GroundRules
← Search the law
Federal regulations · Through 2026-08-25 · Newer source version available

12 CFR 1008.305: Data security.

Read at publisher ↗
Where this section sits in the code
  1. Title 12—Banks and Banking
  2. CHAPTER X—CONSUMER FINANCIAL PROTECTION BUREAU
  3. PART 1008—S.A.F.E. MORTGAGE LICENSING ACT—STATE COMPLIANCE AND BUREAU REGISTRATION SYSTEM (REGULATION H)
  4. Subpart D—Minimum Requirements for Administration of the NMLSR

(a) To the extent that CSBS, AARMR, or their successors maintain the NMLSR, CSBS, AARMR, and their successors, as applicable, must complete a background check on their employees, contractors, or other persons who have access to loan originators' Social Security Numbers, fingerprints, or any credit reports collected by the system.

(b) To the extent that CSBS, AARMR, or their successors maintain the NMLSR, CSBS, AARMR, and their successors as applicable, must keep and adhere to an appropriate information security and privacy policy. If the NMLSR forms a reasonable belief that a security breach has occurred, it shall notify affected parties, as soon as practicable, including the Bureau, any loan originator or registrant whose data may have been compromised, and the employer of the loan originator or registrant, if such employer is also licensed through the system.

Collected 2026-08-27T02:24:16Z. Source file · JSON

Browse this collection