Category: Cybersecurity
When logging into Outlook and other univeristy accounts, it’s not unusual to be forced to use multi-factor authentication to get access to my locked information. While annoying, with horror stories of identity theft, credit card fraud, and data breaches, I understand this step is necessary to protect my personal information. However, it wasn’t until attending a presentation by Kyndryl executive Eric Johnson that I realized the precautions I take to deter cyber threats are comparable to the cyber resiliency efforts that businesses must take.
On July 26, the U.S. Securities and Exchange Commission (SEC) formally approved and adopted new cybersecurity disclosure rules for public companies. First proposed on March 9, 2022, and then closed and reopened several times for comment periods through May 2023, the highly anticipated new rules require registrants to disclose material cybersecurity incidents they experience and to disclose on an annual basis material information regarding their cybersecurity risk management, strategy and governance. Foreign private issuers are also required to make comparable disclosures.
