The third-party provider threat is a concern for CISOs and regulators alike, which is why the New York State Department of Financial Services' Cybersecurity Requirements for Financial Services Companies (23 NYCRR 500) include specific requirements...