On October 26, 2016, the Board of Governors of the Federal Reserve System (Board), the Office of the Comptroller of the Currency (OCC), and the Federal Deposit Insurance Corporation (FDIC) (collectively, the agencies) published in the Federal Register an advance notice of proposed rulemaking (ANPR) regarding enhanced cyber risk management standards (enhanced standards) for large and interconnected entities under their supervision and those entities' service providers. The ANPR addresses five categories of cyber standards: Cyber risk governance; cyber risk management; internal dependency management; external dependency management; and incident response, cyber resilience, and situational awareness. Due to the range and complexity of the issues addressed in the ANPR, the public comment period has been extended until February 17, 2017. This action will allow interested persons additional time to analyze the proposal and prepare their comments.
Document
Enhanced Cyber Risk Management Standards
On October 26, 2016, the Board of Governors of the Federal Reserve System (Board), the Office of the Comptroller of the Currency (OCC), and the Federal Deposit Insurance Corpora...
Legal Citation
Federal Register Citation
Use this for formal legal and research references to the published document.
82 FR 8172
Web Citation
Suggested Web Citation
Use this when citing the archival web version of the document.
“Enhanced Cyber Risk Management Standards,” thefederalregister.org (January 24, 2017), https://thefederalregister.org/documents/2017-01539/enhanced-cyber-risk-management-standards.