News & Analysis as of

Personally Identifiable Information Data Protection Regulatory Requirements

Mayer Brown

Department of Justice Releases Compliance & Enforcement Guidance on Data Security Program

Mayer Brown on

On April 11, 2025, the Department of Justice (DOJ) announced additional guidance regarding the implementation of the Final Rule (the “Rule”), Provisions Pertaining to Preventing Access to U.S. Sensitive Personal Data and...more

Ogletree, Deakins, Nash, Smoak & Stewart,...

Québec’s Restrictive Approach to Biometric Data Poses Challenges for Businesses Working on Security Projects

The recent decision by the Commission d’accès à l’information du Québec (CAI) regarding a popular grocer’s biometric data project in Quebec has far-reaching implications for other businesses considering or currently using...more

Levenfeld Pearlstein, LLC

New Year, New State Data Privacy Laws

With the advent of a new year comes a new set of consumer data privacy laws in the United States. Five new state data privacy laws go into effect in January 2025, with additional laws coming throughout 2025 and into 2026....more

Jackson Lewis P.C.

FAQs for Schools and Persons Affected By the PowerSchool Data Breach

Jackson Lewis P.C. on

A massive data breach hit one of the country’s largest education software providers. According to EducationWeek, PowerSchool provides school software products to more than 16,000 customers, largely K-12 schools, that serve 50...more

Nelson Mullins Riley & Scarborough LLP

[Webinar] Keeping Up With and Staying Ahead of FCC Actions on Data Privacy and Security - October 22nd, 12:00 pm - 1:00 pm EDT

Carriers have an obligation to protect customer proprietary network information (CPNI) and personally identifiable information (PI). Several recent FCC consent decrees resolving breaches of CPNI and PI show the FCC will hold...more

Foley Hoag LLP - Security, Privacy and the...

SEC Revamps and Enhances Data Protections with Amendments to Regulation S-P

The Securities and Exchange Commission (“SEC”) has announced the adoption of amendments to Regulation S-P (“Amendments”) to modernize and enhance the rules that govern the treatment of consumers’ nonpublic personal...more

Benesch

United States Looks Towards its First Cross-Border Data Transfer Regime with New Executive Order

Benesch on

President Biden issued an Executive Order last month calling on the DOJ and relevant government agencies to tighten regulations on bulk data transfers to “countries of concern.” In late February, President Biden issued...more

Mayer Brown

President Biden Issues Executive Order Empowering DOJ to Regulate the Export of Sensitive Personal Data

Mayer Brown on

On February 28, 2024, President Joe Biden issued Executive Order (“EO”) 14117, empowering the Department of Justice (DOJ) to regulate the export of certain consumer data, in order to prevent certain countries’ governments...more

Troutman Pepper Locke

That’s a Wrap…or Not? Regulatory Data Incident Investigation Resolutions and the Path Forward

Troutman Pepper Locke on

As we discussed in part three of this series, “Navigating the Complexities of Regulatory Data Incident Investigations,” when an organization is the subject of regulatory data incident investigations, it must navigate a...more

Troutman Pepper Locke

New California Law Imposes Significant Data Management Requirements for Sensitive Health Data

Troutman Pepper Locke on

On January 1, California's Assembly Bill No. 352 (AB 352) went into effect, introducing significant changes to the handling and sharing of sensitive health information — particularly information related to reproductive health...more

Pillsbury - Propel

Privacy Breach: The Silent Killer of Startups

Pillsbury - Propel on

A privacy breach can have detrimental consequences for startups:  A privacy breach may trigger legal consequences and regulatory scrutiny, especially for a startup that operates in areas with stringent data protection laws...more

Robinson+Cole Data Privacy + Security Insider

Indiana Amends Breach Notification Law to Require Notification Within 45 Days

Indiana has amended its breach notification law to require entities to notify individuals “without unreasonable delay, but not more than forty-five (45) days after the discovery of the breach.” It clarifies that a delay is...more

Vinson & Elkins LLP

Time for a Check-Up: Updates in Data Breach Notification and Reporting

Vinson & Elkins LLP on

As the onslaught of data breaches and ransomware attacks continues, state governments are grappling with ways to bolster the impact and reach of breach notification laws. All fifty states, Puerto Rico, Guam, the Virgin...more

Stinson LLP

Health App Vendors Be Warned: You Could Be Subject to FTC's Health Breach Notification Rule

Stinson LLP on

The surge in new health apps and connected devices, which only increased during the pandemic, continues to raise many legal and ethical questions. As a result, lawmakers have been scrambling to define the obligations...more

Bilzin Sumberg

Privacy in the House? An Update on Florida's Data Privacy Statutes

Bilzin Sumberg on

As the dueling Florida House and Senate consumer data privacy protection bills make their way through various committees in the Florida legislature, April 14, 2021, was the Florida House’s turn for a vote. House Bill 969...more

Orrick, Herrington & Sutcliffe LLP

Frequently Asked Questions About the GDPR

What is the General Data Protection Regulation (GDPR)? The GDPR is an EU law that was passed by parliament and went into effect on May 25, 2018. The GDPR unifies the EU under a single data protection regime for all member...more

Polsinelli

New Colorado Privacy Act

Polsinelli on

Like Virginia and Washington before it, on March 19, 2021, Colorado introduced a data privacy bill, the Colorado Privacy Act (CPA). As currently drafted, the CPA would be similar to other U.S. state privacy laws, including...more

Reveal

How to Develop An Effective Data Retention Policy

Reveal on

Every organization needs to develop an effective data retention policy to gain visibility and control over its information. But given the increasing complexity of today’s data systems and the constantly evolving regulatory...more

Akin Gump Strauss Hauer & Feld LLP

California Approves Final California Consumer Privacy Act Regulations

On Friday, August 14, California’s Office of Administrative Law (OAL) approved the final draft of the Attorney General’s (AG) regulations under the California Consumer Privacy Act (CCPA). Attorney General Xavier Becerra’s...more

Hogan Lovells

Final CCPA regulations approved, including additional changes

Hogan Lovells on

On Friday, the California Attorney General issued the final implementing regulations for the California Consumer Privacy Act (CCPA). The final regulations—which had been under review by the California Office of Administrative...more

Morgan Lewis - Tech & Sourcing

Good Online Hygiene

With the world in various states of lockdown, your organization’s online presence is more important than ever…even more so with official enforcement of CCPA beginning last month. It may be a good time to spend an afternoon...more

Hogan Lovells

The Spanish DPA's new take on cookies: back to express consent

Hogan Lovells on

Last November, the Spanish Data Protection Authority (Spanish DPA) published its new Guidelines on the Use of Cookies within the framework of the GDPR and Spanish E-privacy rules. ...more

Ballard Spahr LLP

Cyber-Enabled Financial Crime and Money Laundering

Ballard Spahr LLP on

Today we are very pleased to welcome guest blogger Moyara Ruehsen, PhD, CAMS, CFCS, who is an Associate Professor and Director of the Financial Crime Management Program at the Middlebury Institute of International Studies in...more

Association of Certified E-Discovery...

[Webinar] eDiscovery In an Age Of Emerging Tech: How to Stay Within Regulations Without Sacrificing Efficiency - July 21st, 1:00...

The way we work is shifting rapidly. Teams across the globe are operating remotely, and cloud-based collaboration and communication tools are becoming commonplace. This is posing new challenges for legal teams dealing with...more

Morgan Lewis

New DIFC Data Protection Law Takes Effect 1 July

Morgan Lewis on

Requirements under a new Dubai International Financial Centre data protection law will apply within the DIFC from 1 July 2020. ...more

60 Results
 / 
View per page
Page: of 3

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide