Remove 2003 Remove Evaluation Remove Mitigation Remove Risk Management
article thumbnail

Statutory Cyber Incident Reporting in the USA

Plan B Consulting

The first state to have this type of law was California in 2003 and all states have, on the whole, followed the basic tenets of their law. The SEC has published proposed rules to enhance and standardise disclosures regarding cybersecurity risk management, strategy, governance, and cyber security incident reporting by public companies.

Banking 40