News & Analysis as of

Third-Party Service Provider Data Protection

DLA Piper

EVB-IT Cloud – Standard Contract with Leeway for Cloud Providers

DLA Piper on

Any cloud service provider seeking to offer cloud services to the German public sector will inevitably have to deal with the Supplementary Contractual Conditions for the Procurement of IT Services (Ergänzende...more

Foley & Lardner LLP

Your Data’s Travel Diary

Foley & Lardner LLP on

Today I left the house again. I thought my life would be simple, maybe settle into a spreadsheet and hang out for a while. Instead, I’m a frequent flyer in every modern organization. I have more passport stamps than a travel...more

Blake, Cassels & Graydon LLP

What Can Service Providers to the Public Sector Learn From the PowerSchool Privacy Incident?

On November 17, 2025, Ontario’s Information and Privacy Commissioner (ON IPC) and Alberta’s Office of the Information and Privacy Commissioner (AB OIPC) each released their findings from their investigations into a...more

The Volkov Law Group

Reviewing the 5 Major AI Risks (Part II of II)

The Volkov Law Group on

Here are the five primary risk areas when a company uses AI in a supportive or assistance-based role as opposed to an algorithmic-based use case....more

Wiley Rein LLP

FedRAMP Issues Final Proposed Changes to Cloud Authorization Process, Seeks Comments from Industry

Wiley Rein LLP on

WHAT: The FedRAMP Program Management Office (PMO) has released a “final set” of proposed changes to the FedRAMP process for authorizing and assessing the security of cloud services for federal consumption. The final proposed...more

Shumaker, Loop & Kendrick, LLP

"AI Notetakers in the Boardroom: Privilege and Privacy Considerations"

Businesses across many industries are racing to capture the value of artificial intelligence (AI) notetakers and meeting recording tools. The promise is obvious: faster follow‑ups, searchable records, and fewer dropped...more

Jackson Lewis P.C.

The Hidden Legal Minefield: Compliance Concerns with AI Smart Glasses, Part 4: Data Security, Breach Notification, and Third-Party...

Jackson Lewis P.C. on

As we have discussed in prior posts, AI-enabled smart glasses are rapidly evolving from niche wearables into powerful tools with broad workplace appeal — but their innovative capabilities bring equally significant legal and...more

Mitratech Holdings, Inc

Employment Verification Updates and How to Think About Them Practically

Effective January 1, 2026, Equifax increased the cost of employment verifications completed through The Work Number. The new pricing is set by Equifax, not by screening vendors....more

Ropes & Gray LLP

On the Seventh Day of Data… The Growing Pains of Regulation S-P in 2025

Ropes & Gray LLP on

Financial regulators including the Securities and Exchange Commission (“SEC”) continued to focus on data protection and cybersecurity issues throughout 2025....more

Orrick, Herrington & Sutcliffe LLP

Are Operators of Online Marketplaces Responsible for User Content Under the GDPR?

On 2 December 2025, the Court of Justice of the European Union (CJEU) ruled that operators of online marketplaces can be held legally responsible for how personal data is handled on their platforms — even when the data is...more

Morrison & Foerster LLP

Data, Cyber + Privacy Predictions for 2026

Morrison & Foerster LLP on

The Morrison Foerster Data, Cyber + Privacy team provides creative, practical advice across every stage of the information lifecycle, from navigating complex privacy laws and managing breach response to litigating data...more

Mitratech Holdings, Inc

Best Background Check Software 2026: Top Vendors for Compliance, Speed, and User Experience

The truth is that a solid background screening program is really a compliance program in a friendlier outfit. Every disclosure, every consent, every adjudication note, every pause for adverse action, every state requirement...more

Burr & Forman

AI on the Line: Consent, Vendors, and Deidentification for Real Time Call Monitoring

Burr & Forman on

Artificial intelligence tools that can “listen” to live calls and provide real‑time guidance are increasingly attractive to businesses, including sales and customer service among other functions. These tools can surface...more

Ropes & Gray LLP

Responding to the SitusAMC Data Breach

Ropes & Gray LLP on

Recently, major media reported that a key financial services provider, SitusAMC, suffered a substantial data security incident. This Alert summarizes what we know so far, the possible legal implications, and some action items...more

Tonkon Torp LLP

Compliance with Regulation S-P Amendments Required by December 3, 2025

Tonkon Torp LLP on

In May 2024, the Securities and Exchange Commission (SEC) adopted significant amendments to Regulation S-P (the “Amendments”). These Amendments expand requirements related to safeguarding customer information, incident...more

Constangy, Brooks, Smith & Prophete, LLP

Minor Breaches, Major Trouble: Why minor cyber incidents can lead to major legal fallout

When cyberattacks strike global giants, it’s front-page news. But what about the smaller breaches -- the ones that don’t make headlines? Increasingly, they’re making waves in courtrooms and regulatory enforcement agencies. ...more

Stoel Rives - Global Privacy & Security Blog®

From the Kitchen to Compliance: Why Your Turkey and Your Privacy Policy Need Fresh Dates

As you slowly emerge from your tryptophan coma next week, and realize that the first of December is upon us, many complex legal tasks may seem too daunting to face. Luckily, the privacy team at Stoel Rives has developed a...more

Ropes & Gray LLP

Initial Guidance on Responding to the SitusAMC Data Breach

Ropes & Gray LLP on

Over the last weekend, major media reported that a key financial services provider, SitusAMC, suffered a substantial data security incident. This Alert summarizes what we know so far, the possible legal implications, and some...more

StoneTurn

AI and LLMs in Corporate Cybersecurity: Choosing the Right Solution for Your Organization

StoneTurn on

This article examines how cybersecurity teams can leverage AI and LLM technologies like Microsoft Copilot and Open WebUI while managing associated security risks through proper logging and monitoring practices. It provides...more

Neal, Gerber & Eisenberg LLP

Cybersecurity and Data Privacy Implications When a Services Partner Fails

On November 10, 2025, Sonder Holdings Inc. (“Sonder”), a company operating apartment‑style and boutique hotel accommodations, announced termination of its licensing agreement with Marriott International, Inc. due to Sonder’s...more

Shumaker, Loop & Kendrick, LLP

"Post Mortem Review of AT&T Breaches"

Data breaches occur when an unauthorized individual or entity gains access to confidential or protected information. This information may include personal data such as Social Security numbers or medical records, financial...more

Ius Laboris

Hiring With Care in Hong Kong: Background Checks

Ius Laboris on

Conducting background checks on job candidates has become common practice amongst Hong Kong employers. These may include obtaining work references, inquiring about the candidate’s criminal record and assessing their social...more

Stevens & Lee

Innovation and Privacy Protection: Managing Third-Party Risks in Data-Driven Health Care

Stevens & Lee on

Health care organizations increasingly rely on third-party digital solutions such as tracking pixels, analytics platforms and cloud-based services to enhance patient engagement, streamline operation, and expand telehealth...more

Womble Bond Dickinson

Negotiating AI Agreements with Vendors

Womble Bond Dickinson on

Does your company need to install AI functionality into its systems?  Are you receiving AI models from vendors without knowing about it?...more

Constangy, Brooks, Smith & Prophete, LLP

Privacy Under Fire: Compliance strategies that work

As we’ve said, privacy compliance has long since evolved beyond check-the-box expectations. Today, organizations can no longer afford to be passive about privacy, and instead must be actively engaged in managing all aspects...more

188 Results
 / 
View per page
Page: of 8

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide