Cybersecurity, Privacy, and Data Protection
Chapters in this video
What this video covers
- What the Gramm-Leach-Bliley Act (GLBA) requires of financial institutions and how it forms the foundation of SEC privacy rules
- The specific content of a Regulation S-P privacy notice and when it must be provided to clients
- Why the correct mechanism is opt-out, not opt-in, for sharing nonpublic personal information with non-affiliated third parties
- The critical exam distinction between sharing with affiliated third parties (generally permitted without opt-out) versus non-affiliated third parties (opt-out required)
- What written information security policies the safeguards rule requires and why they must be documented, not verbal
- The three-step breach response workflow: preexisting written policies, incident response procedures, and timely notice to affected individuals
- How the exam baits candidates into selecting opt-in or blanket affiliate restrictions, and why those answers are wrong
Read the full lesson, free
This video's complete written lesson is free to read in the CertFuel app, no signup wall. The complete Series 65 course also includes adaptive practice questions and spaced-repetition flashcards, free through December 31, 2026.