News & Analysis as of

Cyber Incident Reporting Breach Notification Rule

Epiq

Cyber Incidents on the Rise: Tips for Effective Data Breach Notification

Epiq on

Cyber incidents have been growing at an exponential rate in recent years. A recent report from the Identity Theft Resource Center found that there were over one billion data breach victims in Q2 of 2024, which is around five...more

Alston & Bird

Data Breach Notification Requirements Under the Safeguards Rule Now in Effect

Alston & Bird on

For years, the Gramm-Leach-Bliley Act (GLBA) has required financial institutions to maintain reasonable safeguards for consumer data, but has only had limited breach-reporting requirements. To the extent financial...more

Health Care Compliance Association (HCCA)

UHG’s Breach Response May Prove Enlightening for Others

Organizations typically deal with ransomware attacks out of the public eye, but the massive scale of United Healthcare Group’s (UHG) February breach made that an impossibility. UHG CEO Andrew Witty was recently on the hot...more

Latham & Watkins LLP

FCC Expands Data Breach Notification Rules

Latham & Watkins LLP on

The amended rules follow the Biden Administration’s “whole of government” approach to maximizing notifications to executive agencies of cybersecurity events. On December 21, 2023, a divided Federal Communications...more

Wiley Rein LLP

New FCC Data Breach Rules Draw Criticism For Problems Beyond the CRA

Wiley Rein LLP on

There has been a lot of coverage about the Federal Communications Commission’s (FCC and Commission) new and expansive data breach notification Order, approved on a 3-2 vote at the Commission’s December 13 Open Meeting. Much...more

WilmerHale

FTC Announces Enforcement Action Against Global Tel*Link Corporation for Unfair Data Security Practices and Inadequate Data Breach...

WilmerHale on

On November 16, the Federal Trade Commission (FTC) announced an enforcement action against Global Tel*Link Corporation and two of its subsidiaries (collectively, “GTL”), which provide communications and payment services to...more

Bradley Arant Boult Cummings LLP

Data Breach 911: Five Immediate Steps to Take

For many, responding to an incident feels chaotic — questions swirling, uncertainties piling up, and no clear direction. Even when prepared with a well-rehearsed incident response plan, a data security incident places a...more

Husch Blackwell LLP

Federal Trade Commission Amends GLBA’s Safeguards Rule

Husch Blackwell LLP on

Key Point: The Federal Trade Commission (FTC) has amended the Safeguards Rule to require non-banking financial institutions to inform the FTC within 30 days of discovering any unauthorized acquisition of unencrypted customer...more

Jackson Lewis P.C.

Cybersecurity Awareness Month Series: Cybersecurity in the Hoosier State

Jackson Lewis P.C. on

This year, Indiana joined several other states to pass a comprehensive consumer privacy law, that becomes operative on January 1, 2026. Like other consumer privacy laws, Indiana’s law requires businesses to establish...more

Stikeman Elliott LLP

Top 5 Misconceptions about Québec’s New Personal Information Protection Legislation (UPDATED)

Stikeman Elliott LLP on

With the first wave of amendments to Québec’s personal information protection legislation (“Law 25”) taking effect on September 22, 2022, we thought we would share the top 5 misconceptions we have encountered when discussing...more

Lewis Roca

NCUA Approves 72-Hour Breach Notification Rule

Lewis Roca on

The National Credit Union Administration (NCUA) approved a final rule that will require any Federally-Insured Credit Union (FICU)—including federally charted corporate credit unions and federally insured state-chartered...more

Perkins Coie

2022 Breach Notification Law Update: State and Federal Requirements Continue To Evolve

Perkins Coie on

Cyberattacks continue to plague businesses, making the fallout of data breach notification and response as critical as ever. This year, like 2021, has been relatively quiet as it relates to state updates to breach...more

BakerHostetler

If an Agency Calls Something Unfair, Does That Magically Make It Unlawful? A Recent Blog Post by the FTC’s Chief Technology...

BakerHostetler on

Last week, the Federal Trade Commission’s (FTC) tech blog quietly published a post that could have broad implications - for privacy practitioners and beyond. In this post, the agency takes the novel position that if consumer...more

Jackson Lewis P.C.

FTC Settles Privacy and Security Allegations with Online Merchant for $500K and Agreement to Extensive Compliance Program

Jackson Lewis P.C. on

The FTC recently settled its enforcement action involving data privacy and security allegations against an online seller of customized merchandise. In addition to agreeing to pay $500,000, the online merchant consented to...more

Jackson Lewis P.C.

Healthcare Companies Seek to Manage Risk of Ransomware Attacks, According to Report

Jackson Lewis P.C. on

Healthcare companies continue to face increased risks of ransomware attacks on their operations. According to the recently released BD Cybersecurity Annual Report for 2021, such attacks are also increasingly sophisticated....more

Wyrick Robbins Yates & Ponton LLP

App-etite for Notification: FTC Says “Welcome to the Jungle” to Mobile Health App Developers in Policy Statement on Health Breach...

Last week’s news that the Federal Trade Commission is taking steps to begin rulemaking on consumer privacy and artificial intelligence drew plenty of attention from privacy professionals, and suggests 2022 could be an...more

Carlton Fields

Ohio Moves On Insurance Cybersecurity

Carlton Fields on

Ohio has joined South Carolina in becoming the next state to adopt a variation of the NAIC Insurance Data Security Model Law ("MDL-668"). This legislation makes a number of changes to Ohio's insurance law...more

BakerHostetler

Interactive Map Offers Easy Access to Data Breach Laws by State

BakerHostetler on

An enhanced resource for analysis of data breach notification laws for all 50 states is now just a click away. BakerHostetler combined two of its state breach notification law resources (a summary of the laws and a guide to...more

Balch & Bingham LLP

Alabama Rounds Out the Roster with New State Data Breach Notification Law

Balch & Bingham LLP on

On Wednesday, March 28, 2018, the Alabama Data Breach Notification Act of 2018 (SB318) was signed into law by the Governor, making Alabama round out the roster of 50 states with data breach notification laws. (South Dakota’s...more

Mitchell, Williams, Selig, Gates & Woodyard,...

Avoid the Headlines: Six Initial Steps To Take Today To Improve Your Company's Data Security

Unless you have been living under a rock, you are probably aware that companies are suffering cyber attacks that jeopardize sensitive company or customer data more and more frequently. What you may not know is that even more...more

Cooley LLP

Alert: New Law Heightens Cybersecurity Requirements for Delaware Residents

Cooley LLP on

On August 17, 2017, Governor John Carney signed into law bi-partisan legislation that increases cybersecurity protections for Delaware residents whose personal information may be compromised as a result of a data breach....more

Robinson+Cole Data Privacy + Security Insider

CoPilot Provider Support Services Settles with NYAG for $130,000 for Late Breach Notification

CoPilot Provider Support Services, Inc. (CoPilot), which provides health care companies with billing and insurance support services, has settled allegations by the New York Attorney General of failing to notify individuals of...more

BCLP

Data Breach Decision Points: Part 2

BCLP on

The best way for a company to handle a data breach is to be prepared. As we discuss in our data breach readiness handbook, preparation includes, among other things, drafting an incident response plan, reviewing...more

Perkins Coie

Data Breach Incident Response: 5 Questions to Ask and New Laws to Know Now

Perkins Coie on

The spring legislative sessions this year brought a now-familiar round of revisions to data breach notification laws, with states broadening their laws in often divergent ways. This year, Illinois, Nebraska, and Tennessee...more

Carlton Fields

Laws Governing Data Security and Privacy – U.S. Jurisdictions at a Glance (updated for 2016)

Carlton Fields on

The attached chart constitutes a summary of the laws of various jurisdictions that govern data breach notifications....more

37 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide