News & Analysis as of

Personally Identifiable Information Notification Requirements

Alston & Bird

Pennsylvania Amends Data Breach Notification Law

Alston & Bird on

Pennsylvania’s Governor recently approved amendments to the Commonwealth’s data breach notification law, which represent a significant overhaul to the law. As detailed below, the amended law makes a number of material...more

International Lawyers Network

Data Privacy Guide - USA - Illinois

Introduction - Illinois has enacted laws addressing rights and obligations related to data privacy. Companies and organizations that handle, collect, disseminate, or otherwise deal in nonpublic information have a number of...more

Dunlap Bennett & Ludwig PLLC

The FTC’s Expanded Cybersecurity Requirements Affecting Non-Banking Small Businesses

The expansion of the FTC’s Safeguards Rule will require businesses to notify customers and the FTC of cyber breaches that had previously been excluded from reporting requirements. Previously, only banks had been required to...more

Arnall Golden Gregory LLP

Comment Deadline Approaching: Health Breach Notification Rule

Summary - On May 18, 2023, the Federal Trade Commission (“FTC”) announced a Notice of Proposed Rulemaking (the “Proposed Rule”), which both clarifies the scope of the Health Breach Notification Rule (“HBN Rule”) to include...more

Houston Harbaugh, P.C.

Breach of Personal Information Notification (BPIN) Act Amendment

Houston Harbaugh, P.C. on

Important amendments to Pennsylvania’s data breach law – the Breach of Personal Information Notification Act (the “Act”) – will take effect May 3, 2023. This is an important update to Pennsylvania data privacy laws as the...more

Akin Gump Strauss Hauer & Feld LLP

State and Federal Crackdown on Data Breach: EyeMed, Carnival Cruise & CafePress Settlements

This year has seen some substantial new data breach settlements including a $500,000 Federal Trade Commission (FTC) fine against CafePress, a $1.25 million multi-state class action settlement and $5 million New York...more

Reveal

Data Privacy and Breach Notification From the Other Side of the World: APAC

Reveal on

Last week, I discussed eDiscovery in the Asia Pacific (APAC) region in terms of what each country has in place from a rules and discovery standpoint. eDiscovery isn’t the only discipline where US-based bloggers like me tend...more

Robinson+Cole Data Privacy + Security Insider

Privacy Tip #245 – Another Breach Notification Letter

This week, I received a breach notification letter from a large financial institution stating that my personal information, including my name, Social Security number, account name and number, contact information, date of...more

Robinson+Cole Data Privacy + Security Insider

CCPA Amendment Details to Consider

In delving deeply into the California Consumer Privacy Act (CCPA), the Amendments recently signed by the California Governor, and the proposed Regulations issued by the California Attorney General, there are some details that...more

Fox Rothschild LLP

U.S. States And Territories Data Breach Statutes

Fox Rothschild LLP on

Fox Rothschild’s Privacy and Data Security practice group maintains this searchable PDF document as well as the Data Breach 411 app to inform businesses of the breach notification statutes in each of the 50 states, Guam,...more

Franczek P.C.

The Real Risk of Data Breach And What Schools Can Do To Be Prepared

Franczek P.C. on

This summer, Pearson notified a handful of Illinois school districts that its AIMSweb 1.0 Platform had experienced a data breach that impacted over 13,000 account holders nationally. ...more

Foley Hoag LLP - Security, Privacy and the...

Data Scraping, at Home and Abroad

Data scraping is a technique where information on one platform is exported onto another. The practice is widespread and is used for all sort of reasons, like market analysis or advertising. The kind of information located and...more

Sands Anderson PC

Changes are Coming to New York’s Data Breach Notification and Security Requirements

Sands Anderson PC on

New York recently enacted important changes to its data breach notification requirements (Breach Requirements) and created a statutory obligation to maintain reasonable data security (Security Requirements). Under the new...more

Fisher Phillips

New York Expands The Data Breach Umbrella: More Cybersecurity Incidents Will Require Breach Compliance From Businesses Who Possess...

Fisher Phillips on

On July 25, 2019, New York Governor Anthony Cuomo signed the Stop Hacks and Improve Electronic Data Security Act (SHIELD Act) into law. The Act creates additional protections for the residents of New York and their private...more

Kramer Levin Naftalis & Frankel LLP

Stricter Data Privacy and Cybersecurity Laws May Be Coming Soon to New York: Updates on the SHIELD Act and the New York Privacy...

New York is gearing up to enact some of the toughest cybersecurity, privacy and data protection laws in the country. Modeled on the European Union’s General Data Protection Regulation (GDPR) and the California Consumer...more

Locke Lord LLP

Updates to Massachusetts Data Breach Laws: House Bill No. 4806

Locke Lord LLP on

On January 10, 2019, Massachusetts Governor Charlie Baker signed House Bill No. 4806 into law. The bill amends certain provisions of the state data breach notification law, increasing reporting requirements on a person or...more

Husch Blackwell LLP

Illinois Legislature Passes Amendment To State’s Data Breach Notification Statute

Husch Blackwell LLP on

Key Point: The Illinois data breach notification statute will now require entities to notify the Illinois Attorney General if a breach affects 500 or more Illinois residents. The Illinois General Assembly recently voted to...more

BakerHostetler

Texas Moves Forward With Updates to Breach Notification Law and Institutes Privacy Council to Study Data Privacy Legislation

BakerHostetler on

Texas is one of the many states that looked to be following in the footsteps of California’s enactment of a broad consumer privacy law (the California Consumer Privacy Act), which has far-ranging implications for businesses...more

Alston & Bird

Washington State Amends Data Breach Notification Law

Alston & Bird on

On May 7, 2019, Washington amended its data breach notification law (HB 1071). The amendment shortens the period in which notice must be provided, expands the definition of personal information, adds further content...more

Fox Rothschild LLP

NJ Data Breach Notification Law Amended To Include Online Account Security Breaches

Fox Rothschild LLP on

New Jersey businesses will soon be required to notify affected consumers following a data breach that involves online account information that would allow access to the consumer’s online account. The state’s data breach...more

Sands Anderson PC

Washington’s Data Breach Law is Changing – Expanding Definition of “Personal Information” and Adding New Notification...

Sands Anderson PC on

Beginning on March 1, 2020, Washington State’s data breach notification law will change in a number of important ways. First, the definition of “Personal Information” will expand significantly. This means more data elements...more

Hogan Lovells

A new model for obtaining data protection consents: unbundling the proposed amendments to China's Personal Information Security...

Hogan Lovells on

On 1 February, 2019, the National Information Security Standardization Technical Committee issued an amended version of the GB/T 35372-2017 Information Technology – Personal Information Security Specification for public...more

Sheppard Mullin Richter & Hampton LLP

Washington’s Breach Law Amended, Effective March 2020

Washington joins Massachusetts as the second state this year to amend its data breach notification law. The amendments will not take effect, however, until March 1, 2020. As amended, the definition of personal information has...more

Jones Day

Key Lessons From Australia's Notifiable Data Breach Scheme

Jones Day on

The Situation: The Notifiable Data Breach scheme, introduced by amendments to the Privacy Act 1988 (Cth), requires an assessment when an entity suspects that there may have been loss of, unauthorised access to, or...more

Sheppard Mullin Richter & Hampton LLP

UK ICO Fines Parenting Club £400,000 Over Breach Involving PII of Mothers and Babies

The ICO first began its examination of Bounty UK Ltd. (a support club for parents) when the ICO was investigating the data brokerage industry generally, of which it viewed Bounty as taking part (given that it shared member...more

75 Results
 / 
View per page
Page: of 3

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide