Merchant Liability for Security Breaches


In the world of security breach, the momentum has clearly shifted to the states, maybe this time for good. More than thirty-five states have already enacted breachnotification

statutes. This trend may be unstoppable, with Congress unable to find common ground to settle on a national breach-notification standard.

If anything, the trend toward state control may be accelerating. In the past few months, following the

mass data compromise of over 46 million credit and debit cards used at TJX Companies stores, the states appear ready to take things even further. At least six states—California, Connecticut, Illinois, Massachusetts, Minnesota, and Texas—may soon enact legislation that shifts to merchants on a strict liability basis the financial responsibility for security breaches occurring within their merchant systems.

LOADING PDF: If there are any problems, click here to download the file.

Published In: Civil Remedies Updates, General Business Updates, Finance & Banking Updates, Privacy Updates, Science, Computers & Technology Updates

DISCLAIMER: Because of the generality of this update, the information provided herein may not be applicable in all situations and should not be acted upon without specific legal advice based on particular situations.

© Morrison & Foerster LLP | Attorney Advertising

Don't miss a thing! Build a custom news brief:

Read fresh new writing on compliance, cybersecurity, Dodd-Frank, whistleblowers, social media, hiring & firing, patent reform, the NLRB, Obamacare, the SEC…

…or whatever matters the most to you. Follow authors, firms, and topics on JD Supra.

Create your news brief now - it's free and easy »