(December 05 23:15) Forbes.com
The changes to cybersecurity requirements would fall into five broad categories: governance, notification and reporting, risk assessments, specific technical requirements and penalties.
You can find the original article
here