Latest Publications

Share:

Privacy and Data Security Law 2023 Year in Review

The year 2023 saw continued expansion of public interest in privacy rights, data security and related legislation. Comprehensive privacy laws took effect in five states, while 12 more states enacted similar laws that will...more

NY Department of Financial Services Finalizes Significant Amendments to Its Cybersecurity Regulations

The New York State Department of Financial Services (NYDFS) adopted comprehensive amendments to its cybersecurity regulations (known as Part 500) on Nov. 1. The draft amendments were first published in July 2022 and finalized...more

California Passes the Delete Act, Establishing a Single Location for Consumers to Delete Their Personal Information From Data...

Gov. Gavin Newsom signed the Delete Act (the Act) on Oct. 11, making it easier for California consumers to instruct data brokers to delete their personal information or refrain from selling or sharing it. Consumers already...more

SEC Finalizes New Cybersecurity Disclosure Rules

By a 3-2 vote on July 26, the U.S. Securities and Exchange Commission (SEC) adopted final rules enhancing disclosure requirements regarding public companies’ cybersecurity risk management, strategy, governance and incident...more

US and EU Finalize New Data Privacy Framework

On July 10, the European Union and the United States finalized the EU-U.S. Data Privacy Framework (DPF), an agreement that allows for the transfer of personal data from residents of the EU to certified companies in the U.S....more

New York City’s New AI Bias Law Is About To Take Effect: What You Need To Know

On July 5, 2023, the New York City Department of Consumer and Work Protection (DCWP) will begin enforcement of Local Law 144 (Law), which regulates employers’ use of “automated employment decision tools” (AEDTs) to screen...more

Cybersecurity, Privacy and Data Protection 2022 Year in Review

The year 2022 saw a groundswell of interest in privacy rights and related legislation. Five states enacted new laws or regulations aimed at protecting a general right to privacy, while the U.S. government came closer than...more

SEC Charges Investment Adviser for Failing to Adequately Disclose ESG Investment Policies and Procedures

On Nov. 22, 2022, the Securities and Exchange Commission (SEC) charged an investment adviser subsidiary of a major U.S. financial institution with violations of Section 206(4) of the Investment Advisers Act of 1940 (Advisers...more

CA Attorney General Announces First Public CCPA Fine

On Aug. 24, 2022, California Attorney General Rob Bonta (AG) announced the first public fine for failure to comply with the California Consumer Privacy Act (CCPA). Beauty products retailer Sephora Inc. agreed in a settlement...more

Supreme Court Rejects EPA’s ‘Clean Power Plan’ in Decision Raising Questions About the SEC’s Climate-Related Disclosure Rules

On June 30, 2022, the U.S. Supreme Court held in West Virginia v. Environmental Protection Agency, 597 U.S. ___ (2022), that the Clean Air Act did not clearly authorize the Environmental Protection Agency (EPA) to create the...more

The SEC’s Climate and ESG Task Force Charges Vale S.A. With Securities Fraud

On April 28, the Securities and Exchange Commission (SEC) filed a complaint against the Brazilian mining company Vale S.A., alleging that the company made false and misleading statements to investors about the company’s...more

SEC Proposes Rules to Require New Climate-Related Disclosures

On March 21, 2022, the Securities and Exchange Commission (SEC) issued for comment proposed rules requiring companies to include climate-related disclosures in their registration statements and periodic reports filed under...more

EU Commission’s Proposal to Expand Corporate Sustainability Obligations Relating to Human Rights and the Environment

On Feb. 23, 2022, the European Commission (Commission) announced a proposed Directive on Corporate Sustainability Due Diligence, which would establish uniform EU-wide requirements to foster compliance with certain...more

SEC Proposes Cybersecurity Risk Management Requirements for Investment Advisers and Registered Funds

On Feb. 9, 2022, the Securities and Exchange Commission (SEC or Commission) proposed a suite of new rules and amendments concerning cybersecurity risk management for registered investment advisers (advisers) and registered...more

New York Proposes Groundbreaking Fashion Sustainability Legislation

In January, the New York State Assembly and Senate introduced identical bills seeking to impose broad environmental, social and governance (ESG) mandates on the global fashion industry. If passed, the Fashion Sustainability...more

SEC Continues Focus on Cybersecurity in Three New Actions Targeting Investment Advisers and Broker Dealers

Demonstrating its continued focus on cybersecurity enforcement, the Securities and Exchange Commission (SEC) announced three new actions on Aug. 30 charging eight firms with maintaining deficient cybersecurity policies and...more

New York City’s Biometric Privacy Law Takes Effect: What You Need To Know

On July 9, 2021, New York City enacted a new biometric ordinance regulating how businesses handle biometric identifier information. The new law is the first of its kind in New York and requires commercial establishments...more

The SEC’s Continued Focus on Cybersecurity Enforcement

On June 14, the Securities and Exchange Commission (SEC) announced a $490,000 settlement with the real estate services provider First American Financial Corporation (First American) for violations of disclosure controls and...more

DOJ Cyber-Digital Task Force Releases Cryptocurrency Enforcement Framework

Building off a 2018 alert outlining cyber threats generally, and following the federal indictment for money laundering of the founders of the offshore cryptocurrency exchange BitMEX, on Oct. 8, 2020, the U.S. Department of...more

OCIE Warns of Increased ‘Credential Stuffing’ Cyberattacks on Investment Advisers, Broker-Dealers

The  Securities and Exchange Commission’s (SEC) Office of Compliance Inspections and Examinations (OCIE) has published a risk alert, warning SEC-registered investment advisers, brokers and dealers about the increasing use of...more

Delaware Court of Chancery Confirms Directors’ Right to Access Company’s Privileged Information

Can management of a Delaware corporation block members of the board of directors from gaining access to the company’s privileged information? The Delaware Court of Chancery recently addressed this question in the ongoing...more

Europe’s Highest Court Invalidates EU-US Privacy Shield Data Transfer Framework

On July 16, the European Court of Justice (ECJ or the Court) struck down the EU-U.S. Privacy Shield program. The ruling invalidated an earlier European Commission (Commission) decision (Privacy Shield adequacy determination)...more

Facial Recognition Technology: A Primer for Practitioners

Facial recognition is a rapidly evolving area of technology with myriad potential commercial uses. Reflecting the rapid growth in this area, regulations related to facial recognition are changing across all levels of...more

NY Regulatory Guidance on AI Illustrates Compliance Challenges

The New York Department of Financial Services’ (DFS) January 2019 insurance circular letter, which advised New York-licensed life insurance carriers on the use of external consumer data and information sources in...more

38 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide