• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia

Trendingnow

1

When SpaceX starts trading, some 'shareholders' will discover they own nothing at all

2

Corporate America has been draining the world's water. Matt Damon's new campaign calls on Gap, Starbucks, and Amazon to help give it back

3

Current price of oil as of June 12, 2026

1

When SpaceX starts trading, some 'shareholders' will discover they own nothing at all

2

Corporate America has been draining the world's water. Matt Damon's new campaign calls on Gap, Starbucks, and Amazon to help give it back

3

Current price of oil as of June 12, 2026
Tech

New Cyber Regulations Are in Force Today: What You Need to Know

Jeff John Roberts
By
Jeff John Roberts
Jeff John Roberts
Editor, Finance and Crypto
Down Arrow Button Icon
Jeff John Roberts
By
Jeff John Roberts
Jeff John Roberts
Editor, Finance and Crypto
Down Arrow Button Icon
March 1, 2017, 10:02 AM ET
Governor Cuomo said. Raising the minimum wage to $15 is
Photograph by Erik McGregor—Pacific Press LightRocket via Getty Images

Until now, regulators have treated hacking incidents much like an act of God: unfortunate, but not really anyone’s fault. That changes today in New York, where a new set of rules just went into effect that require certain companies to tighten up their cyber defenses.

While the long-awaited rules are the law of one state—and apply only to the finance industry—they are nonetheless going to affect a wide variety of companies, including ones outside New York. To understand what’s in store, I spoke with Judy Selby and John Riggi, two executives at the accounting firm BDO, who have been tracking this closely. Here’s a plain English run-down of what you need to know.

What do these regulations require companies to do?

Companies are now required to have a cyber-security plan in place. This includes things like network penetration testing, establishing cyber audit trails, and restricting access to customer data. Firms must also have a senior security officer and submit an annual compliance certificate.

“The days of saying, ‘I have a great IT guy’ are now over,” says Selby, adding board members will now off to sign off on cybersecurity issues.

There are also new rules related to third-party vendors, which have been the source of some of the biggest corporate cyber disasters. Firms are now going to have take a closer look at any other company that has even indirect access to their networks.

Who has to comply with these rules?

Any banking, insurance, or brokerage firm that uses a license to operate in New York will have to comply with the certification requirements. But there are some exceptions, including for firms with fewer than 10 employees and those that do less than $5 million worth of business in the state.

Once again, though, it’s important to note the rules will affect third-party vendors because many of the financial firms are likely to expect such vendors—anyone from point-of-sale to payroll providers—to have cyber programs of their own.

Get Data Sheet, Fortune’s technology newsletter.

When does this go into effect?

The rules took effect on March 1, but the law provides 180 days for companies to get their cyber compliance programs in place. Firms have to submit their first statement saying they are following the rules by February 15, 2018.

Some of the rules don’t go into effect, however, for 18 months. And the rules on third-party vendors don’t go into place for two years.

What happens if a firm doesn’t comply?

Good question. While New York state has a general power to fine firms that don’t comply with financial regulations, the regulations don’t specify any specific penalty. Also, the final version of the rules require firms to develop programs based on their particular risk profile (rather than a hard check list), so it won’t always be clear if firm is in compliance.

Selby of BDO also notes the regulators will have their hands full overseeing the new rules so widespread audits are probably unlikely. But if a firm does incur a data breach, and it turns out the firm didn’t have the right program in place, that would likely spell big trouble.

About the Author
Jeff John Roberts
By Jeff John RobertsEditor, Finance and Crypto
LinkedIn iconTwitter icon

Jeff John Roberts is the Finance and Crypto editor at Fortune, overseeing coverage of the blockchain and how technology is changing finance.

See full bioRight Arrow Button Icon

Latest in Tech

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • World's Most Admired Companies
  • See All Rankings
  • Lists Calendar
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Tech

Anthropic cofounder and CEO Dario Amodei pictured in profile.
AIAnthropic
Anthropic disables Fable and Mythos AI models after U.S. government bars it from giving foreigners access
By Jeremy KahnJune 13, 2026
2 hours ago
Courtney Robinson, head of policy and communications, at Akoya speaks on a panel at Fortune Brainstorm Tech 2026.
RetailBrainstorm Tech
AI shopping agents are coming. No one is ready for them
By Jeremy KahnJune 12, 2026
7 hours ago
AI can be a ‘secret sauce’ or a way of ‘democratizing mediocrity’—Here’s how business leaders are getting the best of the technology
C-SuiteBrainstorm Tech
AI can be a ‘secret sauce’ or a way of ‘democratizing mediocrity’—Here’s how business leaders are getting the best of the technology
By Amanda GerutJune 12, 2026
7 hours ago
Elon Musk stands behind the Nasdaq opening bell and in front of a "SpaceX" background.
Startups & VentureSpaceX
Founders Fund, Andreessen Horowitz, Valor, and the biggest VC winners from SpaceX’s IPO
By Allie GarfinkleJune 12, 2026
10 hours ago
Sven Gerjets, chief technology officer at Gap, speaks on stage on a panel at Fortune Brainstorm Tech 2026.
Future of WorkBrainstorm Tech
Why companies are treating AI as a strategic partner rather than a passive technology, and how to avoid an ‘AI hangover’
By Sebastian HerreraJune 12, 2026
11 hours ago
Elon Musk stands behind the Nasdaq opening bell and in front of a "SpaceX" background.
Future of WorkElon Musk
Despite his new trillionaire status, Elon Musk says money ‘will stop being relevant’ in the future because of AI
By Sasha RogelbergJune 12, 2026
12 hours ago

Most Popular

When SpaceX starts trading, some 'shareholders' will discover they own nothing at all
Investing
When SpaceX starts trading, some 'shareholders' will discover they own nothing at all
By Jim EdwardsJune 12, 2026
20 hours ago
Corporate America has been draining the world's water. Matt Damon's new campaign calls on Gap, Starbucks, and Amazon to help give it back
Environment
Corporate America has been draining the world's water. Matt Damon's new campaign calls on Gap, Starbucks, and Amazon to help give it back
By Catherina GioinoJune 9, 2026
4 days ago
Current price of oil as of June 12, 2026
Personal Finance
Current price of oil as of June 12, 2026
By Joseph HostetlerJune 12, 2026
18 hours ago
American taxpayers have spent $33 billion on sports stadiums. They got fewer seats—and higher prices
Success
American taxpayers have spent $33 billion on sports stadiums. They got fewer seats—and higher prices
By Catherina GioinoJune 11, 2026
2 days ago
Analysts expected oil to surge above $200 but China has quietly kept prices half of that—and can’t for much longer
Energy
Analysts expected oil to surge above $200 but China has quietly kept prices half of that—and can’t for much longer
By Sasha RogelbergJune 10, 2026
3 days ago
Current price of oil as of June 11, 2026
Personal Finance
Current price of oil as of June 11, 2026
By Joseph HostetlerJune 11, 2026
2 days ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.