News & Analysis as of

Data Security Publicly-Traded Companies Disclosure Requirements

Fenwick & West LLP

Cybersecurity Disclosure is Under the SEC Spotlight: Is Your Company Ready?

Fenwick & West LLP on

Cyber incidents are among the fastest-growing existential threats to publicly traded companies. More than a technical headache, breaches can materially impact your bottom line—and the mere news of an incident can send stocks...more

Alston & Bird

The SEC Sues SolarWinds and Its CISO for Alleged Fraud and Disclosure Controls Failures

Alston & Bird on

Our Securities Litigation, Securities, and Privacy, Cyber & Data Strategy teams outline vital takeaways for public companies and their directors and officers in light of the Securities and Exchange Commission’s recent civil...more

Nelson Mullins Riley & Scarborough LLP

SEC Adopts New Cybersecurity Disclosure Requirements

The Securities and Exchange Commission (“SEC”) adopted the final rules (the “Final Rules”) on July 26, 2023 that will require disclosure of material cybersecurity incidents, cybersecurity risk management, strategy, and...more

Faegre Drinker Biddle & Reath LLP

SEC Adopts New Cybersecurity Rule

On July 26, the Securities and Exchange Commission (“SEC”) finalized a much anticipated rule addressing cybersecurity risk management, strategy, governance, and incident disclosure. Public companies registered with the SEC...more

Brownstein Hyatt Farber Schreck

SEC Releases Aggressive New Cybersecurity Disclosure Requirements

“Material Cybersecurity Incident” Standard Will Have a Monumental Impact on Current Cyber Disclosure Requirements - On July 26, 2023, the U.S. Securities and Exchange Commission (SEC) adopted the Cybersecurity Risk...more

A&O Shearman

SEC Mandates New Cybersecurity Disclosures

A&O Shearman on

On July 26, 2023, the SEC adopted final rules that require public companies to promptly disclose material cybersecurity incidents on Form 8-K and detailed information regarding their cybersecurity risk management and...more

Polsinelli

SEC Adopts Cybersecurity Incident and Risk Management Disclosure Rules

Polsinelli on

On July 26, 2023, the Securities and Exchange Commission (the “SEC”) adopted new rules requiring public companies to disclose within four business days material cybersecurity incidents they experience and to disclose annually...more

Thomas Fox - Compliance Evangelist

SEC Formalizes New Rules on Cyber Breach Disclosures

The SEC has recently voted on new rules that will require companies to disclose material cybersecurity incidents within four days and to make disclosures about their broad cybersecurity risks in their annual report. Tom Fox...more

Pierce Atwood LLP

First Circuit Offers Lessons to Businesses Facing Cybersecurity Incidents and Class Action Litigation Risk

Pierce Atwood LLP on

In Webb v. Injured Workers Pharmacy, LLC, the First Circuit recently reversed a lower court’s dismissal of class action claims brought by former pharmacy patients alleging that their sensitive personal information had been...more

McAfee & Taft

SEC adopts new cybersecurity rules for public companies

McAfee & Taft on

The Securities and Exchange Commission (SEC) finalized cybersecurity rules this week for public companies centered on disclosure requirements for material cybersecurity incidents, as well as periodic reporting regarding...more

McDermott Will & Emery

SEC Imposes New Cybersecurity Disclosure Requirements

McDermott Will & Emery on

At an Open Meeting on July 26, 2023, the US Securities and Exchange Commission (SEC) adopted final rules and amendments that impose new cybersecurity-related disclosure requirements for public companies subject to the...more

Shutts & Bowen LLP

SEC Adopts New Cybersecurity Rules

Shutts & Bowen LLP on

In yet another indication of the increasing weight being given by government officials to cybersecurity, on July 26, 2023, the Securities and Exchange Commission adopted new rules requiring public companies to disclose...more

Robinson+Cole Data Privacy + Security Insider

SEC Adopts New Cybersecurity Rules for Public Companies

In a 3-2 vote, the Securities and Exchange Commission (SEC) adopted new cybersecurity rules yesterday (July 26, 2023) applicable to public companies. The rules, which will become effective thirty days after publication in...more

Bilzin Sumberg

SEC’s New Cyber Incident Disclosure Requirements Will Go Into Effect in December

Bilzin Sumberg on

Come December 2023, public companies will have a very narrow window to report cybersecurity incidents that materially affect their companies. Companies will also have to report annually how they assess and manage...more

Bradley Arant Boult Cummings LLP

Blackbaud Shows SEC Is Serious On Cyber Incident Reporting

A recent significant enforcement action brought by the U.S. Securities and Exchange Commission against Blackbaud Inc. highlights the importance of public companies maintaining disclosure controls and procedures relating to...more

Stinson - Corporate & Securities Law Blog

SEC Issues Proposed Rules on Disclosure of Cybersecurity Incidents

The SEC has issued proposed rules on disclosure of cybersecurity incidents.  Specifically, the SEC is proposing to: Amend Form 8-K to add Item 1.05 to require registrants to disclose information about a cybersecurity...more

Jenner & Block

Securities and Exchange Commission Chair Emphasizes SEC’s Role in Cybersecurity and Suggests Additional Cybersecurity Regulations...

Jenner & Block on

In a speech to the Securities Regulation Institute conference last week, Chair Gary Gensler signaled the SEC may implement more stringent cybersecurity regulations, and in the meantime, would work to enforce existing...more

Holland & Knight LLP

SEC Chair Gensler Remarks Indicate 2022 Action Expanding Cyber Requirements

Holland & Knight LLP on

U.S. Securities and Exchange Commission (SEC) Chair Gary Gensler made remarks on Jan. 24, 2022, at Northwestern University Pritzker School of Law's Annual Securities Regulation Institute regarding the SEC's work to improve...more

Brownstein Hyatt Farber Schreck

When Should a Public Company Disclose a PCI Breach?

As companies collect growing amounts of data about their customers and other consumers, sophisticated adversaries, recognizing the value of this information, have increased their efforts to pilfer it. For publicly traded...more

BCLP

Privacy, Vulnerabilities, and Breaches, Oh My

BCLP on

A recent SEC settlement shed light on data security and privacy concerns that public companies should keep in mind when drafting and filing periodic reports. The SEC settlement concerned a 2018 data breach at Pearson Plc that...more

Mayer Brown Free Writings + Perspectives

Market Trends 2020/21: Cybersecurity-Related Disclosures

SEC Focus - The Securities and Exchange Commission (SEC) has been focused on cybersecurity issues for over a decade, tracing back to its initial guidance on this topic in 2011. On October 16, 2018, the SEC released a...more

Morgan Lewis

Spotting and Mitigating Enforcement Issues Concerning Cybersecurity-Related Controls and Disclosures

Morgan Lewis on

The growing frequency and public awareness of cyberincidents, evolution of technologies employed by intruders, and proliferation of personal data and infrastructure vulnerable to attack have all contributed to heightened...more

Moore & Van Allen PLLC

SEC Issues Disclosure Guidance as Part of Continued Focus on Cybersecurity

Moore & Van Allen PLLC on

As cybersecurity attacks have continued to gain prominence as a threat posing critical risk management and compliance challenges for financial institutions, the Securities and Exchange Commission (SEC) has emerged as an...more

The Volkov Law Group

Sunshine, Disinfectant and SEC Guidance on Cybersecurity Disclosures

The Volkov Law Group on

The fundamental principle of SEC’s market regulation is the power of sunshine, transparency and disclosure. In other words, the SEC seeks to ensure that companies disclose important information to the public so that...more

Orrick, Herrington & Sutcliffe LLP

SEC Commissioners Provide Guidance on Cybersecurity Disclosures After Wave of Record Incidents

The Commission's "new" cybersecurity guidance largely rehashes existing guidance, as is highlighted by objections from two commissioners. At most, the additional qualitative guidance is incremental. It reiterates the need to...more

33 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide