GLBA requires financial institutions to protect the confidentiality and integrity of customers' private financial information. The Safeguards Rule mandates the implementation of a comprehensive information security program. While penetration testing is not explicitly mentioned, it is a recommended practice to identify vulnerabilities in systems that store or process customer information, helping institutions comply with GLBA's security requirements.
To see what other standards apply to these industries, follow any of the links, or browse all compliance standards we support.
