NYS DFS Issues New Cybersecurity Guidance on Risk Assessments for Financial Services Entities

Executive Summary

On September 10, 2026, NYS DFS Acting Superintendent Kaitlin Asrow released guidance requiring DFS‑regulated financial services entities to conduct risk assessments that inform their cybersecurity programs. The guidance details scope, frequency, and responsibilities for risk assessment activities.


Intelligence Metadata - Source Publisher: DataBreaches.net - Published Date: 2026-09-12T22:15:40+00:00 - Category: other

Original Description: New York State Department of Financial Services (DFS): September 10, 2026 New York State Department of Financial Services (DFS) Acting Superintendent Kaitlin Asrow today issued new cybersecurity guidance outlining the Department’s expectations for DFS-regulated entities’ on conducting risk assessments sufficient to inform their cybersecurity programs. The guidance outlines requirements regarding scope, frequency, and the role... Source

"We never understand how little we need in this world until we know the loss of it."

— James Barrie
Source: DataBreaches.net