News & Analysis as of

Cyber Incident Reporting Policies and Procedures Today's Popular Updates

King & Spalding

EU DORA: Are you in scope, and if so, how can you prepare?

King & Spalding on

The Digital Operational Resilience Act (DORA) establishes a harmonised and comprehensive framework for information and communication technology (ICT) risk management in the financial sector. It is a directly applicable EU...more

Lippes Mathias LLP

Hospital Administrators – Is Your Hospital Cyber-Secure?

Lippes Mathias LLP on

On October 2, 2024, New York adopted new regulations requiring general hospitals to implement heightened cybersecurity safeguards. General hospitals, as defined in Article 28 of the NY Public Health Law, generally must begin...more

Latham & Watkins LLP

SEC Imposes New Cybersecurity Requirements on BrokerDealers, Investment Companies, Registered Investment Advisers, and Transfer...

Latham & Watkins LLP on

Covered institutions will need to review their cybersecurity and incident response policies and procedures ahead of the applicable compliance deadline. The Securities and Exchange Commission (SEC) recently adopted...more

Pillsbury Winthrop Shaw Pittman LLP

Proposed Rules Overhaul Cybersecurity Requirements for Government Contractors

The Federal Acquisition Regulation (FAR) Council has proposed two new cybersecurity rules that would impose significant obligations and risks for federal government contractors. The proposed rules impose substantial cyber...more

Jackson Lewis P.C.

Is Your Board Cyber-Ready? Leadership Steps to Support Corporate Cybersecurity

Jackson Lewis P.C. on

The growing concern around cyberthreats for companies across the nation is reflected in the increasingly crowded legislative landscape that provides guidance to organizations, employers, employees, consumers, and investors....more

Health Care Compliance Association (HCCA)

Privacy Briefs: October 2023

Report on Patient Privacy 23, no. 10 (October, 2023) Kaiser Foundation Health Plan Inc. and Kaiser Foundation Hospitals will pay California $49 million to resolve allegations that they unlawfully disposed of hazardous waste,...more

Morrison & Foerster LLP

The SEC Expands Focus on Cybersecurity Risk to Include Registered Advisers, Broker‑Dealers, and other Market Participants

Last month, the SEC took a big step toward strengthening the cybersecurity of financial systems by proposing regulations that, taken together, will require registered investments advisers, broker‑dealers, and all national...more

Paul Hastings LLP

SEC Proposes New Cybersecurity Rule and Amendments

Paul Hastings LLP on

On March 15, 2023, the SEC issued proposed amendments and a proposed rule addressing cybersecurity. Specifically, the SEC proposed Rule 10, which addresses cybersecurity risks, and proposed to amend Regulation SCI and...more

Mitratech Holdings, Inc

[Webinar] Are you Ready? Why Your Board & Stakeholders Are About to Ask You About Your IT Risk Technology - March 14th, 10:00 am...

The attention on IT Risk and Cybersecurity risk management policies is reaching new heights — again. It doesn’t matter if you’re a large enterprise like Uber or a small / midcap company; there’s one common thread as we start...more

Genova Burns LLC

U.S. Securities and Exchange Commission to Require Expanded Cybersecurity Reporting

Genova Burns LLC on

New cybersecurity rules from the U.S. Securities and Exchange Commission (“SEC”) set to go into effect this spring will expand reporting requirements for publicly listed companies. The changes are designed to increase...more

StoneTurn

Shifting Cyber Landscape – Crisis Awareness as a Means to Prevent and Prepare

StoneTurn on

Crises and uncertainty are inevitable forces in modern business, particularly in cyber and digital. General counsels and legal risk executives are well suited to lead preparedness and resiliency for future crises, uniting key...more

Goodwin

Cybersecurity Remains a Key Focus Area for the SEC and FINRA

Goodwin on

Cybersecurity and technology governance remain a top area of focus for the SEC and FINRA, as the regulators continue to concentrate on improving the overall cybersecurity posture and resiliency of the financial sector. FINRA...more

Porter Hedges LLP

Overview of New Cybersecurity Disclosure Rules for Public Companies

Porter Hedges LLP on

According to the Cybersecurity & Infrastructure Security Agency, cybersecurity is the process whereby information and communications systems, and the information contained in those systems, are protected from and/or defended...more

Porter Hedges LLP

Increased Focus on Cybersecurity Warrants Review of Policies and Procedures

Porter Hedges LLP on

On March 9, 2022, the U.S. Securities and Exchange Commission (“SEC”) proposed amendments to its rules to require additional disclosures regarding cybersecurity risk management, strategy, governance, and incident reporting by...more

NAVEX

The SEC's Message for Companies on Cybersecurity: ‘Do Better’

NAVEX on

Corporate risk and compliance officers already labor under an influx of concerns related to cybersecurity, so you might have missed this latest news: the U.S. Securities and Exchange Commission has proposed new rules for more...more

Health Care Compliance Association (HCCA)

[Event] Healthcare Privacy Compliance Academy - April 25th - 28th, Chicago, IL

Each Academy provides three-and-a-half days of classroom-style training covering the latest laws, regulations, and developments to help you effectively manage your organization’s compliance program. They are ideal for...more

Lowenstein Sandler LLP

SEC Proposes New Rules Related to Cybersecurity Risk Management, Strategy, Governance, and Incident Disclosure By Public Companies

Lowenstein Sandler LLP on

Requirements under the proposed rules would include the disclosure of: •Material cybersecurity incidents within four business days of the determination that a material cybersecurity incident has occurred in a Form 8-K- ...more

McGuireWoods LLP

SEC Proposes New, Formal Cybersecurity Disclosure Rules

McGuireWoods LLP on

On March 9, 2022, the U.S. Securities and Exchange Commission (SEC) proposed a number of new rules to enhance public companies’ reporting of (i) cybersecurity incidents, (ii) their policies and procedures for identifying and...more

Cooley LLP

SEC votes to propose new rules for cybersecurity disclosure and incident reporting [UPDATED]

Cooley LLP on

[This post revises and updates my earlier post primarily to reflect the contents of the proposing release.] - At an open meeting last week, the SEC voted, three to one, to propose regulations “to enhance and standardize...more

Jackson Lewis P.C.

SEC to Advisors and Funds – Adopt and Implement Cybersecurity Policies and Procedures

Jackson Lewis P.C. on

On February 9, the Securities and Exchange Commission (“SEC”) voted to propose rule 206(4)-9 under the Advisers Act and 38a-2 under the Investment Company Act (collectively, “Proposed Rule”). In general, the Proposed Rule...more

Orrick, Herrington & Sutcliffe LLP

Tips for Surviving the First 24 to 48 Hours After an Incident

As cybersecurity incidents become increasingly complex, your initial response to a potential cybersecurity crisis matters. The decisions that you make in the first 24 to 48 hours of a potential cybersecurity incident can have...more

Fisher Phillips

Don’t Take the Bait! “Spear Phishing” and “Whaling” Take Scams to the Next Level

Fisher Phillips on

For several years now, we’ve been alerting employers about the dangers of phishing scams that attempt to obtain private and personal information from employers... Many of these scams rear their ugly head around tax season,...more

Akin Gump Strauss Hauer & Feld LLP

NFA Issues Interpretive Notices for CPOs Regarding Internal Controls Systems and Cybersecurity

• The NFA has determined that registered CPOs must implement an internal controls system and highlighted best practices for such a framework. • In response to certain frequently asked questions, the NFA has also updated its...more

Holland & Knight LLP

SEC Issues New Cybersecurity Guidance; Makes Clear that Cybersecurity Disclosures Are Part of Existing SEC Requirements - Guidance...

Holland & Knight LLP on

On Feb. 21, 2018, the Securities and Exchange Commission (SEC) issued interpretive guidance on its expectations for corporate disclosures on cybersecurity risks. The guidance delineates where it believes existing SEC rules...more

Morgan Lewis

Proactive Approach To Cybersecurity: Recent SEC guidance and enforcement actions suggest that reactive firms may be in the SEC’s...

Morgan Lewis on

In an environment where even the largest and most powerful corporations have fallen victim to data breaches, it can be challenging to fathom how to protect against the sophisticated and ever-evolving threat of cyber attacks....more

25 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide