9-553. Information security requirements.
84 words·~1 min read·
/ks/chapter-9/9-553A research copy — for the controlling text, always check the official state or federal source. Not legal advice.
9-553. Information security requirements. A covered entity shall:
(a)Set forth standards for developing, implementing and maintaining reasonable safeguards to protect the security, confidentiality and integrity of customer information pursuant to 16 C.F.R. § 314, as in effect on July 1, 2023;
(b)develop and organize its information security program into one or more readily accessible parts; and
(c)maintain its information security program as part of the covered entity's books and records in accordance with the record retention requirements of such covered entity.