A Checklist outlining key steps for covered entities to take when developing and implementing a program to comply with the New York Department of Financial Services (NYDFS) Cybersecurity Requirements for Financial Services Companies (23 NYCRR §§ 500.0 to 500.24). It addresses understanding the regulations' scope and applicability, developing policies and procedures, and meeting NYDFS reporting and certification obligations. This Checklist is designed to be used with Practice Note, The NYDFS Cybersecurity Regulations.