Latest Posts › Cybersecurity

Share:

Congress and the White House Announce Framework, Working Group and Plans to Address Risks Associated with AI

On June 21, 2023, Senate Majority Leader Chuck Schumer joined the Center for Strategic and International Studies (CSIS) to launch his SAFE Innovation Framework, a comprehensive approach to address challenges associated with...more

FTC Announces Enforcement Actions Against Amazon’s Alexa and Ring Divisions for Violations of User Privacy

On May 31, the Federal Trade Commission (FTC or Commission) announced two separate enforcement actions against Amazon—one involving its cloud-based voice service, Alexa, and the other involving Ring, its smart doorbell...more

Texas Set to Become the Tenth State with a Comprehensive Privacy Law

On May 28, 2023, the Texas legislature reached an agreement (by conference committee) on the Texas Data Privacy and Security Act (the Act), setting the stage for Texas to become the tenth state with a comprehensive privacy...more

SEC Proposes Changes to Reg S-P to Impose New Cybersecurity-Related Requirements on Covered Institutions

On March 15, 2023, the Securities and Exchange Commission (SEC) announced proposed changes to Regulation S-P (“Reg S-P”) that would impose new cybersecurity incident response requirements on broker-dealers, investment...more

California Privacy Protection Agency Emphasizes Enforcement and Expresses Opposition to Federal Privacy Legislation at March...

On Friday, March 3, 2023, the California Privacy Protection Agency (CPPA) held a public board meeting. Though the meeting focused primarily on the Agency’s budget and various administrative issues (e.g., subcommittee...more

Attorneys General Bring Multistate Data Breach Settlement Against DNA Testing Lab

On February 17, 2023, the state attorneys general of Pennsylvania and Ohio reached a settlement with Ohio-based DNA Diagnostics Center (“DDC”) for a 2021 data breach that affected 2.1 million individuals nationwide and...more

California Privacy Protection Agency Approves CPRA Regulations and Takes Steps to Promulgate Future Rulemaking on Additional...

On Friday, February 3, 2023, the California Privacy Protection Agency (CPPA) held a public board meeting at which it voted unanimously to (1) approve the final text of the California Privacy Rights Act (CPRA) regulations and...more

FTC Announces Six-Month Delay of Compliance Deadline for Updated Safeguards Rule

On November 15, the Federal Trade Commission (FTC) announced a six-month delay of the deadline by which companies must comply with recent amendments to its Standards for Safeguarding Customer Information (“the Safeguards...more

NYDFS Proposes a Second Amendment to its Cybersecurity Regulations

On November 9, the New York State Department of Financial Services (“DFS”) formally proposed amendments (the “Proposed Amendments”) to the Part 500 Cybersecurity Regulations (the “Cybersecurity Regulations”). The Proposed...more

Aerojet Rocketdyne Agrees to Pay $9 Million to Resolve False Claims Act Allegations of Cybersecurity Violations in Federal...

On July 8, 2022, the Department of Justice (“DOJ”) announced in a press release that Aerojet Rocketdyne Inc, a provider of advanced propulsion and energetics systems for multiple government agencies, reached a settlement...more

FTC Takes Action Against Online Merchandise Platform Over Data Breach & Privacy Practices

In the latest of a flurry of FTC actions, the agency recently announced that it had entered into a consent order with CafePress, an online customized merchandise platform, over allegations that it failed to secure consumers’...more

Utah Consumer Privacy Act Close to Becoming Law

Utah is close to becoming the fourth state to have a comprehensive privacy law. The Utah Consumer Privacy Act (SB 227) unanimously passed the Utah Senate on February 25. And the Utah House followed suit quickly, unanimously...more

Russia’s Invasion of Ukraine Raises Cybersecurity Dangers for U.S. Businesses

Russia’s full-scale military invasion of Ukraine is raising cybersecurity risks for American businesses. Corporate America must take immediate additional precautions to protect their networks in light of what is quickly...more

FTC Finalizes Financial Institution Safeguards Rule

On October 27, 2021, the Federal Trade Commission (FTC) announced a newly updated rule under the Gramm-Leach-Bliley Act (GLBA) intended to require financial institutions to strengthen their data security safeguards to protect...more

10 Areas Of Privacy Law That Look Ripe For Change In 2021

While still in its relative infancy, privacy law has quickly become a turbulent teenager, with constant change around the world. At a minimum, 2021 will require meaningful efforts to implement the changes of 2020, with a...more

Congress Passes Bill to Mitigate Penalties for Potential HIPAA Violations

On December 19, the Senate passed H.R.7898, which the House of Representatives had previously passed on December 9. This law amends the Health Information Technology for Economic and Clinical Health (HITECH) Act to require...more

Federal Financial Regulators Propose Requiring Banks Report Cyber Incidents Within 36 Hours

On December 17, 2020, the Office of the Comptroller of the Currency, Treasury (OCC); the Federal Reserve; and the Federal Deposit Insurance Corporation (FDIC) issued a Notice of Proposed Rulemaking that would require...more

Guidance on Potential Ransomware Attacks on US Hospitals

We hope you have read about the reporting on potential ransomware attacks on US hospitals and perhaps other health care providers. If you have not, please review this guidance from the government agencies involved in this...more

Privacy Law for Security Professionals

Security existed as a business norm long before it became a legal and compliance requirement. Doctors' offices locked their doors at night to ensure no one could access their records. Stores took precautions when they walked...more

GDPR, CCPA's Potential Impact on Federal Health Care Privacy

In the U.S., we do not, today, have a national privacy law. Pressure from the EU, via the General Data Protection Regulation, and from California, via the California Consumer Privacy Act, are driving an extensive national...more

The Evolution of US Privacy and Security Law

The United States has always had privacy law. For most of our history it mainly regulated the government in connection with its citizens.  About 20 years ago we started modern privacy - presumably why we have Data Privacy...more

46 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide