Public Companies: SEC Issues Guidance on Cybersecurity Disclosures

McDermott Will & Emery
Contact

The Guidance addresses a public company’s obligation to make certain disclosures concerning cybersecurity risks and cyber incidents.

On October 13, 2011, the Division of Corporation Finance of the U.S. Securities and Exchange Commission (SEC) issued “CF Disclosure Guidance: Topic No. 2 – Cybersecurity” (the Guidance), regarding a public company’s obligation to make certain disclosures concerning cybersecurity risks and cyber incidents. The SEC issued the Guidance in apparent response, at least in part, to a letter to the SEC signed earlier this year by five U.S. senators inviting SEC guidance on the topic. Signatories included U.S. Senators John D. Rockefeller, Sheldon Whitehouse, Richard Blumenthal, Robert Menendez and Mark Warner. The senators’ letter pointed to, among other things, a 2009 survey in which Hiscox, a cyber-insurance underwriter, found that 38 percent of public companies did not adequately report information about security risks in public disclosures.

Please see full publication below for more information.

LOADING PDF: If there are any problems, click here to download the file.

DISCLAIMER: Because of the generality of this update, the information provided herein may not be applicable in all situations and should not be acted upon without specific legal advice based on particular situations.

© McDermott Will & Emery | Attorney Advertising

Written by:

McDermott Will & Emery
Contact
more
less

McDermott Will & Emery on:

Reporters on Deadline

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
Custom Email Digest
- hide
- hide