Cybersecurity and data privacy are of paramount concern in today’s financial services environment. Meeting compliance requirements for data security outlined in the Gramm-Leach-Bliley Act and state level requirements such as NY DFS Cybersecurity Regulation (23 NYCRR Part 500) are providing structure to our procedure. As a demonstration of a comprehensive cybersecurity program Luxury Mortgage Corp. is recommending that our vendor network complete an independent third-party cybersecurity assessment. If that is not available, at a minimum, demonstrate that they have the following cybersecurity controls in place or have a roadmap developed to deploy each specific control by a specified date:
Luxury Mortgage Corp. is committed to working together with our vendors to reduce the ever-growing threat posed to customers and to financial systems by cyber criminals. Our goal is to be able to identify and mitigate internal and external cybersecurity risks that may threaten the security or integrity of our customer’s nonpublic information stored on your information systems.