Compliance frameworks

Framework hub

NYDFS NYCRR 500

NYDFS

New York Department of Financial Services cybersecurity requirements for protecting sensitive customer data and systems in scope.

Available for qualified engagements

HLD Group maintains policies and controls mapped to this framework as part of our security and compliance programme. This hub describes programme alignment — not a third-party certification or attestation unless separately agreed in your contract.

Programme focus areas

  • CISO role
  • Penetration testing
  • Incident notification

Policies meeting this framework

The following published policies and programme documents are mapped to NYDFS NYCRR 500. Status: published and under periodic review.

Assurance note

Programme alignment means HLD maintains controls, policies, and monitoring mapped to NYDFS NYCRR 500 requirements appropriate to our services and risk profile. It does not by itself constitute certification, authorization, or a SOC/ISO audit report. Customers requiring formal attestations should contact [email protected].