16 CFR 314.3 Standards for safeguarding customer information.
16 CFR Part 314: Standards For Safeguarding Customer Information (16 CFR Part 314)
Statute text (verbatim, original language)
(a) Information security program. You shall develop, implement, and maintain a comprehensive information security program that is written in one or more readily accessible parts and contains administrative, technical, and physical safeguards that are appropriate to your size and complexity, the nature and scope of your activities, and the sensitivity of any customer information at issue. The information security program shall include the elements set forth in § 314.4 and shall be reasonably designed to achieve the objectives of this part, as set forth in paragraph (b) of this section.
(b) Objectives. The objectives of section 501(b) of the Act, and of this part, are to:
(1) Insure the security and confidentiality of customer information;
(2) Protect against any anticipated threats or hazards to the security or integrity of such information; and
(3) Protect against unauthorized access to or use of such information that could result in substantial harm or inconvenience to any customer.
Proof
provision:us:16-cfr-314:314.351ab3b384f2d67307c3e9dc8e86e2fa56b296f863a326bd9224ac6413ba1aff5Follow-up questions
- What does 16 CFR 314.4 of 16 CFR Part 314: Standards For Safeguarding Customer Information say?
- What does 16 CFR 314.2 of 16 CFR Part 314: Standards For Safeguarding Customer Information say?
- How is 16 CFR 314.3 of 16 CFR Part 314: Standards For Safeguarding Customer Information applied in practice?
- Which sections does 16 CFR Part 314: Standards For Safeguarding Customer Information contain?
- How do I verify the text is unchanged?
Next step
Three ways to put the register to work in your own practice.
Start with your task
Litigation
Find support in a judgment
Search guiding decisions, see what became final and follow changes in the law.
In-house, deals
Map the rules in a transaction
Move from theme to act and on to the article that carries the duty.
Compliance
Assess the risk in a process
Risk scoring per legal area, with the sources behind every score.