News & Analysis as of

Publicly-Traded Companies Cybersecurity Compliance

Wilson Sonsini Goodrich & Rosati

Corp Fin Issues CDIs on Cybersecurity Incident Reporting

As part of its continuing efforts to clarify the application of the SEC’s rules regarding the disclosure of material cybersecurity incidents, on June 24, 2024, the Division of Corporation (Corp Fin) issued five new Compliance...more

Holland & Knight LLP

SEC Corporation Finance Director Voluntarily Weighs in on Cybersecurity Incident Disclosures

Holland & Knight LLP on

The U.S. Securities and Exchange Commission's (SEC) Division of Corporation Finance Director Erik Gerding released a statement on May 21, 2024, addressing Disclosure of Cybersecurity Incidents Determined to be Material and...more

WilmerHale

8 Questions To Ask Before Final CISA Breach Reporting Rule

WilmerHale on

On April 4, the Cybersecurity and Infrastructure Security Agency published a notice of proposed rulemaking setting out mandatory reporting requirements for covered entities that experience cybersecurity incidents or make...more

Saul Ewing LLP

Public Companies Quarterly Update (Q4 2023)

Saul Ewing LLP on

Welcome to Saul Ewing’s Public Companies Quarterly Update series. Our intent is to, on a quarterly basis, highlight important legal developments of which we think public companies should be aware. This edition is related to...more

BCLP

Pressure-Testing Your Privacy Program for 2024

BCLP on

With the onslaught of new privacy legislation and cyber threats coupled with upticks in enforcement, running a well-functioning and flexible privacy program is now, more than ever, a critical component of an organization’s...more

Thomas Fox - Compliance Evangelist

SEC, Solar Winds and Compliance

The recent SEC lawsuit against SolarWinds Corp and its CISO, Tim Brown, following the 2020 data breach, has brought the issue of executive liability in cybersecurity disclosures to the forefront. This case sheds light on the...more

BakerHostetler

Addressing the SEC’s New Cybersecurity Risk Management, Strategy, Governance and Incident Disclosure Requirements

BakerHostetler on

In July 2023, the SEC adopted new cybersecurity rules for the stated purpose of enhancing and standardizing disclosures regarding cybersecurity risk management, strategy, governance and incidents by public companies. The...more

Baker Donelson

Show Your Work: The SEC Cyber Rules and Documenting Materiality Analysis Under NIST FIPS 199

Baker Donelson on

The date July 26, 2023, marks the latest evolution of the cybersecurity regulation landscape as the Securities and Exchange Commission passed cybersecurity regulations for publicly traded companies. At the open meeting, SEC...more

Keating Muething & Klekamp PLL

Securities Snapshot: 3rd Quarter 2023 - What You Need to Know About The SEC's Latest Rulemaking

The weather may be cooling down, but the Securities and Exchange Commission (“SEC”) did not cool down its pace of rulemaking during the third quarter of 2023. The SEC adopted its highly anticipated cybersecurity disclosure...more

Parker Poe Adams & Bernstein LLP

Next Steps for Companies Ahead of December Deadline for SEC Cybersecurity Disclosures

In less than three months, public companies and certain foreign private companies will have to take additional steps after cybersecurity breaches: deciding whether an incident meets the materiality threshold that requires...more

Dorsey & Whitney LLP

New SEC Cybersecurity Rules Require Mandatory Disclosure

Dorsey & Whitney LLP on

On July 26, 2023, the Securities and Exchange Commission adopted new rules imposing disclosure requirements regarding cybersecurity risk management, strategy, governance and incidents. The new rules, which became effective...more

Venable LLP

Key Actions for Public Companies under the SEC's New Cybersecurity Rules

Venable LLP on

On July 26, 2023, the Securities Exchange Commission (SEC) adopted a final rule intended to augment and standardize disclosures regarding cybersecurity risk management, governance, and incident reporting. The new rule imposes...more

The Volkov Law Group

Episode 288 -- SEC Adopts Robust New Cybersecurity Disclosure Rules

The Volkov Law Group on

In late July 2023, the Securities and Exchange Commission (“SEC”) adopted new rules requiring public companies to disclose cybersecurity incidents and cybersecurity governance policies and practice.  The SEC largely adopted...more

Smith Anderson

Public Companies Get Prepared: SEC Adopts New Cybersecurity Disclosure Rules

Smith Anderson on

The SEC adopted new rules for public companies regarding disclosure of information relating to cybersecurity risk management, strategy, governance, and material incidents. Companies will now be required to disclose...more

Arnall Golden Gregory LLP

New SEC Cybersecurity Rules Are Here: What Should Companies Be Doing to Comply?

SEC Cybersecurity Rule Fact Sheet What Is the New Rule? In late July 2023, the SEC adopted new rules that will require publicly traded companies to: disclose cybersecurity incidents within four business days of determining...more

Husch Blackwell LLP

Twelve Planning Tips to Avoid Complications with the SEC’s Cybersecurity Disclosure Rules: Part I

Husch Blackwell LLP on

Key Point: To avoid inadvertently increasing enforcement and litigation risks, companies should consider these suggestions to minimize headaches with the SEC’s final rules that mandate (a) disclosures in annual report of...more

Epiq

Breaking Down the New SEC Cybersecurity Rules

Epiq on

On July 26, the Securities and Exchange Commission (SEC) adopted new cybersecurity rules. Organizations will need to disclose material cyber incidents pursuant to a prescribed timeline and information regarding risk...more

Guidepost Solutions LLC

The SEC has new Cybersecurity Rules. Are you prepared and ready?

On July 26, 2023, the Securities and Exchange Commission (SEC) implemented new cybersecurity rules to require disclosure of material cybersecurity incidents within four business days, with limited exceptions.  Additionally,...more

Faegre Drinker Biddle & Reath LLP

SEC Adopts New Cybersecurity Rule

On July 26, the Securities and Exchange Commission (“SEC”) finalized a much anticipated rule addressing cybersecurity risk management, strategy, governance, and incident disclosure. Public companies registered with the SEC...more

Latham & Watkins LLP

SEC Adopts Cybersecurity Disclosure Rules

Latham & Watkins LLP on

The SEC, by a 3-2 vote, has adopted new rules requiring companies to provide: ..current disclosure on Form 8-K within four business days of determining that a material cybersecurity incident has occurred; and ...more

Jenner & Block

SEC Adopts Rules on Cybersecurity Risk Management, Strategy, Governance and Incident Disclosure by Public Companies

Jenner & Block on

On July 25, 2023, the US Securities and Exchange Commission (the SEC), by a 3-2 vote, adopted final rules regarding cybersecurity risk management, strategy, governance and incident reporting by public companies (the Final...more

Ogletree, Deakins, Nash, Smoak & Stewart,...

SEC Finalizes New Cybersecurity Incident Reporting Rules for Public Companies

On July 26, 2023, the U.S. Securities and Exchange Commission (SEC) finalized new rules that mandate public companies to disclose material cybersecurity incidents and provide annual updates on their cybersecurity risk...more

Eversheds Sutherland (US) LLP

SEC adopts new rules to expand public company disclosure relating to cybersecurity by year end

On July 26, 2023, the US Securities and Exchange Commission (SEC) released final rules requiring disclosure by public companies of material cybersecurity incidents and policies and procedures related to cybersecurity risk...more

Mintz - Privacy & Cybersecurity Viewpoints

SEC Adopts Final Cybersecurity Rules for Public Companies

In a narrow 3-2 decision on July 26, the SEC adopted its final rule concerning cybersecurity risk management, strategy, governance, and incident disclosure (the “Final Rule”).  Below we highlight some of the principal changes...more

Goodwin

Although Scaled Back, the SEC’s Newly Adopted Cybersecurity Disclosure Rule Will Require Significant Effort by Public Companies to...

Goodwin on

As a significant step in its ongoing initiatives on the disclosure, management, and oversight of cybersecurity risks and incidents, on July 26, 2023, the US Securities and Exchange Commission (SEC or Commission) adopted rules...more

41 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide