Investor Presentaiton
What does the law require of SCDOI Licensees?
(continued)
Reporting
Insurer Certification
Due by
February 15, 2020
Board
Responsibilities
• Executive management must report to
its Board of Directors (if one exists) in
writing at least annually on the overall
status of its information security
program and other material matters.
•Domestic insurers must certify
compliance with the information
security program requirements of
the law annually.
• If there are areas where material
improvement is needed, this must
be documented and the remedial
efforts to correct the deficiency
described.
• Documentation must be retained
for five years
• Oversee the development,
implementation and
maintenance of the Information
Security Program
• May Delegate responsibilities to
management or other for
implementation but Board is
responsible for oversightView entire presentation