← Back

Wire · regulatory

NYS DFS Issues New Cybersecurity Guidance on Risk Assessments for Financial Services Entities

Published

12 September 2026

Topic

regulatory

Sectors

Fintech

Geography

United States

Source

Read at databreaches.net

Verified

Fusion42 · 12 September 2026 · Fusion42 review

The New York State Department of Financial Services issued new guidance clarifying expectations for cybersecurity risk assessments by DFS-regulated financial entities, emphasizing annual reviews and updates upon material changes. The guidance highlights factors such as technology changes, third-party risks, emerging tech like AI, and risk-informed controls but does not impose new regulatory obligations.

This Wire brief sits within Fusion42's coverage of Fintech.

◆ The Wire takeaway

You must update your cybersecurity risk assessments immediately when significant tech or business changes occur, especially when using AI or third-party cloud services. Waiting could leave gaps that regulators now spotlight through clearer DFS guidance.

Coverage

1 source · 12 Sep 2026

Related on Wire

Topics

Fintechny-dfscybersecurityrisk-assessmentfinancial-servicesregulation