News & Analysis as of

Notice Requirements Cybersecurity

Holland & Knight LLP

The Pentagon's CMMC Program Takes a Big Step Forward

Holland & Knight LLP on

The U.S. Department of Defense (DOD) issued the proposed Defense Federal Acquisition Regulation Supplement (DFARS) rules that will implement the Cybersecurity Maturity Model Certification (CMMC) program. These rules, which...more

Clark Hill PLC

Right To Know - August 2024, Vol. 20

Clark Hill PLC on

Cyber, Privacy, and Technology Report - Welcome to your monthly rundown of all things cyber, privacy, and technology, where we highlight all the happenings you may have missed....more

Orrick, Herrington & Sutcliffe LLP

HUD Issues New Heightened Cybersecurity Incident Notice Requirements: 5 Things to Know

The U.S. Department of Housing and Urban Development (HUD) has issued new heightened cybersecurity incident notice requirements that take effect immediately. FHA-approved mortgagees are now required to notify HUD of any...more

Foley Hoag LLP - Security, Privacy and the...

SEC Revamps and Enhances Data Protections with Amendments to Regulation S-P

The Securities and Exchange Commission (“SEC”) has announced the adoption of amendments to Regulation S-P (“Amendments”) to modernize and enhance the rules that govern the treatment of consumers’ nonpublic personal...more

Akin Gump Strauss Hauer & Feld LLP

New Privacy and Cybersecurity Obligations for Private Fund Sponsors and Managers

Last week, the Securities and Exchange Commission imposed expanded privacy and cybersecurity obligations on fund managers and sponsors registered with the SEC as investment advisers. While many registered investment advisers...more

Mintz - Privacy & Cybersecurity Viewpoints

Major Win for California Privacy Protection Agency: Enforcement of Regulations Can Begin Immediately

If you have been relying on last year’s court order staying the ability of the California Privacy Protection Agency (CPPA) to enforce regulations promulgated under the California Privacy Rights Act (CPRA) to also stay your...more

Davis Wright Tremaine LLP

Automated Decisionmaking Technology in California: New Rules Would Impose Transparency, Notice, and Consumer Opt-Out Obligations...

On November 27, 2023, the California Privacy Protection Agency (CPPA) released draft regulations mandating notice, opt-out, and information access requirements for companies using automated decision-making technology (ADMT)...more

WilmerHale

California Privacy Protection Agency Publishes New Draft CPRA Cybersecurity and Automated Decisionmaking Regulations in Advance of...

WilmerHale on

In advance of the California Privacy Protection Agency’s (CPPA) December 8 Board meeting, the Agency has published new draft automated decisionmaking technology (ADMT) regulations, as well as revisions to draft regulations on...more

Benesch

FTC Amends Financial Institution Safeguards Rule to Include New Obligation to Report Notification of Data Security Breaches

Benesch on

The amended rule requires financial institutions to notify the FTC within 30 days of discovery of a security breach involving information of at least 500 consumers. ...more

Alston & Bird

NYDFS Finalizes Second Amendment to Its Cybersecurity Regulation

Alston & Bird on

Our Privacy, Cyber & Data Strategy and Privacy & Cybersecurity Litigation teams examine the New York Department of Financial Services’ finalized Second Amendment to its Cybersecurity Regulation....more

Holland & Knight LLP

A New General Notice Requirement for Financial Institutions

Holland & Knight LLP on

The Federal Trade Commission (FTC) on Oct. 27, 2023, announced further amendments to the Gramm-Leach-Bliley Safeguards Rule (Safeguards Rule). The Safeguards Rule became effective in 2003, requiring certain financial...more

BakerHostetler

NYDFS Significantly Amends Cybersecurity Regulation

BakerHostetler on

The New York State Department of Financial Services (NYDFS) adopted comprehensive amendments to its cybersecurity regulation on Nov. 1, 2023. The amended regulation, including the notification provisions of §500.17, goes into...more

BakerHostetler

FTC Amends Safeguards Rule to Require Notification of Unauthorized Data Acquisitions to the Agency

BakerHostetler on

Back in 2021, the FTC announced substantial changes to the Rule that imposed more detailed and rigorous security requirements for covered financial institutions and was largely based on the New York State Department of...more

Epiq

Move it or Lose it – With Cyber Breach Response, Time is of the Essence

Epiq on

There are so many factors that go into breach response. Determining the size of the breach, time limitations, legal requirements, notification needs, urgency for containment, and interrupted business operations are just a...more

Sheppard Mullin Richter & Hampton LLP

State Privacy Law Roundup: What Financial Services Entities Need to Know

Financial services companies beware: the new state privacy laws exemption are not uniform. To recap, there are privacy laws in 12 states: California, Colorado, Connecticut, Florida, Indiana, Iowa, Montana, Oregon, Tennessee,...more

Mitchell, Williams, Selig, Gates & Woodyard,...

U.S. Environmental Protection Agency Interpretive Memorandum Addressing Cybersecurity: Eight Circuit Court of Appeals Grants Stay...

The United States Court of Appeals for the Eighth Circuit (“Eighth Circuit”) granted a stay of a United States Environmental Protection Agency interpretive rule associated with a March 3rd memorandum titled: Addressing PWS...more

A&O Shearman

EDPB updates the guidelines on data breach notification, addresses data processing in upcoming AML legislation

A&O Shearman on

The European Data Protection Board (EDPB) held its 77th plenary meeting on 28 March 2023. The EDPB considered the following key topics...more

Proskauer - The Capital Commitment

SEC Revisits Regulation S-P After Twenty Years of Innovation to Information Technology

On March 15, 2023, the U.S. Securities and Exchange Commission (“SEC”) released its proposal to amend Regulation S-P: Privacy of Consumer Financial Information and Safeguarding Customer Information (the “Proposed...more

Mintz

SEC Notice to Public Companies: Less-than-forthcoming Breach Disclosures Can Cost You

Mintz on

Just ahead of the expected April release of the final SEC cybersecurity regulations, the SEC has fined Blackbaud, a donor data management platform used widely by nonprofits, $3 million dollars for "misleading disclosures" in...more

Skadden, Arps, Slate, Meagher & Flom LLP

Privacy & Cybersecurity Update - November 2022

In this month’s Privacy & Cybersecurity Update, we examine the California Privacy Protection Agency’s revised draft regulations for the California Privacy Rights Act, the Federal Trade Commission’s settlement with a...more

Katten Muchin Rosenman LLP

Financial Institutions Require More Oversight of Cybsersecurity Risk under NYDFS

The New York Department of Financial Services (NYDFS) has published a proposal to amend its cybersecurity rules, which will require regulated companies to notify the NYDFS of a third-party cybersecurity incident within 72...more

Faegre Drinker Biddle & Reath LLP

NYDFS Releases Pre-Proposed Second Amendment to its Cybersecurity Regulations, 23 NYCRR 500

On July 29, 2022, the New York Department of Financial Services (NYDFS) published the pre-proposed second amendment to its Cybersecurity Regulations, 23 NYCRR 500 (Part 500), that if adopted, would likely require numerous...more

BakerHostetler

NYDFS Proposed Amendments to Its Cybersecurity Rules

BakerHostetler on

​​​​​​​On July 29, the New York Department of Financial Services (NYDFS) released Draft Amendments to its Part 500 Cybersecurity Rules that include a number of significant amendments to the rules, including notification...more

Nutter McClennen & Fish LLP

Nutter Securities Enforcement Update: May 1, 2022

The Nutter Securities Enforcement Update is a periodic summary of noteworthy recent securities enforcement activity, settlements, decisions, and charges. ...more

Holland & Knight LLP

The Impact of Cybersecurity Regulations on the Financial Services Industry in 2022

Holland & Knight LLP on

Following the SolarWinds and the Colonial Pipeline cyberattacks, the Biden Administration emphasized a shift toward mandatory cybersecurity requirements. Throughout 2021, government agencies issued new cybersecurity guidance,...more

191 Results
 / 
View per page
Page: of 8

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide