Wire · regulatory
NYS DFS Issues New Cybersecurity Guidance on Risk Assessments for Financial Services Entities
◆ Sectors
◆ Geography
◆ Source
◆ Verified
Fusion42 · 12 September 2026 · Fusion42 review
The New York State Department of Financial Services issued new guidance clarifying expectations for cybersecurity risk assessments by DFS-regulated financial entities, emphasizing annual reviews and updates upon material changes. The guidance highlights factors such as technology changes, third-party risks, emerging tech like AI, and risk-informed controls but does not impose new regulatory obligations.
This Wire brief sits within Fusion42's coverage of Fintech.
◆ ◆ The Wire takeaway
You must update your cybersecurity risk assessments immediately when significant tech or business changes occur, especially when using AI or third-party cloud services. Waiting could leave gaps that regulators now spotlight through clearer DFS guidance.
◆ Coverage
1 source · 12 Sep 2026
◆ Related on Wire
◆ Topics