Listing Thumbnail

    NYDFS Cybersecurity Compliance Assessment and Consulting

     Info
    Sold by: ScienceSoft 
    ScienceSoft provides full-range audit and consulting services to help banking, financial service, and insurance (BFSI) organizations operating in New York State keep their AWS environments compliant with the requirements set by the New York Department of Financial Services (NYDFS) Cybersecurity Regulation. We guide BFSI companies through the up-to-date NYDFS regulations, perform pre-launch compliance assessments and regular audits, and provide practical assistance with improving the organization’s cybersecurity posture and operational resilience.

    Overview

    According to the NYDFS’s latest amendments to the Cybersecurity Regulation, a BFSI company must undergo general risk assessment at least once a year, penetration testing at least once a year, and vulnerability assessment — at least twice a year. While AWS offers some baseline measures for meeting NYDFS guidelines, it is each organization’s responsibility to configure and operate its cloud environment in full compliance with NYDFS. ScienceSoft determines what NYDFS requirements are relevant to your particular case and runs a comprehensive assessment covering technical, administrative, and physical security controls to examine NYDFS compliance on both AWS’s and your organization’s side.

    Depending on your needs, our assessment can cover:

    • AWS infrastructure review, including computing resources, networking, data storage and management, security mechanisms, and AWS-hosted apps.
    • Penetration testing, vulnerability assessment, automated and manual code review.
    • Assessment of administrative safeguards, including internal policies regulating IT asset management, customer data access and governance, security risk management and incident response, data backup and disaster recovery procedures.
    • Assessment of technical safeguards, including identity and access controls, audit logging, data encryption, and data integrity controls in the cloud.
    • Assessment of physical safeguards, including the isolation of dedicated AWS cloud instances and access to physical devices and workstations connected to the cloud.
    • Examination of BFSI employees’ knowledge of NYDFS compliance and cyber hygiene.

    After the audit, we deliver a comprehensive report covering the revealed NYDFS compliance gaps and a detailed remediation plan. You get a clear checklist of corrective actions required to achieve your organization’s full compliance with the NYDFS Cybersecurity Regulation and pragmatic advice on implementing the necessary steps quickly and cost-effectively. If you need practical help with implementing the improvements, ScienceSoft’s AWS-certified engineers, NYDFS consultants, and cybersecurity specialists are ready to reconfigure your cloud environment, refine the security program, redesign the data governance framework, and establish additional cybersecurity mechanisms in accordance with the NYDFS requirements.

    Highlights

    • In NYDFS compliance services since the framework inception in 2017; financial IT and compliance consultants with 5–20 years of experience who speak your language and know the nuances of NYDFS application in real-world BFSI scenarios.
    • AWS-certified experts, such as AWS Certified Solution Architects and AWS Certified SysOps Administrators, who help BFSI organizations create and maintain secure AWS environments.
    • Certified Ethical Hackers proficient in holistic penetration testing (black, gray, and white box testing, social engineering) to find all potential loopholes in your IT security.

    Details

    Delivery method

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Pricing

    Custom pricing options

    Pricing is based on your specific requirements and eligibility. To get a custom quote for your needs, request a private offer.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Support

    Vendor support

    Contact us at +1 214 306 6837 or contact@scnsoft.com .