N.Y. Comp. Codes R. & Regs. Tit. 23 § 500.6 - Audit Trail
(a) Each
Covered Entity shall securely maintain systems that, to the extent applicable
and based on its Risk Assessment:
(1) are
designed to reconstruct material financial transactions sufficient to support
normal operations and obligations of the Covered Entity; and
(2) include audit trails designed to detect
and respond to Cybersecurity Events that have a reasonable likelihood of
materially harming any material part of the normal operations of the Covered
Entity.
(b) Each Covered
Entity shall maintain records required by this section for not fewer than five
years.
Notes
State regulations are updated quarterly; we currently have two versions available. Below is a comparison between our most recent version and the prior quarterly release. More comparison features will be added as we have more versions to compare.
No prior version found.