News & Analysis as of

Personally Identifiable Information Corporate Governance

Holland & Knight LLP

SEC Expands Scope of Internal Accounting Controls in Cybersecurity Breach Settlement

Holland & Knight LLP on

The SEC continues to expand its cybersecurity enforcement authority to include allegations that a company's failure to monitor its managed security service providers (MSSP) amounts to violations of federal securities laws....more

Woodruff Sawyer

Board of Directors: Prioritize Your Cyber Risk

Woodruff Sawyer on

Cyber attacks continue to be one of the most concerning risks to businesses. COVID-19 is only exacerbating those risks. Add to that the D&O litigation that happens after a cyber event, and you have a recipe for disaster for...more

Hinshaw & Culbertson - Consumer Crossroads

Long-Awaited DFS Cyber Enforcement Action Sees Charges Filed Against Title Insurer For Exposing Millions of Documents Containing...

After several years of anticipation, the New York State Department of Financial Services (DFS) has filed its first enforcement action under the agency's groundbreaking and first-in-the-nation 2017 cybersecurity regulation...more

Mitratech Holdings, Inc

Policy Management: Choosing the Right Data Privacy Software, Part 1

What features should a legal or compliance team or technology buyer look for in the various solutions that should be elements of an effective data privacy and information governance initiative?...more

Seyfarth Shaw LLP

FTC Touts Refined Approach to Data Security Enforcement

Seyfarth Shaw LLP on

Synopsis: On January 6, 2020, Andrew Smith, director of the Federal Trade Commission’s Bureau of Consumer Protection, outlined in a blog post the agency’s new approach to data security orders. The agency implemented this...more

Holland & Hart LLP

Nevada Legislative Update - August 2019

Holland & Hart LLP on

The Nevada State Legislature’s 80th regular session made history with the first female majority in the nation. This session focused on issues such as healthcare, energy, construction, and employment. ...more

McDermott Will & Emery

Corporate Law & Governance Update - July 2019

McDermott Will & Emery on

IMPACT OF EQUIFAX, FACEBOOK SETTLEMENTS - Health care industry boards should give close attention to the governance implications of recent privacy settlements entered into by Equifax and Facebook. Their unique facts...more

Mitratech Holdings, Inc

Have You Met These 3 Crucial CCPA Compliance Challenges?

Data privacy regulations are now sprouting up in regions, countries, and even individual states worldwide. The next challenge in line for many GRC professionals? Achieving CCPA compliance. ...more

Jones Day

SEC Adopts FAST Act Amendments to Modernize and Simplify Disclosure Requirements

Jones Day on

The Situation: The U.S. Securities and Exchange Commission ("SEC") adopted amendments to modernize and simplify disclosure requirements in Regulation S-K and certain related rules and forms. The Result: The amendments seek...more

Thomas Fox - Compliance Evangelist

Life With GDPR: Episode 22- Morrisons’ and vicarious liability

In this episode, I visit with Jonathan Armstrong on the recent UK court of appeals decision in the Morrisons’ case. This decision stretched the limits of vicarious liability for a corporation to the absolute breaking point...more

Mayer Brown Free Writings + Perspectives

Cybersecurity and Board Oversight

In a recent speech, SEC Commissioner Kara Stein commented on the importance of cybersecurity. The Commissioner noted that encouraging adoption of written policies and procedures, voluntary frameworks and non-binding guidance...more

Hogan Lovells

Getting to data nirvana: A legal and compliance guide to data value creation Chapter 3 – Regulatory silo-busting to optimize risk...

Hogan Lovells on

“Getting to Data Nirvana” is our four-step approach to help you integrate your legal, regulatory and compliance work streams into your organisation’s overall data strategy. ...more

Mitratech Holdings, Inc

GDPR 30 Days Later, According to Experts

Since it officially launched 30 days ago, the news has been abuzz with speculations about GDPR. About what it means for Europe, what it could mean for the U.S., and how the written regulations will be carried out in practice....more

Bass, Berry & Sims PLC

GDPR Top 5 Actions You Should Take NOW

Bass, Berry & Sims PLC on

The EU’s General Data Protection Regulation (GDPR) goes into effect on May 25th. As most organizations are aware, the GDPR applies not only to EU businesses but also many companies in the U.S. While the deadline is quickly...more

A&O Shearman

SEC Issues $35 Million Fine For Alleged Failure To Disclose Data Breach

A&O Shearman on

On April 24, 2018, the United States Securities and Exchange Commission (“SEC”) instituted a settled administrative proceeding against Altaba Inc., f/d/b/a Yahoo! Inc. (“Yahoo!”) for allegedly failing to disclose a...more

Patterson Belknap Webb & Tyler LLP

FTC Chronicle: “Lessons Learned” from the Agency’s Data Breach Investigations

The Federal Trade Commission (FTC) – often criticized for not providing clear guidance as to what the agency considers reasonable data security – announced on Friday that it would publish a weekly blog discussing “lessons...more

Mintz - Privacy & Cybersecurity Viewpoints

A Failed Strategy: Another Derivative Action In A Data Breach Case Goes Down To Defeat

Dismissal Of Home Depot Derivative Action Extends Shareholder Losing Streak An attempt to impose liability on corporate officers and directors for data breach-related losses has once again failed. On November 30,...more

Proskauer on Privacy

SEC Cybersecurity Update

Proskauer on Privacy on

Results from the SEC’s First Round of Cybersecurity Examinations - On February 3, 2015, the OCIE published a risk alert summarizing its findings from its examinations of over 100 registered investment advisers and...more

Morgan Lewis

Proactive Approach To Cybersecurity: Recent SEC guidance and enforcement actions suggest that reactive firms may be in the SEC’s...

Morgan Lewis on

In an environment where even the largest and most powerful corporations have fallen victim to data breaches, it can be challenging to fathom how to protect against the sophisticated and ever-evolving threat of cyber attacks....more

Foley & Lardner LLP

SEC Brings First Cybersecurity Enforcement Proceeding in Wake of Risk Alert

Foley & Lardner LLP on

Highlights Areas of High Risk and Examination Priorities for Financial Industry Firms - On September 15, the U.S. Securities and Exchange Commission’s (SEC’s) Office of Compliance, Inspections and Examinations (OCIE),...more

Manatt, Phelps & Phillips, LLP

SEC Ramps up Cybersecurity Scrutiny With Examination Priorities and an Enforcement Action

Why it matters - Signaling that it will continue to increase its scrutiny of firms' cybersecurity readiness, the Office of Compliance, Inspections and Examinations of the Securities and Exchange Commission (SEC) issued a...more

Burr & Forman

TN Ethics Opinion Approves Lawyers’ Cloud Storage of Client Data

Burr & Forman on

Tennessee has joined other states in formally approving lawyers’ cloud-storage of client-confidential data. The Board of Professional Responsibility (“BOPR”) held that lawyers ethically may use cloud storage for...more

Orrick, Herrington & Sutcliffe LLP

HIPAA Security Requirements Aren't Cloudy, Especially to Whistleblowers

Earlier this month, the U.S. Department of Health and Human Services Office for Civil Rights (HHS OCR) announced that it had entered into a settlement agreement with St. Elizabeth's Medical Center (SEMC) in Brighton,...more

23 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide