News & Analysis as of

Third-Party Service Provider

WilmerHale

California AG Issues Largest Monetary Penalty in Most Recent CCPA Enforcement Action

WilmerHale on

On July 1, the California Attorney General (CA AG) announced a $1.55 million settlement – the largest penalty issued under the California Consumer Privacy Act (CCPA) to date – with Healthline, an online health and wellness...more

Hudson Cook, LLP

[Webinar] Compliance Coffee Break: Hot Topics in Debt Settlement - July 8th, 2:00 pm - 2:30 pm ET

Hudson Cook, LLP on

The debt settlement industry is fast emerging as a significant portion of the overall consumer financial services market, yet many still do not understand the space. Please join Hudson Cook partner Cathy Brennan as she...more

Bressler, Amery & Ross, P.C.

NY Department of Financial Services Issues Guidance to its Regulated Industry As a Result of the Ongoing Global Conflict

The New York State Department of Financial Services (the “Department”) has issued guidance (“Guidance”) to all individuals and entities regulated by the Department (“Regulated Entities”) to underscore the importance of...more

Polsinelli

Sixth Circuit Holds TPAs Do Not Get a Free Pass from ERISA’s Fiduciary Duties

Polsinelli on

In a decision about ERISA’s fiduciary duties and transparency, the Sixth Circuit in Tiara Yachts, Inc. v. Blue Cross Blue Shield of Michigan held that Blue Cross Blue Shield of Michigan (BCBSM), a third-party administrator...more

Hendershot Cowart P.C.

Legal Remedies for Physicians When Medical Billing Companies Fail to Perform

Hendershot Cowart P.C. on

For physicians with independent practices, engaging a third-party billing company to manage the billing process is an attractive option. Medical billing is increasingly complex and time consuming, and outsourcing that...more

Fenwick & West LLP

California’s SB 354 Could Usher in New Privacy Laws for Tech Companies Serving the Insurance Industry

Fenwick & West LLP on

California is once again at the forefront of privacy regulation, this time with a sharp focus on the insurance sector. California’s proposed Senate Bill 354, styled as the Insurance Consumer Privacy Protection Act of...more

Barnea Jaffa Lande & Co.

DORA for Tech Vendors - What You Should Know (But Haven’t Asked)

DORA (Digital Operational Resilience Act) is an EU regulation that sets rules for how financial entities manage ICT (Information and Communication Technology) risks. It covers areas like cyber resilience, incident reporting,...more

BakerHostetler

DSIR Deeper Dive: A Big Year for VPPA Developments

BakerHostetler on

The past year has brought a number of federal appellate rulings under the Video Privacy Protection Act (VPPA), 18 U.S.C. § 2710, one of the statutes under which plaintiffs have been filing numerous claims in recent years...more

Integreon

Why Outsourcing Creative Services Makes Sense: A Strategic Approach to Accelerate Global Sales

Integreon on

Strategic sales teams know that speed and consistency aren’t just nice to have – they are essential. But when creative resources are stretched thin or siloed in marketing, sales enablement efforts can stall. The result?...more

Pullman & Comley - Labor, Employment and...

Employee Benefit Plan Fiduciaries: Why Solid Fee Benchmarking Should Be On Your To-Do List

Certain transactions between employee benefit plans and “parties in interest” are prohibited under the Employee Retirement Income Security Act of 1974, as amended (ERISA). ...more

Fenwick & West LLP

Key Changes in the Final and Proposed Digital Content and Cloud Computing Regulations

Fenwick & West LLP on

The U.S. Department of Treasury (Treasury) released final and proposed regulations under § 861 of the Code addressing the U.S. federal income tax classification of digital content and cloud computing transactions (the “Final...more

Faegre Drinker Biddle & Reath LLP

California SB 354: A New Era in Insurance Consumer Privacy

The past few years have seen a surge of activities from states with respect to the introduction and adoption of consumer privacy bills. These bills vary from state to state, but generally include requirements around data...more

McDermott Will & Emery

New PCI DSS 4.0 Credit Card Compliance Requirements Effective April 1, 2025

McDermott Will & Emery on

As of April 1, 2025, all merchants and third-party service providers (TPSPs) involved in processing credit or debit card payments must fully adhere to the enhanced security requirements outlined in the Payment Card Industry...more

K&L Gates LLP

CPPA Announces Enforcement Action Against Automaker

K&L Gates LLP on

On 12 March 2025, the California Privacy Protection Agency (CPPA) settled with an automaker that allegedly violated various aspects of the California Consumer Privacy Act (CCPA). This first-of-its-kind settlement for the...more

A&O Shearman

EC publishes draft delegated regulation on subcontracting RTS under DORA

A&O Shearman on

On March 24 2025, the European Commission (EC) adopted the final draft Delegated Regulation setting out Regulatory Technical Standards (RTS) for subcontracting ICT services supporting critical or important functions under the...more

Goodwin

DOJ’s Data Export Rule Is In Force April 8: What You Need to Do

Goodwin on

On April 8, 2025, a sweeping rule issued by the US Department of Justice (DOJ) will take effect. The rule imposes restrictions—and in some cases, outright prohibitions—on US companies in connection with certain types of data...more

Benesch

Scientific American Unable to Kick VPPA Class Action

Benesch on

In a notable development for corporate defendants grappling with consumer privacy litigation, the Southern District of New York has recently issued a decision in Lee v. Springer Nature America, Inc., embracing a broadened...more

K&L Gates LLP

Europe: National Regulators Announce Digital Operational Resilience Act Reporting Windows

K&L Gates LLP on

EU national supervisory authorities will collect the Register of Information (ROI) pursuant to the EU’s Digital Operational Resilience Act (DORA) from in scope financial entities in April 2025, with the reference date set as...more

Ogletree, Deakins, Nash, Smoak & Stewart,...

Location Data as Health Data? Precedent-Setting Lawsuit Brought Against Retailer Under Washington My Health My Data Act

An online retailer was recently hit with the first class action under Washington’s consumer health data privacy law alleging that it used advertising software attached to certain third-party mobile phone apps to unlawfully...more

WilmerHale

FINRA’s 2025 Annual Regulatory Oversight Report: Focus on AI, Other Emerging Risk Areas, and Best Practices

WilmerHale on

On January 28, 2025, FINRA published its Annual Regulatory Oversight Report (the Report). The Report highlights emerging risk areas and recent developments, common compliance deficiencies, and best practices for member firms....more

WilmerHale

2024 Year in Review: Video Privacy Protection Act Litigation Trends

WilmerHale on

The Video Privacy Protection Act (“VPPA”), a federal statute enacted in 1988, is gaining new relevance in recent years as plaintiffs bring lawsuits with the goal of enforcing online privacy rights. 2024 saw a continuation of...more

Ary Rosenbaum - The Rosenbaum Law Firm P.C.

You don’t have as much leverage as you think

As a plan fiduciary, I still can’t believe it. A Third Party Administrator (TPA) we terminated was trying to hold us up for valuations and a Form 5500 we paid for, as part of, annual administration. It was $80,000....more

Carlton Fields

Will Insurers Be Required to Don a Deerstalker? The Case of Third-Party Vendors in Insurance

Carlton Fields on

Regulators are growing concerned about the delegation of various insurance company functions, prompting a closer examination of third-party vendors. Several groups within the National Association of Insurance Commissioners...more

Hogan Lovells

The European Commission rejects draft Regulatory Technical Standards on subcontracting under the Digital Operational Resilience...

Hogan Lovells on

What has happened: On 21 January 2025, the European Commission sent a letter to the Chair of the Joint Committee of the ESAs with its decision to reject the draft Regulatory Technical Standards (“RTS”) on subcontracting...more

Ward and Smith, P.A.

Data Privacy Insights Part 2: The Most Common Types of Data Breaches Businesses Face

Ward and Smith, P.A. on

As part of Data Privacy Awareness Week, Ward and Smith is spotlighting the most common types of data breaches that businesses encounter. In Part 1, we explored the industries most vulnerable to cyberattacks, highlighting the...more

1,169 Results
 / 
View per page
Page: of 47

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide