It is the policy of the Congress that each financial institution has an affirmative and continuing obligation to respect the privacy of its customers and to protect the security and confidentiality of those customers' nonpublic personal information.
In furtherance of the policy in subsection (a), each agency or authority described in section 6805(a) of this title, other than the Bureau of Consumer Financial Protection, shall establish appropriate standards for the financial institutions subject to their jurisdiction relating to administrative, technical, and physical safeguards-
(1) to insure the security and confidentiality of customer records and information;
(2) to protect against any anticipated threats or hazards to the security or integrity of such records; and
(3) to protect against unauthorized access to or use of such records or information which could result in substantial harm or inconvenience to any customer.
(
2010-Subsec. (b).
Amendment by
"(1) to the extent that a later date is specified in the rules prescribed under section 504; and
"(2) that sections 504 [15 U.S.C. 6804] and 506 [enacting section 6806 of this title and amending section 1681s of this title] shall be effective upon enactment [Nov. 12, 1999]."