On April 14, 2021, the Department of Labor (“DOL”) issued three documents that provide cybersecurity guidance for plan sponsors, fiduciaries, recordkeepers, and plan participants. Cybersecurity has become an increasingly important topic for plan sponsors and committees, given the fiduciary requirements to act in the interest of plan participants and to prudently select and monitor service providers, in addition to general risk management considerations. While the guidance was not issued under a formal notice and comment process, it lists actions the DOL recommends that plan fiduciaries and committees take to safeguard data and monitor service providers – and potentially indicates the steps that the DOL would view as the minimum necessary to satisfy applicable fiduciary obligations.
Continue reading “Department of Labor Guidance Addresses Cybersecurity Risk Mitigation”