Colgate-Palmolive Safeguards its "Intellectual Property” with Smart and Adaptable Data Protection
                          Colgate-Palmolive Safeguards its "Intellectual Property” with Smart and Adaptable Data Protection
                            Netskope GovCloud
                            Netskope achieves FedRAMP High Authorization
                            Choose Netskope GovCloud to accelerate your agency’s transformation.
                              Let's Do Great Things Together
                              Netskope’s partner-centric go-to-market strategy enables our partners to maximize their growth and profitability while transforming enterprise security.
                                Netskope solutions
                                Netskope Cloud Exchange
                                Netskope Cloud Exchange (CE) provides customers with powerful integration tools to leverage investments across their security posture.
                                  Netskope Technical Support
                                  Netskope Technical Support
                                  Our qualified support engineers are located worldwide and have diverse backgrounds in cloud security, networking, virtualization, content delivery, and software development, ensuring timely and quality technical assistance
                                    Netskope video
                                    Netskope Training
                                    Netskope training will help you become a cloud security expert. We are here to help you secure your digital transformation journey and make the most of your cloud, web, and private applications.

                                      Netskope Field Insights: Financial Services Regulations

                                      Oct 12 2017
                                      Tags
                                      Field Insights
                                      Financial Services Regulations
                                      Financial Services Security

                                      In this edition of Netskope Field Insights we turn to Brandon Conley, VP of Sales at Netskope to offer insights on another regulation impacting the financial services industry - The New York State Department of Financial Services (NYDFS) regulations, which can be found here, originally released on March 1, 2017. The purpose of the regulation is to require organizations to establish and maintain a “risk-based, holistic, and robust security program” designed to protect consumers’ private data.

                                      What’s your perspective on the regulation’s impact on consumers’ data and the financial institutions affected?

                                      New Yorkers need to know that their financial institutions are securely handling and establishing necessary controls that ensure the security of their sensitive personal information.  For financial institutions, these rules provide a yardstick to demonstrate that they are managing their cyber risks and reduces their chances of being hit with regulatory sanctions. Many financial organizations already have an existing cybersecurity program, or at least the right building blocks, to address many of the requirements. The unique opportunity for all organizations is to use the requirements as a catalyst for taking a holistic look at enterprise risk and threats, then develop a revised strategy for cyber risk management, security, and compliance.

                                      Which market verticals does the legislation apply to?

                                      All New York financial entities regulated by the NYDFS must comply with the legislation. You can visit the NYDFS website to check if you fall under its supervision.

                                      Will this catch on in other states, and what are the implications associated with such a trend?

                                      New York is a financial center, so it takes the lead. This could be a model that other states replicate. Many states have cybersecurity regulations, but none that apply solely to the financial sector.

                                      Where should a company start?

                                      There are a lot of new requirements to digest. First, a covered entity should appoint a CISO or use a third-party to fill the role. Then, it’s required that an initial risk assessment is conducted to identify breaches in security followed by the adoption of corresponding policies and procedures and the implementation of security tools to bridge any gaps. All of this would need to be assisted by staff education or training. Third-party vendor security will also need to be addressed.

                                      The key to complying with the cyber rules is the implementation of a cybersecurity program that can adapt to changing security concerns and can be refined when new risks are identified.

                                      To achieve NYDFS cloud compliance, I recommend that financial organizations implement a cloud access security broker (CASB) such as Netskope to both mitigate risk and ensure compliance with all aspects of the regulation including data governance and classification, customer privacy, and other areas. We put together the checklist below to help you understand what the regulations cover, and what protections you should consider to meet cloud compliance requirements.

                                      Tackle the NYDFS Cybersecurity Requirements

                                      Stay informed!

                                      Subscribe for the latest from the Netskope Blog