News & Analysis as of

Final Rules Cybersecurity Today's Popular Updates

Wiley Rein LLP

Update: DOJ and CISA Issue New National Security Program to Regulate Foreign Access to Sensitive Data

Wiley Rein LLP on

On January 8, 2025, the U.S. Department of Justice (Department or DOJ) issued new rules required by then-President Biden’s February 2024 Executive Order (EO) 14117 to establish a new regulatory framework aimed at “Preventing...more

Goodwin

Access Restricted: DOJ Prohibits or Restricts Data Sharing with China, Russia, and Other Specified Countries

Goodwin on

On December 27, 2024, the US Department of Justice (DOJ) issued a final rule establishing a new national security program to prevent access to Americans’ bulk sensitive personal data and government-related data by China...more

Skadden, Arps, Slate, Meagher & Flom LLP

CFPB Releases Final ‘Open Banking’ Rule on Personal Financial Data Rights

On October 22, 2024, the Consumer Financial Protection Bureau (CFPB) issued a final rule (Rule) on personal financial data rights under Section 1033 of the Dodd-Frank Act. The Rule imposes significant new obligations on...more

Holland & Knight LLP

How a Trump Presidency Could Impact Government Contracting

Holland & Knight LLP on

With former President Donald Trump winning election to be the 47th president of the United States, Americans should expect sweeping policy and regulatory changes, including in the federal procurement space. Based on Trump's...more

Troutman Pepper Locke

Director of Division of Corporation Finance Issues Guidance on Disclosure of Cybersecurity Incidents under Form 8-K

Troutman Pepper Locke on

On May 21, 2024, Erik Gerding, the director of the Division of Corporation Finance of the Securities and Exchange Commission (SEC), released a statement containing guidance for public companies regarding the disclosure of...more

Goodwin

DoD Significantly Expands Voluntary Cybersecurity Program for Defense Contractors

Goodwin on

The U.S. Department of Defense (DoD) published a finalized rule on March 12, 2024, which expands access to defense contractors who wish to participate in the Defense Industrial Base (DIB) Cybersecurity (CS) Program....more

Skadden, Arps, Slate, Meagher & Flom LLP

Understanding SEC’s Focus Amid Lack of Final AI Rules

Last year, the U.S. Securities and Exchange Commission (SEC) proposed ambitious rules relating to artificial intelligence (AI) that have drawn significant commentary and criticism. While it is unlikely that any changes in the...more

Foley Hoag LLP - White Collar Law &...

SEC to Continue Aggressive Enforcement Efforts in 2024 After Record-Setting 2023

This is the fourth in our 2024 Year in Preview series examining important trends in white collar law and investigations in the coming year. We will be posting further installments in the series throughout the next several...more

Burr & Forman

Cyber Incident Reporting Obligations for Public Companies under the SEC’s New Cybersecurity Rules

Burr & Forman on

The U.S. Securities Exchange Commission (SEC) recently adopted a final rule regarding cybersecurity risk management, governance, and incident reporting. The final rule went into effect on September 5, 2023, and disclosure...more

Polsinelli

The SEC Raises the Stakes: New Cybersecurity Rules for Publicly Traded Companies Hit the Books in 2023

Polsinelli on

In 2023, the U.S. Securities and Exchange Commission (“SEC”) issued its now-fully implemented Cybersecurity Risk Management, Strategy, Governance, and Incident Disclosure Rule. The Rule reflects the reality that cybersecurity...more

Mayer Brown

US DoD Proposes Final Rule for Cybersecurity Maturity Model Certification (CMMC)

Mayer Brown on

On December 26, 2023, the Department of Defense (“DoD”) published the long-awaited Proposed Final Rule for the Cybersecurity Maturity Model Certification (“CMMC”) program. At a high level, the CMMC program is a mechanism by...more

Snell & Wilmer

Corporate Communicator - 2024 Annual Meeting Season

Snell & Wilmer on

Clawback Rules. As previously discussed in last Winter’s Corporate Communicator, the Securities and Exchange Commission (“SEC") adopted final rules in October 2022 directing the NYSE and Nasdaq to adopt listing standards that...more

Hudson Cook, LLP

New York DFS Finalizes Amendments to Cybersecurity Regulations

Hudson Cook, LLP on

On November 1, 2023 the New York Department of Financial Services ("DFS") released amended cybersecurity regulations ("Regulations"). These changes will impose additional controls, demand more frequent risk assessments, and...more

Benesch

FTC Amends Financial Institution Safeguards Rule to Include New Obligation to Report Notification of Data Security Breaches

Benesch on

The amended rule requires financial institutions to notify the FTC within 30 days of discovery of a security breach involving information of at least 500 consumers. ...more

WilmerHale

NYDFS Finalizes Amendments to Cybersecurity Regulations

WilmerHale on

On November 1, 2023, New York Department of Financial Services (NYDFS or the “Department”) released the finalized revisions (the “Second Amendment”) to 23 NYCRR Part 500 (Part 500) – the most significant modifications to Part...more

Troutman Pepper Locke

More Privacy, Please - September/October 2023

Troutman Pepper Locke on

Editor’s Note: The FTC continues to crack down on privacy and cybersecurity, including issuing a new warning to tax preparation companies and entering into a consent decree with 1Health.io. VPPA and BIPA litigation continues...more

Kelley Drye & Warren LLP

SEC Issues Final Rules on Cybersecurity Disclosures

On July 26, 2023, in a 3-2 vote, the Securities and Exchange Commission (the “SEC”) adopted new rules (the “Final Rules”) for public companies that will require disclosures regarding cybersecurity incidents, as well as...more

Stikeman Elliott LLP

SEC Adopts New Cybersecurity Disclosure Rules for U.S. Public Companies and Foreign Private Issuers

Stikeman Elliott LLP on

The Securities and Exchange Commission (“SEC”) adopted new rules requiring the disclosure of cybersecurity risk management, strategy, governance and material incidents (the “Rules”), effective September 5, 2023. The Rules...more

Epiq

Breaking Down the New SEC Cybersecurity Rules

Epiq on

On July 26, the Securities and Exchange Commission (SEC) adopted new cybersecurity rules. Organizations will need to disclose material cyber incidents pursuant to a prescribed timeline and information regarding risk...more

Kilpatrick

SEC Issues Final Rule on Cybersecurity Incident Reporting and Cybersecurity Risk Management Disclosure

Kilpatrick on

The Securities and Exchange Commission (the “SEC”) issued a final rule on July 26, 2023 that will require public companies to disclose material cybersecurity incidents on Form 8-K within four business days of discovery. In...more

Ballard Spahr LLP

SEC Adopts New Cybersecurity Reporting Rules, Setting Up Various Compliance Challenges

Ballard Spahr LLP on

After an extensive comment period, the SEC announced on July 26 that it was formally adopting new rules for public companies governing cybersecurity disclosures. The rules had generated significant backlash from public...more

Jenner & Block

SEC Adopts Rules on Cybersecurity Risk Management, Strategy, Governance and Incident Disclosure by Public Companies

Jenner & Block on

On July 25, 2023, the US Securities and Exchange Commission (the SEC), by a 3-2 vote, adopted final rules regarding cybersecurity risk management, strategy, governance and incident reporting by public companies (the Final...more

Akin Gump Strauss Hauer & Feld LLP

SEC Adopts Final Rules on Cybersecurity Risk Management, Strategy, Governance and Incident Disclosure by Public Companies

On July 26, 2023, the U.S. Securities and Exchange Commission (SEC) adopted final rules that generally require public companies to disclose (i) material cybersecurity incidents within four business days after determining the...more

White & Case LLP

SEC Adopts Mandatory Cybersecurity Disclosure Rules

White & Case LLP on

On July 26, 2023, the Securities and Exchange Commission ("SEC"), in a 3-2 vote, adopted rules that will require public companies to make prescribed cybersecurity disclosures.1 The rules are designed to elicit "consistent,...more

Orrick, Herrington & Sutcliffe LLP

SEC adopts breach-reporting rules, establishes requirements for cybersecurity risk management

On July 26, a divided SEC adopted a final rule outlining disclosure requirements for publicly traded companies in the event of a material cybersecurity incident. ...more

53 Results
 / 
View per page
Page: of 3

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide