IIA Bulletin
SEC ISSUES NEW CYBERSECURITY DISCLOSURE RULES
On July 26, 2023, the U.S. Securities and Exchange Commission (SEC) adopted new rules addressing how publicly traded companies must report material cybersecurity breaches and disclose to investors details of their cybersecurity risk management, strategy, and governance practices. The final rule updates a proposal originally published by the SEC on March 9, 2022.