|
Question: GLBA requires annual privacy notices to customers. Does it have other annual requirements?
Answer: Yes! The 2005 Small Entity Compliance Guide for the Interagency Guidelines Establishing Information Security Standards indicates that the board, or a committee, should receive an annual report from management, describing the overall status of the information security program and compliance with the security guidelines.
|