• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer
  • Facebook
  • Instagram
  • LinkedIn
  • Twitter
  • YouTube
Big Ideas for Small Business logo

Barbara Weltman

Big Ideas for Small Business, Inc.

Whitepaper download

Subscribe and download our eBook, "150+ Tax Deductions for Small Business A to Z."

This field is hidden when viewing the form
Get the:

  • Home
  • About Us
  • Big Ideas For Your Business
    • Idea Of The Day ®
    • SMB Legal
    • SMB Taxes
    • SMB Financial
    • Small Business
    • Newsletter Archive
  • Services
  • Books
  • Blog
  • Multimedia
    • Videos
    • Radio Shows/Podcasts
  • Be a Guest Blogger

4 Cybersecurity Tips for SHIELD Act Compliance

September 27, 2021 / By Shannon Flynn

Cybersecurity TipsThere’s no denying that, year after year, cybersecurity risks tend to increase in number and complexity. New York joined the growing list of states enacting legislation to try and regulate the use of private, personal data.

The New York Stop Hacks and Improve Electronic Data Security Act, known as the SHIELD Act, is something businesses and individuals need to be aware of.

What is the SHIELD Act?

The New York SHIELD Act requires businesses to implement specific safeguards for New York state’s residents regarding their personal information. The act broadens New York’s security breach notification requirements to protect residents from data breaches and other forms of cyberattacks. There are no exceptions to the law for small businesses, although there is some relief (described later).

The law officially went into effect on March 21, 2020. Here are some of the significant changes that this law introduces:

  • Updating the Definition of Private Information: Includes biometric information, account numbers, banking information, usernames and email addresses, and passwords and security questions/answers.
  • Updating the Definition of Data Breach: Now includes unauthorized access of data that compromises the security, integrity or confidentiality of private information.
  • Expands the Territorial Scope: The act now applies to any individual or business that owns/licenses specific private information of NY residents. It used to only apply to companies.
  • New Security Requirements: Requires that companies adopt reasonable security safeguards to protect the integrity, confidentiality and security of private information.

It shouldn’t be a surprise that more states are enforcing regulations to protect individuals’ data. Data is becoming increasingly valuable and is the perfect target for would-be hackers.

While the SHIELD Act is not as broad as the California Consumer Privacy Act (CCPA), businesses, regardless of industry, must do their best to protect private information.

Keep in mind that violations of the act are considered deceptive acts, and businesses could be punished as a result. Companies held responsible for violating the act can be fined up to $5,000 per violation.

So, how can you ensure that your business is compliant with this new SHIELD Act? Let’s explore some tips you can follow to safeguard your business.

Tips for SHIELD Act Compliance

Below are some tips to follow to ensure your business is compliant with the New York SHIELD Act.

1. Identify and Classify Private Information

Because of the broad definition of private information in this act, it’s critical that you first identify what information you use regularly. Then, take precautions to classify that data and prevent future cyberattacks from occurring.

In this case, taking extra preventive measures to safeguard information is worth the time, effort and resources. The last thing you want is to pay fines for violating the SHIELD Act.

2. Restrict Access to Private Information

Because it can be challenging to truly know the intentions of all your employees, you must keep access to your files and data storage limited. Employ access control methods to ensure only authorized employees can access any consumer data that fall under the act.

When an unauthorized source tries to access your files, you must act swiftly and essentially put out the fire before it spreads.

3. Implement a Data Security Program

Here are three critical components that should be included in your program:

  • Physical Safeguards
  • Technical Safeguards
  • Administrative Safeguards

Regardless of the act, every business should implement a quality cybersecurity program to prevent instances of cyberattacks. Small businesses are especially vulnerable to hackers, as they may not have a dedicated IT department to handle these issues.

4. Train Employees on Data Security

One of the best practices to adopt for your business is educating and adequately training all employees about data protection. Being aware of the most common cybersecurity pitfalls can help eliminate the risk of experiencing a data breach.

Consider holding webinars for remote employees and in-person training opportunities for all employees, as this is a surefire way to make sure your employees understand the need to comply with the SHIELD Act.

As data becomes more accessible and valuable, it shouldn’t come as a surprise that more states, such as New York, are enforcing regulations for businesses and individuals. Protecting personal data is a top priority in today’s digital world.

Ensure Cybersecurity Protection in NY

Follow the tips listed above if you’re concerned about the new SHIELD Act. By adopting these best practices, you will protect your business from paying for violations, which will, in turn, protect your reputation and position within your industry.

Small Business Relief

Businesses with fewer than 50 employees, less than $3 million in gross revenue in each of the last 3 years, or less than $5 million in total assets year end, must maintain a security program. However, they can adopt reasonable safeguards based on the size of the business.

Implications for Businesses in Other States

While the SHIELD Act’s reach is limited to New York, businesses in other states should use the tips listed above as best practices. Many others have data protection laws in place. Spirion has a list (you need to provide your information to access it).

Tags cybersecurity data protection data security SHIELD Act small business

Guest blogger, Shannon Flynn

Shannon Flynn

Shannon Flynn is a business technology and security writer with experience writing for publications such as CSO, SiliconANGLE, ReadWrite, and more. To read more about biztech and cybersecurity, subscribe to Big Ideas for Small Business® or visit ReHack.com.

Primary Sidebar

Categories

  • General Business (493)
  • Guest Blog (106)
  • Homepage (21)
  • Small Business (981)
  • SMB Financial (320)
  • SMB Legal (64)
  • SMB Taxes (324)

Barbara’s Recent Posts

  • Moms Know Best: Lessons for Entrepreneurs May 8, 2025
  • Mental Health Challenges in the Workplace May 6, 2025
  • Let’s Celebrate Small Business! May 1, 2025
  • Scaling Your Business: Adding a New State Location April 29, 2025
  • What to Do about Waste Management in Your Warehouse April 28, 2025
  • Restrooms: Not Front Office but Just as Important April 25, 2025
  • Eye Strain: A Workplace Problem to Address April 24, 2025
  • What to Do When You Can’t Get Approved for a Business Loan April 23, 2025
  • A Good Time to Review Your Company’s Driving Policy April 22, 2025
  • Learning New Ways for Spring Cleaning Your Business April 17, 2025
  • How to Build Anticipation for an Upcoming Product Release April 16, 2025
  • Proposals for Better Tax Rules for Small Businesses April 15, 2025
Awarded Top 100 Small Business Blog medal (link will open in a new window or tab)
Marquis Who's Who 2023 Badge
Top Small Business Blogs (Link will open in a new window or tab.)
8 Financial blogs small business Owners Need to Read. Invoice home.  (link will open in a new window or tab)
Best Small Business Blog, Expertido.org
Top 50 Small Business Blogs 2018
Best Small Business Blogs
BizHumm Top 100 Business Blog Award to Barbara Weltman
FitsSmallBusiness.com: Award for Best Small Business Blog 2017 (link will open in a new window or tab)
FitsSmallBusiness.com: Award for Best Small Business Blog 2016 (link will open in a new window or tab)

Footer

Big Ideas for Small Business logo

Small business ideas, business tax news and small business consulting from Barbara Weltman to provide business owners with the information they need to succeed. Visit our small business blog, Idea of The Day®, small business books and articles on small business taxes, small business finance and small business legal advice.

Contact Us

[email protected]

(772) 492-9593

gacor maxwin situs slot thailand terpercaya situs slot gacor situs gacor akun pro thailand slot bandar togel terpercaya

Latest Tweets

bigideas4sb Big Ideas for Small Business® @bigideas4sb ·
February 17

The Art and Science of Building: Exploring the Intersection of Architectural and Engineering Design https://bit.ly/40Qt0P6 #smallbusiness #design

Reply on Twitter 1891632577175253217 Retweet on Twitter 1891632577175253217 Like on Twitter 1891632577175253217 3 Twitter 1891632577175253217
bigideas4sb Big Ideas for Small Business® @bigideas4sb ·
February 17

4 Crucial Errors in Your Compliance Approach to Hiring - HR Daily Advisor https://bit.ly/4jQCcvQ #smallbusiness #hiring #compliance

Reply on Twitter 1891586740189585747 Retweet on Twitter 1891586740189585747 Like on Twitter 1891586740189585747 Twitter 1891586740189585747
bigideas4sb Big Ideas for Small Business® @bigideas4sb ·
February 17

Is Romance Back in the Office? Is this a good or bad thing?https://bit.ly/3D1Hx2x #smallbusiness #ValentinesDay #workplace #officepolicy

Reply on Twitter 1891567067897168123 Retweet on Twitter 1891567067897168123 Like on Twitter 1891567067897168123 1 Twitter 1891567067897168123
Load More

Copyright © 2008–2025 Big Ideas for Small Business, Inc  |  Designed by Hudson Fusion

  • Privacy Policy
  • Sitemap