News & Analysis as of

Incident Response Plans

Bass, Berry & Sims PLC

India’s Data Privacy Rules: What Your Business Needs to Know

Bass, Berry & Sims PLC on

On November 13, 2025, India’s Ministry of Electronics and Information Technology finalized the Digital Personal Data Protection Act (DPDP) Rules (Rules), allowing the DPDP to come into effect....more

Ervin Cohen & Jessup LLP

New Warning on Mobile Spyware: What Companies Must Do to Protect Employee Devices

On November 25, 2025, the Cybersecurity and Infrastructure Security Agency (“CISA”) issued an alert regarding advanced spyware campaigns targeting mobile devices. The warning identifies messaging apps and social media...more

Constangy, Brooks, Smith & Prophete, LLP

Protect your crown jewels before a hack becomes a heist

On October 19, the Louvre Museum in Paris was burglarized in broad daylight. Priceless jewels were taken. The physical security of the museum has been faulted, but the museum has also been criticized for using outdated...more

Nelson Mullins Riley & Scarborough LLP

Data Privacy Awareness Month: Managing Employee Data Privacy and Breach Risk

January is Data Privacy Awareness Month, an appropriate time for employers to assess how they collect, use, store, and protect employee personal information. While much of the public discourse around data privacy focuses on...more

McDermott Will & Schulte

Eight European cyber priorities for legal counsel and CISOs in 2026

European cybersecurity regulation is entering a decisive phase, compelling companies to shift from preparation to active compliance. As the Network and Information Systems 2 (NIS2) Directive is implemented across a growing...more

Alston & Bird

How AI is Changing the Incident Response Landscape: What GCs Need to Know

Alston & Bird on

Our Privacy, Cyber & Data Strategy Team examines the profound implications of the evolution of AI-driven cyberattacks and offers practical steps general counsel can take to proactively defend against them....more

Lowenstein Sandler LLP

AI Platform Risk Assessments: Why 2026 Is the Year for Action

Companies spent 2025 racing to adopt artificial intelligence (AI). As 2026 begins, the data shows that AI didn’t just create new risks; it also acted as a high-speed searchlight, exposing the infrastructure gaps many...more

HaystackID

ESA Breach: Collaborative Networks Expose Critical Development Infrastructure

HaystackID on

Europe’s gateway to the cosmos has stumbled on terrestrial ground, reminding the global research community that the most advanced engineering ambitions remain tethered to fragile digital infrastructures. On December 30, 2025,...more

Mitratech Holdings, Inc

Third-Party Data Breaches: What You Need to Know

A third-party data breach occurs when malicious actors compromise a vendor, supplier, contractor, or other organization to gain access to sensitive information or systems of the victim’s customers, clients, or business...more

Coblentz Patch Duffy & Bass

Key Takeaways from "2025 Privacy Overview: How to Ensure Compliance and Reduce Business Risk"

Coblentz partner Scott Hall and members of the Coblentz Data Privacy Team presented “2025 Privacy Overview: How to Ensure Compliance and Reduce Business Risk” on October 21, 2025. The team discussed the global and U.S. AI...more

Morgan Lewis

Understanding the Cybersecurity Risks Flooding the Water and Wastewater Systems Sector

Morgan Lewis on

US critical infrastructure has historically been a prime target for threat actors due to the significant and far-reaching consequences of cyberattacks. Today, ongoing geopolitical tensions and escalating global conflict have...more

Robinson+Cole Data Privacy + Security Insider

Here Are the Five Top Security Threats from 2025

Threat actors had another banner year in 2025. As we head into 2026, looking back on the five top security threats of 2025 may inform our strategy and budgeting for 2026 to prepare for the continued onslaught of attacks....more

Ropes & Gray LLP

On the Seventh Day of Data… The Growing Pains of Regulation S-P in 2025

Ropes & Gray LLP on

Financial regulators including the Securities and Exchange Commission (“SEC”) continued to focus on data protection and cybersecurity issues throughout 2025....more

Haynes Boone

Making a List, Checking it Twice: Avoiding Cyber Attacks During the Holidays

Haynes Boone on

What’s the Concern? During the holiday season—specifically, Christmas Eve, Christmas, New Year’s Eve and New Year’s Day—there tends to be a spike in cyber attacks on companies. Cyber attackers target this time of year...more

Fisher Phillips

New York Governor Signs Sweeping AI Safety Law: What Businesses Can Do in 2026 to Prepare For a New Era

Fisher Phillips on

New York has officially joined California at the forefront of US artificial intelligence regulation. Governor Kathy Hochul just signed a revised version of the Responsible AI Safety and Education Act (RAISE Act) into law on...more

Troutman Pepper Locke

Key Takeaways from FINRA's 2026 Annual Regulatory Oversight Report - Troutman Pepper Locke

Troutman Pepper Locke on

The Financial Industry Regulatory Authority’s (FINRA) 2026 Annual Regulatory Oversight Report is the most current and comprehensive statement of FINRA’s priorities and expectations for member firms. It does not create new...more

Carlton Fields

No Password Required: Virtual CISO at Trace3 and Roller Derby Penalty Box Visitor

Carlton Fields on

Live from B-Sides Jacksonville, No Password Required welcomes Gina Yacone, virtual CISO at Trace3. Jack Clabby of Carlton Fields and Sarina Gandy, host and producer of the CyberBay Podcast, host a conversation on Gina’s...more

Constangy, Brooks, Smith & Prophete, LLP

Warm up your defenses against cyber holiday risks

Each year, there is a holiday surge in cyberattacks employing a wide range of attack vectors. This heightened activity can make organizations more vulnerable to legal and regulatory scrutiny. This is a good time to check your...more

BakerHostetler

[Podcast] The Data Stream – Episode 5 with Aleksandra Vold

BakerHostetler on

The Data Stream podcast dives deep into the fast-moving currents of data, technology, and the law. Presented by BakerHostetler’s Digital Assets and Data Management (DADM) Practice Group and hosted by Partners David Sherman...more

Lowenstein Sandler LLP

SEC Brings Cybersecurity and Identity Theft Controls Case Against Registered Investment Adviser and Broker-Dealer

Lowenstein Sandler LLP on

On Nov. 25, the Securities and Exchange Commission (SEC) announced a settlement with a registered investment adviser (RIA) and broker-dealer (the Adviser) for violations of Regulation S-P and Regulation S-ID. Regulation...more

Sheppard Mullin Richter & Hampton LLP

NCUA Launches Deregulation Project and Proposes Four Rules to Streamline Credit Union Regulations

On December 10, 2025, the National Credit Union Administration announced a new Deregulation Project and issued the first package of proposed rules aimed at streamlining its regulatory framework for federally insured credit...more

Haynes Boone

Crisis Management Academy California Key Takeaways

Haynes Boone on

Crisis Management Academy - California: Resilience in Action brought together global leaders in emergency management, incident response and legal crisis strategy to explore the evolving landscape of organizational resilience....more

Pillsbury Winthrop Shaw Pittman LLP

CISA and Partners Publish “Secure Integration of AI in OT” Framework

The guidance on integrating AI into OT systems sets expectations for safety, governance and transparency. On December 3, 2025, CISA, the NSA, the FBI and several international cyber authorities released Principles for the...more

Ropes & Gray LLP

On the Fourth Day of Data… All is Calm, All is Bright? Securing Agentic AI Before the Lights Go Out

Ropes & Gray LLP on

As 2025 draws to a close and some organizations slip into a quieter holiday rhythm, their AI systems continue humming in the background—summarizing customer inquiries, triaging security alerts, generating code, and...more

Katten Muchin Rosenman LLP

New SEC Cybersecurity Rules Begin to Take Effect

On May 16, 2024, the Securities and Exchange Commission (SEC) unanimously approved amendments to Regulation S-P, which imposes new rules relating to cybersecurity breaches involving investment advisers and broker-dealers....more

1,160 Results
 / 
View per page
Page: of 47

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide