Elevate Your Egnyte Expertise. Join our Customer Community to connect with a network of peers and share game-changing strategies. Join Today

Welcome to
Help Desk

Product Updates
Training
Support
Ideas Community Contact Support

FINRA-Compliant Retention and Content Lifecycle Policies

Egnyte’s Content Lifecycle Policies can ensure that the organizations comply with FINRA document retention requirements. Files subject to FINRA must be retained for 6 years

The article covers the steps to configure Egnyte to enforce a 6-year retention policy.

Skip Ahead To...

Configuration Steps – Active locations

Configuration Steps – Inactive Locations

FINRA Letter Screenshot(s)

Configuration Steps – Active locations

  1. Identify domain(s) where files subject to FINRA compliance rules are stored. Log in to Egnyte and navigate to the Secure & Govern -> Settings -> Content Lifecycle.
    S&G_FINRA1.png
  2. Do not configure a default retention policy as the default policy will apply only to files not subject to a defined policy and cannot be locked against changes. Instead, choose to create a new Retention policy by clicking on Add policy -> Retention.
    S&G_FINRA2.png
  3. Name the policy FINRA Retention Compliance and give it a description. Make sure the policy applies to Files and not Projects or Folders. Select Active locations and then click Next to move to the next section.
    S&G_FINRA3.png
  4. Select the source(s) where the files for applying the retention policy are located. Click Next to continue.
    S&G_FINRA4.png
  5. Users can build content lifecycle policies by selecting the folders where the data they want to protect is located, or by selecting a content classification policy. Egnyte recommends using the folder criteria to build the FINRA retention policy. Select either Any of these criteria or All of these criteria.
    S&G_FINRA5.png
  6. Click on Configure to select folders and choose the entire Shared and Private folders to apply the retention policy to all files. Egnyte recommends applying the policy broadly to ensure compliance. Click on Save. 
    S&G_FINRA6.png
    S&G_FINRA7.png
  7. Click on Configure to select the classification policies as the criteria. Choose classification policies and click on Save. 
    S&G_FINRA8.png
    S&G_FINRA9.png
  8. Select the retention rules. Retain files for 6 years from creation by selecting Custom retention period and 6 years in the Files will be retained for field. This rule extends to versions. Every version of a file will be retained for 6 years from its version creation date. Then choose what should happen to the files after the retention period is over. Click Next.
    S&G_FINRA10.png
  9. Review the newly created policy and then click Save as Draft. Saving the policy as a draft will allow you to ensure the policy is applying to the correct files.
    S&G_FINRA11.png
  10. Review the results of the draft policy in the Draft status, click on the policy to open it and then click on Publish. 
    S&G_FINRA12.png
    S&G_FINRA13.png
    Click on Publish to confirm. 
    S&G_FINRA14.png
  11. Once the policy is published, open the policy and click on the three dots icon -> Lock policy. Locking the policy will ensure compliance and the policy cannot be changed. Egnyte requires the policy to be locked before providing the FINRA compliance letter. Once locked, contact Egnyte Support to make changes to it. It is recommended to thoroughly review the results of the draft policy before publishing and locking it.
    S&G_FINRA15.png

Back to Top ↑

Configuration Steps – Inactive Locations

If the Inactive area is available in the domain, an additional policy will need to be created to apply retention to those files. The steps are the same with two exceptions:

  • In the Details step of the policy configuration, select the Inactive locations option
    S&G_FINRA16.png
  • In the Criteria step of the policy configuration, select the entire Inactive folder
    S&G_FINRA17.png

Back to Top ↑

FINRA Letter Screenshot(s)

When requesting a FINRA letter from Egnyte, a screenshot of the locked policy(s) are required. The screenshot(s) should be of the locked policy(s) in the retention policy list. If all policies cannot be included in a single screenshot, users can scroll to see the list and provide multiple screenshots for all relevant policies.

S&G_FINRA18.png
S&G_FINRA19.png

Back to Top ↑

Was this article helpful?
1 out of 1 found this helpful

For technical assistance, please contact us.