Skip to content.Skip to side navigation. Quick Navigation: Skip to content.Skip to side navigation.
GPO Access Home Page.
Jump to selected topic.
Navigation Bar
About.Help. A-Z Resource List. Locate a Federal Depository Library. Buy Publications. Legislative. Executive. Judicial.
National Archives and Records Administration logo.
Database Features.
Browse
Simple Search
Advanced Search
* Boolean
  * Proximity
Search History
Search Tips
Corrections

Latest Updates

User Info
FAQs
Agency List
Incorporation by Reference
e-CFR Main Page
Related Resources
Code of Federal Regulations
Federal Register
List of CFR
Sections Affected
Regulations.gov
Unified Agenda
All NARA Publications
About Government.
Ben's Guide Logo.
Get Adobe Reader

blue pill
e-CFR Data is current as of February 4, 2010


Title 16: Commercial Practices
PART 314—STANDARDS FOR SAFEGUARDING CUSTOMER INFORMATION

Browse Previous | Browse Next

§ 314.3   Standards for safeguarding customer information.

(a) Information security program. You shall develop, implement, and maintain a comprehensive information security program that is written in one or more readily accessible parts and contains administrative, technical, and physical safeguards that are appropriate to your size and complexity, the nature and scope of your activities, and the sensitivity of any customer information at issue. Such safeguards shall include the elements set forth in §314.4 and shall be reasonably designed to achieve the objectives of this part, as set forth in paragraph (b) of this section.

(b) Objectives. The objectives of section 501(b) of the Act, and of this part, are to:

(1) Insure the security and confidentiality of customer information;

(2) Protect against any anticipated threats or hazards to the security or integrity of such information; and

(3) Protect against unauthorized access to or use of such information that could result in substantial harm or inconvenience to any customer.

Browse Previous | Browse Next