Certified Regulatory Compliance Manager

Access More Questions
Under which regulation must financial institutions implement a written Information Security Program?
Correct Answer:
The Gramm-Leach-Bliley Act
Explanation:
The Gramm-Leach-Bliley Act requires financial institutions to implement a written Information Security Program. This legislation, also known as the GLBA, was enacted to ensure that institutions protect consumers' personal financial information. Among its various provisions, the GLBA mandates that financial institutions establish, implement, and maintain a comprehensive information security program that is appropriate to the size and complexity of their operations. This program must address the administrative, technical, and physical safeguards against unauthorized access to or use of customer information. While the Fair Lending Act, Regulation P, and the Bank Secrecy Act involve important aspects of financial regulation, they do not specifically mandate the creation of a written Information Security Program. The Fair Lending Act focuses on ensuring that all individuals have fair access to credit and prohibiting discrimination in lending. Regulation P pertains to the privacy of consumer financial information, particularly regarding how banks disclose their privacy policies to customers. The Bank Secrecy Act is primarily concerned with preventing money laundering and requires financial institutions to report suspicious activity and maintain certain records, but it does not directly establish a requirement for a written Information Security Program.

Access more questions from this quiz

Continue to Certified Regulatory Compliance Manager for more practice questions and the full quiz experience.

Access More Questions