News & Analysis as of

Cybersecurity Security Risk Assessments

Follow this channel for advisories on one of the biggest threats to businesses today. Read a morning brief of fresh guidance and commentary by leading lawyers on security, privacy, risk... more +
Follow this channel for advisories on one of the biggest threats to businesses today. Read a morning brief of fresh guidance and commentary by leading lawyers on security, privacy, risk management, global regulations, data protection, leaks, hacking, cyber insurance, compliance, HIPAA, and every other aspect of cybersecurity of import to corporate readers right now.   less -
Holland & Knight LLP

Plaintiffs Request Court Approval of $8.7M Settlement in ERISA Class Action Cyberattack Lawsuit

Holland & Knight LLP on

Multi-employer plan participants involved in an Employee Retirement Income Security Act of 1974 (ERISA) class action lawsuit against Horizon Actuarial Services LLC (Horizon), a national retirement services firm, have entered...more

Benesch

China Officially Promulgates New Cross-Border Data Transfer Requirements

Benesch on

The newly promulgated measures increase the threshold of data triggering security assessments and contract requirements while leaving room for Chinese authorities to heavily restrict cross-border data transfers. In...more

Eversheds Sutherland (US) LLP

No longer in limbo - China’s CAC finalises new regulations regarding cross-border data flows

The much anticipated response to the Consultation initiated by the Cyberspace Administration of China (CAC) last September has finally arrived (read our earlier briefing here). Last Friday, the CAC ended months of speculation...more

WilmerHale

China Finalizes Rules to Ease Data Export Compliance Burden

WilmerHale on

On March 22, 2024, the Cyberspace Administration of China (“CAC”) promulgated the final version of the Provisions on the Promotion and Regulation of Cross-Border Data Flows (the “Final Provisions”), bringing to conclusion the...more

Guidepost Solutions LLC

FCC Bans AI Voices in Robocalls, Yet Deep Fake Scams Persist

On February 8, 2024, the Federal Communications Commission outlawed AI-generated voices in robocalls and with the upcoming Presidential election in the United States, it is easy to see why. Imagine the implications if “leaked...more

Health Care Compliance Association (HCCA)

OCR Ends Year With Settlements That Tread Old Ground, Says New Rules Are Coming—Someday

If the penultimate enforcement settlement of 2023 issued by the HHS Office for Civil Rights (OCR) sounds familiar, that’s with good reason. And the last one of the year should ring some bells, too....more

Foley & Lardner LLP

Telehealth Providers: HHS Issues HIPAA Best Practices

Foley & Lardner LLP on

Recognizing the evolving landscape of care delivery and growth of telehealth, the U.S. Department of Health and Human Services (HHS) published a resource guide aimed at assisting telehealth providers in explaining the privacy...more

Harris Beach PLLC

New York Wants Comprehensive Cybersecurity Plans for Hospitals by February 2025

Harris Beach PLLC on

New York Gov Kathy Hochul is touting her proposed statewide cybersecurity regulations for hospitals and health systems as “nation-leading,” and, if approved, those entities will have until February 2025 to comply with the new...more

Foley Hoag LLP - Security, Privacy and the...

HHS OCR/ONC Announce Latest Version of Security Risk Assessment Tool

The U.S. Department of Health and Human Services Office for Civil Rights (OCR) and the Office of the National Coordinator for Health Information Technology (ONC) have released version 3.4 of their Security Risk Assessment...more

BakerHostetler

NYDFS Issues Revised Proposed Second Amendment to Its Cybersecurity Regulation

BakerHostetler on

The New York State Department of Financial Services (NYDFS) recently published a revised proposed second amendment to its cybersecurity regulation, 23 NYCRR 500. ...more

Dorsey & Whitney LLP

Navigating Data Breach Notification and Prevention in Hong Kong: A New Comprehensive Guide in Hong Kong

Dorsey & Whitney LLP on

In June 2023, the Privacy Commissioner for Personal Data in Hong Kong (the “Commissioner”) released a new guidance note on data breach handling and notifications (the “Guidance Note”). The purpose of this note is to assist...more

BakerHostetler

2023 DSIR Report Deeper Dive into the Data

BakerHostetler on

We’re back with a deeper dive into the 2023 Data Security and Incident Response Report, which features insights and metrics from 1,160+ incidents in 2022. This episode dives deeper into the data, including ransomware and...more

Latham & Watkins LLP

Hong Kong Issues Guidance on Data Breach Handling and Notifications

Latham & Watkins LLP on

The guidance encourages organisations to formulate a data breach response plan, and outlines recommendations for handling an increasing number of data breach incidents. On 30 June 2023, the Office of the Privacy...more

Ankura

Penetration Test – Out-Hack the Hackers? An Interview with Mark Manousogianis

Ankura on

When evaluating cybersecurity and data protection risk for our clients, the two most fundamental questions that need to be answered are: How vulnerable is our organization to active cyber threats that are likely to...more

Ankura

The 80/20 Rule in MDR: People, Not Technology, Catch the Biggest Threats

Ankura on

While Managed Detection and Response (MDR) takes advantage of the latest technology, it is important to recognize that humans are still the best at making the complex, nuanced decisions that are sometimes necessary in...more

Morgan Lewis

SEC Proposes Cybersecurity Incident Reporting and Broker-Dealer Cyber Risk Management Requirements

Morgan Lewis on

The US Securities and Exchange Commission (SEC) issued a notice of proposed rulemaking (the Proposal) on March 15 that would require SEC-regulated investment advisers, investment companies, and broker dealers to provide...more

Dechert LLP

Dechert Cyber Bits - Issue 30

Dechert LLP on

Cybersecurity Alert: Silicon Valley Bank and Signature Bank Fallout - Undoubtedly, cyber criminals are out in full force with phishing links and other scams trying to capitalize on the disruption and panic that many...more

HaystackID

[Webinar] Today’s Privacy Reality: AI, Assessments, Breach and DSARs - February 15th, 12:00 pm - 1:00 pm EST

HaystackID on

Today’s Privacy Reality: AI, Assessments, Breach and DSARs is a webcast that will bring together a panel of experts to discuss the impact of artificial intelligence (AI) on privacy and cybersecurity. The panel will address...more

MoFo Tech

AI Trends For 2023 - AI Diagnostic Tools And Cybersecurity Risk

MoFo Tech on

Cybersecurity is a key risk factor for emerging applications of artificial intelligence to medical devices. Products failing to address security risks may leave themselves vulnerable to cyberattacks. Bad actors target...more

Woodruff Sawyer

CISOs Under the (Liability) Gun

Woodruff Sawyer on

Chief information security officers (CISOs) face an increased likelihood of legal scrutiny after a significant breach. It’s par for the course for CISOs to be scrutinized when security programs don’t hold up under attack—but...more

Holland & Knight LLP

NYDFS Proposes Amendments to Cybersecurity Regulation

Holland & Knight LLP on

The New York Department of Financial Services (NYDFS) on Nov. 9, 2022, released Proposed Amendments to its Cybersecurity Regulation. The NYDFS Cybersecurity Regulation was one of the first laws requiring companies to comply...more

Benesch

As China Cross-Border Data Transfer Security Assessment Requirement Comes Into Effect, New Guidelines Posted for Security...

Benesch on

The new guidelines provide insight into how businesses can submit applications to the CAC in order to obtain approval via the CAC security assessment cross-border data transfer requirement. As of September 2022, all...more

Linda Liu & Partners

China’s Security Assessment Measures for Outbound Data Transfers and Understanding on the Application Guidelines

Linda Liu & Partners on

The much-anticipated Security Assessment Measures for Outbound Data Transfers (hereinafter referred to as "the Measures") of China has already come into effect on September 1, 2022, and on the eve of the effective date, the...more

Miles & Stockbridge P.C.

Draft CMMC Assessment Process is Released, Providing Insights but Attracting Industry Criticism

The challenge posed to Department of Defense (DOD) contractors of complying with ever-shifting cybersecurity regulations and guidance continues unabated. On July 26, 2022, the Cyber Accreditation Body (Cyber AB) published a...more

PilieroMazza PLLC

SBIR/STTR Extension: Proposed Requirements for Small Business Contractors

PilieroMazza PLLC on

On September 22, the Senate passed the Small Business Innovation Research (SBIR) and Small Business Technology Transfer (STTR) Extension Act of 2022. As it heads to the House of Representatives, government contractors in...more

128 Results
 / 
View per page
Page: of 6

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide