News & Analysis as of

Compliance Dates Risk Management

Alston & Bird

Additional Cybersecurity Requirements of NYDFS Part 500 Take Effect

Alston & Bird on

On May 1, 2025, additional enhanced cybersecurity controls required by the Second Amendment to the New York Department of Financial Services (NYDFS) Cybersecurity Regulation (23 NYCRR Part 500) (the “Second Amendment”) take...more

Venable LLP

DOJ Data Security Program Key Developments: A 90-Day "Good Faith" Extension, Compliance Guide, and Extensive FAQs

Venable LLP on

On April 11, the Department of Justice's National Security Division (NSD) published new guidance on recent measures to restrict the ability of adversarial foreign governments and other foreign entities of concern to access...more

Husch Blackwell LLP

Effective Dates Draw Near for Insurance Industry to Comply with NYDFS's Cybersecurity Rules

Husch Blackwell LLP on

As part of a multiyear rollout, the New York Department of Financial Services (NYDFS) has established May 1, 2025, and November 1, 2025, as effective dates for certain amendments to its cybersecurity regulations. These...more

Womble Bond Dickinson

The UK's Failure to Prevent Fraud Offense

Womble Bond Dickinson on

Effective September 1, 2025, the UK’s Failure to Prevent Fraud offense will go into effect as part of the UK’s Economic Crime and Corporate Transparency Act 2023 (the ECCTA). The law significantly expands corporate liability...more

WilmerHale

DOJ Issues Guidance for New Data Security Program

WilmerHale on

On April 8, the Department of Justice’s (“DOJ’s”) final rule on Preventing Access to US Sensitive Personal Data and Government-Related Data by Countries of Concern or Covered Persons (the “Rule”) formally took effect. ...more

Womble Bond Dickinson

Navigating the New DOJ Data Security Program Compliance

Womble Bond Dickinson on

On January 8, 2025, the U.S. Department of Justice (“DOJ”) issued its final rule to implement Executive Order 14117 aimed at preventing access to Americans' bulk sensitive personal data and government-related data by...more

BCLP

Digital Markets, Competition and Consumer Act - What can we expect from the CMA?

BCLP on

2025 is set to be a busy year in UK consumer protection law. With the CMA issuing its annual plan for 2025 / 2026 on 27 March 2025 and its new powers to enforce consumer protection law under the Digital Markets, Competition...more

Goodwin

EU Updates its Product Liability Regime: Important Considerations for Providers of AI Systems and Software

Goodwin on

The European Union has significantly overhauled its product liability regime with a new directive concerning liability for defective products (Product Liability Directive). EU member states have until December 9, 2026, to...more

Goodwin

EU Commission Regulations on Digital Operational Resilience: A Reminder That DORA is Less Than Three Months Away and Will Apply to...

Goodwin on

The European Commission’s adoption on 23 October 2024 of the two regulations (Regulations) supplementing the [the Regulation on digital operational resilience for the financial sector Publications Office (europa.eu)] (DORA)...more

BCLP

The EU’s Digital Operational Resilience Act 2022/2554 (DORA)

BCLP on

Long IT sub-contracting chains can make it hard for financial institutions to understand the vulnerabilities in their IT estate and the location of key functions (where these may be located in entities who do not have a...more

Holland & Knight LLP

SEC Corporation Finance Director Voluntarily Weighs in on Cybersecurity Incident Disclosures

Holland & Knight LLP on

The U.S. Securities and Exchange Commission's (SEC) Division of Corporation Finance Director Erik Gerding released a statement on May 21, 2024, addressing Disclosure of Cybersecurity Incidents Determined to be Material and...more

Latham & Watkins LLP

SEC Adopts Final Climate-Related Disclosure Rules

Latham & Watkins LLP on

On March 6, 2024, in a 3-2 vote, the US Securities and Exchange Commission (SEC) adopted final rules requiring registrants to disclose certain climate-related information in registration statements and annual reports. ...more

WilmerHale

NYDFS Finalizes Amendments to Cybersecurity Regulations

WilmerHale on

On November 1, 2023, New York Department of Financial Services (NYDFS or the “Department”) released the finalized revisions (the “Second Amendment”) to 23 NYCRR Part 500 (Part 500) – the most significant modifications to Part...more

Holland & Knight LLP

New Artificial Intelligence Executive Order Contains Numerous Healthcare Implications

Holland & Knight LLP on

President Joe Biden on Oct. 30, 2023, signed a sweeping executive order (EO) and invoked the Defense Production Act to establish the first set of standards for using artificial intelligence (AI) in healthcare and other...more

BakerHostetler

Addressing the SEC’s New Cybersecurity Risk Management, Strategy, Governance and Incident Disclosure Requirements

BakerHostetler on

In July 2023, the SEC adopted new cybersecurity rules for the stated purpose of enhancing and standardizing disclosures regarding cybersecurity risk management, strategy, governance and incidents by public companies. The...more

Parker Poe Adams & Bernstein LLP

Next Steps for Companies Ahead of December Deadline for SEC Cybersecurity Disclosures

In less than three months, public companies and certain foreign private companies will have to take additional steps after cybersecurity breaches: deciding whether an incident meets the materiality threshold that requires...more

Dorsey & Whitney LLP

New SEC Cybersecurity Rules Require Mandatory Disclosure

Dorsey & Whitney LLP on

On July 26, 2023, the Securities and Exchange Commission adopted new rules imposing disclosure requirements regarding cybersecurity risk management, strategy, governance and incidents. The new rules, which became effective...more

Venable LLP

Key Actions for Public Companies under the SEC's New Cybersecurity Rules

Venable LLP on

On July 26, 2023, the Securities Exchange Commission (SEC) adopted a final rule intended to augment and standardize disclosures regarding cybersecurity risk management, governance, and incident reporting. The new rule imposes...more

Goodwin

SEC Proposes Regulatory Changes to Open-End Fund Liquidity Requirements

Goodwin on

On November 2, 2022, the U.S. Securities and Exchange Commission (“SEC”), by a vote of 3-2, proposed amendments to rules under the Investment Company Act of 1940 that would modify the existing liquidity risk management...more

Dorsey & Whitney LLP

How Large Employers Can Prepare for CCPA/CPRA Obligations for “HR Data” in 2022

Dorsey & Whitney LLP on

Get ready, large employers. After years of amendments exempting the personal information of employees and other personnel from the California Consumer Privacy Act (“CCPA”), covered employers now have a firm deadline by which...more

Seyfarth Shaw LLP

Governor Newsom Pumps Brakes On New Sexual Harassment Training Requirements

Seyfarth Shaw LLP on

Seyfarth Synopsis: California employers racing to ensure all their employees receive mandatory harassment training by the end of the year can now take their foot off the gas. In response to an outcry from employer groups...more

Goodwin

Regulatory Update: SEC Adopts New Requirements for Fund Liquidity Risk Management and Amendments to Permit the Use of “Swing...

Goodwin on

On October 13, 2016, the U.S. Securities and Exchange Commission (SEC) unanimously adopted regulatory changes that require open-end funds, including mutual funds and exchange-traded funds (ETFs), to establish liquidity risk...more

22 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide