RegCorpus.comSubscribe
Pennsylvania library
Regulation31 Pa. Code § 146c.7

Manage and control risk.

Pennsylvania · PAID
First seen July 21, 2026 · last checked July 21, 2026
Version history
v1fetched Jul 21, 202673fd3e6b28f5
Full text
Public law · full text
1
The licensee:
2
(1) Designs its information security program to control the identified risks, commensurate with the sensitivity of the information, as well as the complexity and scope of the licensee’s activities.
3
(2) Trains staff, as appropriate, to implement the licensee’s information security program.
4
(3) Regularly tests or otherwise regularly monitors the key controls, systems and procedures of the information security program. The frequency and nature of these tests or other monitoring practices are determined by the licensee’s risk assessment.