News & Analysis as of

Cyber Incident Reporting

BCLP

Cyber Litigation in Financial Services: Managing the Evolving Risk

BCLP on

Cyber incidents are increasingly giving rise to complex, long‑tail litigation risk, particularly for financial services firms. As regulators place growing emphasis on operational resilience, outsourcing governance and...more

Wiley Rein LLP

FCC Cybersecurity Workshop for Broadcasters: Key Takeaways and Practical Guidance

Wiley Rein LLP on

On May 14, 2026, the Federal Communications Commission’s (FCC) Public Safety & Homeland Security Bureau (PSHSB) convened a Cybersecurity Workshop for Broadcasters, bringing together public- and private-sector stakeholders to...more

A&O Shearman

Luxembourg adopts a new cyber and resilience framework with NIS 2 and CER laws

A&O Shearman on

Luxembourg has adopted two cornerstone laws that, together, constitute a new national cyber and resilience “arsenal”: • the law transposing Directive (EU) 2022/2555 (NIS 2) on cybersecurity - • the law transposing...more

Wiley Rein LLP

UPDATE: CISA Reschedules Virtual "Town Halls" on Cyber Incident Reporting Requirements

Wiley Rein LLP on

On May 26, 2026, the U.S. Department of Homeland Security’s (DHS) Cybersecurity and Infrastructure Security Agency (CISA) announced the rescheduled dates for its “town hall” virtual meetings on the Cybersecurity Incident...more

Clark Hill PLC

Clark Hill 2026 Commercial Real Estate Market Update: CIRCIA Is Coming - What Commercial Real Estate and Facilities Owners Need to...

Clark Hill PLC on

In 2022, President Biden signed into law the Cyber Incident Reporting for Critical Infrastructure Act of 2022 (CIRCIA). It developed out of the federal government’s perceived need to be better prepared for cybersecurity...more

Skadden, Arps, Slate, Meagher & Flom LLP

Decrypted Podcast | Decoding NIS2: Europe's New Cybersecurity Playbook

In this episode of "Decrypted," Skadden's cybersecurity and data privacy team tackles the EU's Network and Information Security Directive 2 (NIS2) — one of the most consequential cybersecurity regulations now reshaping how...more

Fisher Phillips

New Federal Cybersecurity Reporting Rules are on Their Way: FAQs for Businesses About CIRCIA Regulations

Fisher Phillips on

A sweeping new federal cybersecurity mandate is on its way, and now is the time for businesses to build the infrastructure you’ll need to comply. The Cybersecurity and Infrastructure Security Agency (CISA) is finalizing draft...more

Mayer Brown

United Kingdom Proposes Changes in the Cyber Security and Resilience Bill to the NIS Regulations, with Key Differences to NIS2

Mayer Brown on

The UK Government has published the Cyber Security and Resilience (Network and Information Systems) Bill (the "Bill" or the "UK Bill") proposing significant amendments to the Network and Information Systems Regulations 2018...more

Skadden, Arps, Slate, Meagher & Flom LLP

New GSA Guide Imposes Strict Cybersecurity Obligations on Government Contractors

On January 5, 2026, the U.S. General Services Administration (GSA) released Revision 1 of its IT Security Procedural Guide, “Protecting Controlled Unclassified Information (CUI) in Nonfederal Systems and Organizations...more

Alston & Bird

EU Moves Toward a Single Entry Point for Security Incident Reporting

Alston & Bird on

On March 17, 2026, the European Parliament published a briefing signalling continued momentum toward the creation of an EU‑wide Single Entry Point (SEP) for security incident reporting. The initiative is part of the European...more

Holland & Knight LLP

GSA's New CUI Requirements: What Government Contractors Need to Know

Holland & Knight LLP on

The U.S. General Services Administration (GSA) on January 5, 2026, quietly introduced a new cybersecurity compliance framework that will significantly reshape the information technology (IT) obligations of thousands of...more

Sheppard

CISA Announces Town Halls on Cyber Incident Reporting Rulemaking

Sheppard on

The Cybersecurity and Infrastructure Security Agency (“CISA”) will be hosting a series of upcoming virtual town hall meetings related to its rulemaking under the Cyber Incident Reporting for Critical Infrastructure Act...more

Alston & Bird

CISA Revives CIRCIA Rulemaking

Alston & Bird on

Almost two years after seeking stakeholder input about a final rule under the Cyber Incident Reporting for Critical Infrastructure Act of 2022 (CIRCIA), the Cybersecurity and Infrastructure Security Agency (CISA) announced...more

Mayer Brown

European Commission Proposes Major Cybersecurity Package to Strengthen EU Cyber Resilience

Mayer Brown on

On 20 January 2026, the European Commission proposed a comprehensive new cybersecurity package with the aim of strengthening the European Union’s cybersecurity resilience and capabilities, in response to growing cyber and...more

Mayer Brown

CISA Announces Town Halls Seeking Input on CIRCIA Implementation

Mayer Brown on

On February 13, 2026, the Cybersecurity and Infrastructure Security Agency (CISA) within the US Department of Homeland Security published a notice in the Federal Register announcing that it would hold a series of town halls...more

Wiley Rein LLP

CISA Reopens Comment Opportunity on Cyber Incident Reporting Requirements

Wiley Rein LLP on

The U.S. Department of Homeland Security’s (DHS) Cybersecurity and Infrastructure Security Agency (CISA) is working to finalize a rule that would require large segments of industry to rapidly report to the government when...more

Goodwin

The UK’s Ransomware Strategy: What the UK Government’s Response Signals

Goodwin on

Following the UK Government's launch of a public consultation on its proposed legislative measures to combat the threat of ransomware (see Goodwin’s January 2025 analysis), the UK Government published its response to the...more

Morrison & Foerster LLP - Government...

Without Fanfare or Opportunity for Public Comment, GSA Changes Cybersecurity Requirements for Contractors

In a recent update to internal procedural guidance, the General Services Administration (GSA) has established a new framework of security requirements and privacy controls for contractor information systems that process,...more

Husch Blackwell LLP

GSA Joins the CUI Compliance Movement: What Non-Defense Contractors Need to Know

Husch Blackwell LLP on

Key point: Historically, civilian‑agency contractors who handled Controlled Unclassified Information (CUI) enjoyed an informal compliance environment, with a requirement to adhere to NIST SP 800‑171 often framed as...more

Blank Rome LLP

GSA Issues New Framework for Protecting CUI in Contractor Systems

Blank Rome LLP on

Last month the General Services Administration’s (“GSA”) Office of the Chief Information Security Officer (“OCISO”) issued CIO-IT Security-21-112 Rev. 1, a procedural guide governing how Controlled Unclassified Information...more

Constangy, Brooks, Smith & Prophete, LLP

Three cyber trends we’ll be seeing in the new year – plus Data Privacy Day!

The new year is already off to a fast start in the world of cybersecurity and privacy. With Data Privacy Day approaching next week (January 28), we will look at three trends that we expect to see in the coming year. The...more

Wilson Sonsini Goodrich & Rosati

2026 Year in Preview: U.S. Data, Privacy, and Cybersecurity Predictions

As we ring in the new year, we want to make you aware of key issues that we expect lawmakers and regulators to focus on this year. Below are the top U.S. data, privacy, and cybersecurity issues to watch out for in 2026...more

Jones Day

EU Digital Omnibus: How EU Data, Cyber, and AI Rules Will Shift

Jones Day on

On November 19, 2025, the European Commission published two "Digital Omnibus" proposals as part of a wider Digital Package: (i) a Digital Legislation Omnibus that amends and consolidates large parts of the European Union's...more

Constangy, Brooks, Smith & Prophete, LLP

Hit with a cyberattack? What you do in the first 72 hours could save your business

When a cyberattack occurs, time is the most valuable asset. Much like law enforcement’s “first 48” hours rule in criminal investigations, the first 72 hours of a cyberattack, often referred to collectively as the “golden...more

Parker Poe Adams & Bernstein LLP

Cyberattack Targets in 2025: Which Industries Get Hit, How Attackers Get In, and What the Law Now Expects

Companies that map data breach trend lines against industry-specific obligations can convert raw statistics into risk governance strategies. This exercise can be especially valuable amid fast-shifting attack techniques,...more

902 Results
 / 
View per page
Page: of 37

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide