GLBA Compliance: Gramm-Leach-Bliley Act Requirements for Financial Institutions
The Gramm-Leach-Bliley Act requires financial institutions to protect customer information through the Privacy Rule, Safeguards Rule, and Pretexting provisions. Major Safeguards Rule updates effective 2023-2024 mandate enhanced cybersecurity controls.
MoneyGram — Social Engineering Attack Causes Global Service Outage
A social engineering attack targeting MoneyGram's IT helpdesk led to a week-long global outage affecting billions in remittances and exposed sensitive customer data including government IDs and bank account information.
DORA: Digital Operational Resilience Act — Compliance Guide for Financial Services
The EU's Digital Operational Resilience Act (DORA) took effect January 17, 2025, imposing ICT risk management, incident reporting, resilience testing, and third-party oversight requirements on financial entities across the EU.
NY DFS Cybersecurity Regulation (23 NYCRR 500): Financial Services Requirements
New York's cybersecurity regulation for financial services requires covered entities to maintain comprehensive security programs including CISO designation, MFA, encryption, and incident reporting. The 2023 amendments are fully effective as of November 2025.