Background:  The DURSA requires Participants to promptly notify the Coordinating Committee and other impacted Participants of Breaches which involve the unauthorized disclosure of data through the Exchange, take steps to mitigate the Breach and implement corrective action plans to prevent such Breaches from occurring in the future.  Suspected Breaches must be reported to the Coordinating Committee and other potentially impacted Participants within one (1) hour of discovering information that leads the Participant to reasonably believe that a breach may have occurred.  As soon as reasonably practicable, but no later than twenty-four (24) hours, after determining that a Breach did occur, Participants must notify other affected Participants and the Coordinating Committee.  This process is not intended to address any obligations for notifying consumers of breaches, but simply establishes an obligation for Participants to notify each other when Breaches occur to facilitate an appropriate response.

The Coordinating Committee adopted an Operating Policy and Procedure (OP&P 7) to further explain the mechanisms for Participants to notify other Participants and the Coordinating Committee of suspected or actual Breaches.  OP&P 7 also sets forth the process that the Coordinating Committee will use to respond to a Breach alert or notification.

Shout box

Only group members may post here.
There are no shouts to view.

Calendar

You must be a member of this group to add items.
«  

May

  »
S M T W T F S
 
 
1
 
2
 
3
 
4
 
5
 
6
 
7
 
8
 
9
 
10
 
11
 
12
 
13
 
14
 
15
 
16
 
17
 
18
 
19
 
20
 
21
 
22
 
23
 
24
 
25
 
26
 
27
 
28
 
29
 
30
 
31
 
 
 

Recent group content

Document Breach Notification contact list 
0 replies
eclover
eclover's picture
Document 1 Hour Breach Alert 
0 replies
eclover
eclover's picture
Document 24 Hour Breach Notification 
0 replies
eclover
eclover's picture