Financial Laws Flashcards

1
Q

Gramm Leach Bailey Act
(GLBA)
privacy rule- notice

A

FI and affiliates must provide notice in clear and conspicuous manner of privacy policies and data sharing policies prior to disclosure

timing
1. at time of establishing customer relationship
2. 1 annually during relationship

safe harbor for violation- if have model disclosure form

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

GLBA privacy rule

disclosure

A

no disclosure to nonaffiliated unless
- opt out opportunity (that is implemented in 30 days)
- to service provider of FI
- consent
-joint marketing purpose
- necessary for transaction or law

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

GLBA privacy rule

refuse/resell

A

non-affiliates can’t reuse/resell info or disclose account # or access code to non affiliate for marketing (unless to a CRA)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

GLBA safeguard rule

A
  1. adopt info security program (TAP)
  2. appoint qualified individual to oversee
  3. conduct risk assessment
  4. regularly test safeguards
  5. establish incident response plan
  6. establish contract requiring service providers to adopt safeguards
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

GLBA written contracts with service providers

A

written contracts are required FI under safeguard rule but not FI under privacy rule

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

state laws that exempt FI from GLBA regulation

A
  1. CCPA california
  2. Virginia VCDPA
  3. Connecticut
  4. Colorado CPA
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Enforcement - Financial regulators

A
  1. federal reserve
  2. comptroller of currency
  3. FDIC
  4. NCUA
  5. SEC
    state level insurance agencies

FTC anything not subject to financial regulator

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

FCRA importance

A

1st federal law to regulate use of PI by private businesses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

FCRA

consumer report definition

A

3 components

  1. form of communication (oral written or any other)
  2. purpose ( eligibility for credit, employment, insurance, business in general)
  3. type of info contained inside
    - bears on credit worthiness
    - standing
    - capacity
    - character
    -general reputation
    - personal characteristics
    - mode of living
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

FCRA

not consumer report

A

communications between affiliates

transmission that is only interactions between consumer and party making communication (ex. bank transaction record)

affiliate sharing info with CRA + consumer opt out opportunity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

FCRA

additional requirements for investigative consumer report

A

(doesn’t apply if employer investigation)/relates to character

  1. notification to consumer within 3 days
  2. verification of all negative info before including
  3. certification to CRA that disclosures to consumers have been made by user and will make required disclosures upon consumer report
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

FCRA

user of CR

A
  1. permissible purpose
  2. must notify consumer affected by adverse action (business, credit employment with neg impact)
  3. no resell unless notify CRA of identity of end user and permissible purposes end user will use report for
  4. adequate records of criteria used for past 3 years (if use prescreened list of preselected qualifications)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

FCRA- user

is there a right to amend

A

NO- user doesn’t need to correct inaccurate info

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

FCRA

furnishers of PI to CRA requirements

A
  1. up to date, accurate info (no cause to believe not accurate)
  2. notice of any
    - consumer dispute
    - closure of consumer account
    - delinquency within 90 days of collection
    - identity theft
  3. notice to consumer of negative info included (30 days)

NO PERMISSIBLE PURPOSE NEEDED

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

FCRA

permissible purposes to generate CR

needed for CRA and User

A

court order
credit transaction
consent
employment offer/reassignment
business transaction
credit/prepayment risk
child support
liquidation of financial institution
gov benefit eligibility
underwriting insurance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

CRA requirements
current info

A
  1. no bankruptcy 10+ years old
  2. no lien, accounts place in collection, civil judgments, records of arrest, negative info 7+ years old

doesn’t apply to
- criminal convictions
- life insurance transactions 150,000+
- employment salary 75,000+

17
Q

CRA requirements
complete info

A

bankruptcy file
- whether case is voluntary withdrawn
- chapter

if # of credit inquiries affects score

if consumer disputes info contained

18
Q

CRA requirements
accurate info

A

if consumer dispute must
- reinvestigate within 30 days
- notify furnisher within 5 days + after investigation concluded

if accurate
- written statement must be included in all future disclosures form consumer on dispute

if inaccurate: delete + notify recipients in last 6 months

19
Q

CRA requirements
consumer access

A

provide access to
1. info contained in file maintained by CRA
2. info on who disclosures to in last 2 years (employment) or 1 year (other)
3. inquiries received by CRA in last year
4. sources obtained info for CR

20
Q

Fair and Accurate Credit Transactions Act (FACTA)
individual rights

A
  1. free annual credit report form 3 national CRAs
    - Equifax
    - Experian
    - Transunion
  2. only last 4 #s of credit/debit on receipt
  3. right to explanation of credit score
21
Q

FACTA
disposal rule

A

protect upon disposal from
1. unauthorized access
2. misses of info

includes destruction of property containing info (ex. flash drive)

22
Q

FACTA
red flags rule

A

financial regulators must create guidelines for FI and creditors to use to guard against identity theft

program must be approved by BOD and have oversight by BOD

23
Q

FACTA
preemption

A

stricter laws are preempt unless
1. CA or CO credit score laws

  1. state insurance laws regulating use of credit based insurance scores
  2. 7 states with laws regulating frequency of free credit report
24
Q

Enforcement federal

A

1st- FTC section 5 authority
2nd- functional regulators (within their jurisdiction)
3rd- CFPB

25
Q

enforcement state

A

state attorney general
- must notify federal authority before filing suit and they have right to intervene

private right of action
- willful-actual or statutory, punitive, attorneys fees/costs, damage to CRA
-negligence- actual, attorneys fees/costs
- criminal (doesn’t apply to furnishers) - fine and kjail up to 2 years

26
Q

Dodd-Frank Wall Street Reform and Consumer Protection Act of 2010

A

created consumer financial protection bureau which
1. enforces federal consumer finance laws
2. rule making authority over covered persons or service providers
3. monitors authority against consumer risk
4. enforcement authority over non-depository financial institutions and depository institutions with more than 10 billion in assets

27
Q

right to financial privacy act of 1978

A

governs federal government agencies (not state) and financial institutions that have financial records of customers (not financial records of corporations)

28
Q

right to financial privacy act of 1978

no access or copying

A

federal government agency may not access or copy financial records of customers unless
- customer authorization
- response to admin/ judicial subpoena
- response to search warrant
- response to formal written request by gov agency

29
Q

right to financial privacy act of 1978

disclosure

A

financial institution may not disclose financial records until
- receive written certification by gov agency that it has complied with law
- exception applies
- info related to criminal violation
- disclose to perfect security interest
- processing for loan

30
Q

right of financial privacy act of 1978
enforcement

A

private cause of action

31
Q

bank secrecy act of 1970 (BSA)

record keeping

A

financial institutions must maintain records that have high degree of usefulness in criminal tax or regulatory investigations or proceedings or national security investigations

keep for 5 years

32
Q

bank secrecy act of 1970 (BSA)

reporting

A

financial institutions must report

their:
- transactions 10,000+ both US and foreign
- purchase of monetary instruments 3,000+

any:
- suspicious transaction relevant to possible violation of law or regulation within 30 days of initial detection
- transaction 10,000+ IN COINS OR CURRENCY
- transportation of financial instruments
- foreign financial accounts and transactions

33
Q

BSA enforcement

A

treasury department - civil penalties

DOJ- criminal penalties

34
Q

BSA

USA-Patriot act

A
  1. anti-money laundering program put in place
    - designated compliance officer
    - employee training
    - audit function to test programs
  2. know your customer requirement for foreigner
    - detect and report instances of money laundering through accounts
  3. no accounts with foreign banks that have no physical presence in US
  4. must create non-public registry of beneficial owners of certain business entities that do business in US