---
title: COMPUTER SECURITY INCIDENTS – WHO TO CONTACT? - Compliance Resource
description: The federal financial institution regulatory agencies have clarified reporting information as required by the November 2021 final rule, which is effective on May 1, 2022.
---

[![compliance-logo-navbar](https://blog.mycomplianceresource.com/hs-fs/hubfs/compliance-logo-navbar.png?width=407&height=87&name=compliance-logo-navbar.png "compliance-logo-navbar")](https://mycomplianceresource.com/)

Open main menu Close main menu

- [TRAINING](https://mycomplianceresource.com/webinars/)
- [MARKETPLACE](https://mycomplianceresource.com/shop/)
- [RESOURCES](https://insights.mycomplianceresource.com/regulatory-compliance-resources)
- [BLOG](https://mycomplianceresource.com/blog/)
- [FORUM](https://mycomplianceresource.com/forums/)

[federal-reserve-board](https://blog.mycomplianceresource.com/tag/federal-reserve-board) [occ](https://blog.mycomplianceresource.com/tag/occ) [fdic](https://blog.mycomplianceresource.com/tag/fdic)

# COMPUTER SECURITY INCIDENTS – WHO TO CONTACT?

[jholzknecht](https://blog.mycomplianceresource.com/author/jholzknecht)

[Share this blog post on Twitter](https://twitter.com/intent/tweet?text=I+found+this+interesting+blog+post&url=https://blog.mycomplianceresource.com/computer-security-incidents-who-to-contact) [Share this blog post on Facebook](http://www.facebook.com/share.php?u=https://blog.mycomplianceresource.com/computer-security-incidents-who-to-contact) [Share this blog post on LinkedIn](http://www.linkedin.com/shareArticle?mini=true&url=https://blog.mycomplianceresource.com/computer-security-incidents-who-to-contact)

On November 17, 2021, the Office of the Comptroller of the Currency (OCC), Treasury; the Board of Governors of the Federal Reserve System (Board); and the Federal Deposit Insurance Corporation (FDIC) released a [final rule](https://www.federalreserve.gov/newsevents/pressreleases/files/bcreg20211118a1.pdf) that requires a banking organization to notify its primary federal regulator of any “computer-security incident” that rises to the level of a “notification incident,” as soon as possible and no later than 36 hours after the banking organization determines that a notification incident has occurred.

Now the FDIC ([FIL-12-2022](https://www.fdic.gov/news/financial-institution-letters/2022/fil22012.html)), the OCC ([Bulletin 2022-8](https://occ.gov/news-issuances/bulletins/2022/bulletin-2022-8.html)), and the Board ([SR22-4/CA 22-3](https://www.federalreserve.gov/supervisionreg/srletters/SR2204.htm)) have issued guidance on who to contact when reporting an incident starting May 1, 2022.

- OCC – OCC-supervised banks may make the required notification by emailing their supervisory office, or by using BankNet to submit an incident from the BankNet home page. Banks must be registered users of BankNet to use the portal. and should do so well before an incident occurs. If a bank is unsure whether it is experiencing a notification incident under the rule, the bank should contact its supervisory office.
- FDIC – FDIC-supervised banks can comply with the rule by notifying their case manager of an incident. They may also comply with the rule by notifying any member of an FDIC examination team if the event occurs during an examination. If the bank cannot access its supervisory team contacts, it can notify the FDIC by email at [incident@fdic.gov](mailto:incident@fdic.gov).
- FRB – Federal Reserve Board member banks must notify the Board about a notification incident by email to [incident@frb.gov](mailto:incident@frb.gov)or telephone to (866) 364-0096.

More information about the final rule was contained in our [November blog](https://mycomplianceresource.com/interagency-final-rule-on-computer-security-incidence-notification-requirements/) article.

## Related Articles

[ecoa](https://blog.mycomplianceresource.com/tag/ecoa) [cfpb](https://blog.mycomplianceresource.com/tag/cfpb) [regulation-b](https://blog.mycomplianceresource.com/tag/regulation-b) [cra](https://blog.mycomplianceresource.com/tag/cra)

### [SMALL BUSINESS LENDING RULE DELAYED](https://blog.mycomplianceresource.com/small-business-lending-rule-delayed)

On June 27, 2022, the Office of Management and Budget published the [Spring 2022 Unified Agenda of Federal Regulatory and Deregulatory Actions](https://www.reginfo.gov/public/do/eAgendaMain). The Agenda breaks down...

[jholzknecht](https://blog.mycomplianceresource.com/author/jholzknecht) 

[Read More](https://blog.mycomplianceresource.com/small-business-lending-rule-delayed)

[privacy](https://blog.mycomplianceresource.com/tag/privacy)

### [$170 MILLION COPPA SETTLEMENT WITH GOOGLE AND YOUTUBE](https://blog.mycomplianceresource.com/170-million-coppa-settlement-with-google-and-youtube)

The Federal Trade Commission (FTC) announced that Google LLC and its subsidiary YouTube, LLC have settled with the FTC and New York Attorney General over allegations...

[rcooper](https://blog.mycomplianceresource.com/author/rcooper) 

[Read More](https://blog.mycomplianceresource.com/170-million-coppa-settlement-with-google-and-youtube)

![compliance-logo-navbar](https://blog.mycomplianceresource.com/hs-fs/hubfs/compliance-logo-navbar.png?width=550&name=compliance-logo-navbar.png "compliance-logo-navbar")

##### Links & Resources

- [Contact Us](https://mycomplianceresource.com/contact/)
- [Training](https://mycomplianceresource.com/training-services/)
- [Shop](https://mycomplianceresource.com/shop/)
- [Resources](https://mycomplianceresource.com/resources-overview/)
- [Forums](https://mycomplianceresource.com/forums/)

##### Stay Connected

Subscribe to our mailing list for updates on new content.

[Follow us on Facebook](https://www.facebook.com/ComplianceResource) [Follow us on LinkedIn](https://www.linkedin.com/company/compliance-resource-llc/) [Follow us on Twitter](https://twitter.com/compliresource?lang=en) [Follow us on Facebook](https://www.youtube.com/channel/UCA0x5HP2Zx-Qsfb4VYNZCng)

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "jholzknecht",
    "url" : "https://blog.mycomplianceresource.com/author/jholzknecht"
  },
  "dateModified" : "2022-10-03T21:36:58.482Z",
  "datePublished" : "2022-03-30T04:00:00.000Z",
  "headline" : "COMPUTER SECURITY INCIDENTS – WHO TO CONTACT? - Compliance Resource",
  "mainEntityOfPage" : {
    "@id" : "https://blog.mycomplianceresource.com/computer-security-incidents-who-to-contact",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "url" : "https://blog.mycomplianceresource.com/hubfs/ComplianceResource_Logo-1.jpg"
    },
    "name" : "Compliance Resource LLC"
  }
}
```