<html xmlns="http://www.w3.org/1999/xhtml"><head><meta charset="UTF-8" /><title></title><meta name="Generator" content="PowerTools for Open XML" /><style>span { white-space: pre-wrap; } p.s8bd600d8-d40f-4078-a5a4-55f828da900eP0 { margin-top: 0; margin-bottom: 0; margin-left: 0; margin-right: 0; text-indent: 0.00in; text-align: justify; background: white; font-family: 'Times New Roman', 'serif'; font-size: 12pt; line-height: 108%; } span.s8bd600d8-d40f-4078-a5a4-55f828da900eC0 { color: black; background: white; font-family: 'Times New Roman', 'serif'; font-size: 12pt; font-style: normal; font-weight: normal; margin: 0; padding: 0; } span.s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000000 { color: #0000FF; background: white; font-family: 'Times New Roman', 'serif'; font-size: 12pt; font-style: normal; font-weight: bold; margin: 0; padding: 0; } span.s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000001 { color: black; background: white; font-family: 'Times New Roman', 'serif'; font-size: 12pt; font-style: normal; font-weight: bold; margin: 0; padding: 0; } span.s8bd600d8-d40f-4078-a5a4-55f828da900e000002 { color: black; background: white; font-size: 12pt; font-style: normal; font-weight: normal; margin: 0; padding: 0; } span.s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000003 { color: black; background: white; font-family: 'Times New Roman', 'serif'; font-size: 11pt; font-style: normal; font-weight: normal; margin: 0; padding: 0; } p.s8bd600d8-d40f-4078-a5a4-55f828da900eP0-000004 { margin-top: 0; margin-bottom: 0; margin-left: 0; margin-right: 0; text-indent: 0.00in; text-align: justify; background: white; font-family: 'Times New Roman', 'serif'; font-size: 11pt; line-height: 108%; } span.s8bd600d8-d40f-4078-a5a4-55f828da900e000005 { color: black; background: white; font-size: 11pt; font-style: normal; font-weight: normal; margin: 0; padding: 0; } span.s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000006 { color: #0000FF; background: white; font-family: 'Times New Roman', 'serif'; font-size: 12pt; font-style: normal; font-weight: normal; margin: 0; padding: 0; } </style></head><body><div><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">    </span><a href="https://sdlegislature.gov/Rules?Rule=20:18:17:41.04"><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000000">20:18:17:41.04</span></a><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000001">.  Prevention of unauthorized </span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000001">access or </span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000001">transactions.</span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0"> The following minimal </span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">internal </span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">controls </span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">must</span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0"> be implemented to ensure that each game is prevented from responding to any command for crediting outside of a properly authorized cashless transaction:</span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900e000002"> </span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">    (1)  </span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">Secure the hubs, services, and connection ports in a locked and monitored room or area to prevent unauthorized access to the network and prevent access to any node without valid login and password</span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">;</span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900e000002"> </span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">    (2)  </span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">Limit the number of stations where critical cashless applications or associated databases may be accessed;</span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900e000002"> </span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">    (3)  Limit the number of users that have permission to adjust critical parameters; and</span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900e000002"> </span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">    (</span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">4</span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">)  </span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">Identify and flag suspect wagering accounts</span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0"> to prevent unauthorized use </span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">by</span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">:</span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900e000002"> </span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">        (</span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">A</span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">)  Establishing a maximum of </span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">three successive, </span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">incorrect </span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">secure personal identification code or number</span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0"> entries before account lockout;</span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">        (</span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">B</span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">)  Flagging hot accounts where cards </span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">or authentication credentials </span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">have been stolen;</span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">        (</span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">C</span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">)  Invalidating accounts and transferring balances into a new account; </span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">        (</span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">D</span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">)  Establishing limits for maximum cashless activity </span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">or overall gaming activities </span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">in and out as a global or individual variable to preclude money laundering.</span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000003">        </span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">(E)  Monitoring cashless devices for funds transferred into the cashless device from one wagering account, then transferred out to another wagering account; and</span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">        (F)  Monitoring wagering accounts for opening and closing in short time frames and for deposits and withdrawal without associated game play transactions.</span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0-000004"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900e000005"> </span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">    </span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000001">Source:</span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0"> 36 SDR 22, effective August 18, 2009</span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">; 48 SDR 14, effective August 22, 2021</span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">.</span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">    </span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000001">General Authority:</span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0"> SDCL </span><a href="https://sdlegislature.gov/Statutes?Statute=42-7B-7"><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000006">42-7B-7</span></a><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">, </span><a href="https://sdlegislature.gov/Statutes?Statute=42-7B-11"><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000006">42-7B-11</span></a><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">(13)</span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">.</span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">    </span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000001">Law Implemented:</span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0"> SDCL </span><a href="https://sdlegislature.gov/Statutes?Statute=42-7B-2.1"><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000006">42-7B-</span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000006">2.1</span></a><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">(1)</span><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">, </span><a href="https://sdlegislature.gov/Statutes?Statute=42-7B-43"><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000006">42-7B-</span><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0-000006">43</span></a><span class="s8bd600d8-d40f-4078-a5a4-55f828da900eC0">.</span></p><p dir="ltr" class="s8bd600d8-d40f-4078-a5a4-55f828da900eP0-000004"><span xml:space="preserve" class="s8bd600d8-d40f-4078-a5a4-55f828da900e000005"> </span></p></div></body></html>