News & Analysis as of

Third-Party Service Provider Regulatory Requirements

WaterStreet Company

5 Considerations for Outsourcing Print & Mail Operations in P&C Insurance

WaterStreet Company on

Property and casualty insurers manage high volumes of regulated, document-driven communications, including policies, endorsements, billing statements, and legally required notices, that must be produced and delivered...more

A&O Shearman

Managing cyber risk under escalating threat and enforcement pressure

A&O Shearman on

Cyber law and practice have continued to evolve over the past 12 months. New laws and regulations have been unveiled or come into force, while enforcement authorities have sharpened their focus on issues including board...more

The Volkov Law Group

Reviewing the 5 Major AI Risks (Part II of II)

The Volkov Law Group on

Here are the five primary risk areas when a company uses AI in a supportive or assistance-based role as opposed to an algorithmic-based use case....more

The Volkov Law Group

Soothing the AI-Risk Hysteria: A Focused Approach to AI Risks (Part I of II)

The Volkov Law Group on

From my perspective, hopefully a reasonable one, there is a little too much AI-Risk Hype. Not to belittle the experts or ignore potential risk concerns but this is getting a little carried away....more

Freeman Mathis & Gary

A first look at NIST’s new cyber AI framework

Freeman Mathis & Gary on

The National Institute of Standards and Technology (NIST) recently released their initial preliminary draft of NIST IR 8596, also known as the Cybersecurity Framework Profile for Artificial Intelligence. This new...more

Wiley Rein LLP

FedRAMP Issues Final Proposed Changes to Cloud Authorization Process, Seeks Comments from Industry

Wiley Rein LLP on

WHAT: The FedRAMP Program Management Office (PMO) has released a “final set” of proposed changes to the FedRAMP process for authorizing and assessing the security of cloud services for federal consumption. The final proposed...more

Robinson+Cole Data Privacy + Security Insider

California’s “Shine the Light” Trap: A Simple Request Right with Real Litigation Risk

We know that California has a lot of privacy laws, but the Shine the Light law is one of the oldest in the state, and it still catches businesses off guard because it is not about cookies or ad tech. It’s about who you share...more

Carlton Fields

NAIC’s Third-Party Data and Model Vendors Regulatory Framework Strikes Some Sour Notes

Carlton Fields on

The National Association of Insurance Commissioners’ (NAIC) Third-Party Data and Models (H) Working Group issued a preview of its breakout single: a proposed risk-based regulatory framework for third-party data and model...more

Morgan Lewis - Data Center Bytes

Contracting for Cloud Computing Capacity: Key Concerns for Customers

Cloud computing has been sold as elastic, on-demand access to virtually unlimited resources. However, the rapid growth of data-intensive and artificial intelligence–driven workloads has strained the availability of certain...more

Skadden, Arps, Slate, Meagher & Flom LLP

Ransomware: What You Need to Know as Attacks, Regulation and Enforcement Increase

Ransomware attacks continue to evolve in sophistication, disrupting operations and commanding the urgent attention of regulators, law enforcement and government agencies....more

Ropes & Gray LLP

NYDFS Regulated Entities Face Stronger Cybersecurity Regulations

Ropes & Gray LLP on

The New York Department of Financial Services (“NYDFS”) implemented the final phases of amendments to its NYDFS Cybersecurity Regulation (23 NYCRR Part 500) in May and November....more

Cooley LLP

The Most Common AI “Risk Factor” Categories

Cooley LLP on

With the news that over 70% of S&P 500 companies provide some sort of AI-related risk factors in their SEC disclosures, it’s a good time to review the type of risk factors that you might want to consider – of course,...more

Benesch

U.S. Cross-Border Logistics Service Licensure and Trade Compliance Obligations

Benesch on

Procurement teams going to market for transportation and logistics services often seek a wide range of functional expertise across multiple jurisdictions. One essential question for service providers when developing or...more

Ropes & Gray LLP

On the Tenth Day of Data… Looking Back at 2025 and Ahead to NYDFS Enforcement Priorities in 2026

Ropes & Gray LLP on

While 2025 may have brought questions about the level of enforcement we would see from federal regulators, there was no question that state regulators would continue to be active, especially in the financial privacy space....more

Constangy, Brooks, Smith & Prophete, LLP

Warm up your defenses against cyber holiday risks

Each year, there is a holiday surge in cyberattacks employing a wide range of attack vectors. This heightened activity can make organizations more vulnerable to legal and regulatory scrutiny. This is a good time to check your...more

Klein Moynihan Turco LLP

TCR Guidance in Light of 2025 Registration Developments

Klein Moynihan Turco LLP on

As our readership is aware, the Application-to-Person (“A2P”) 10-digit long code (“10DLC”) ecosystem continues to evolve as mobile carriers refine their requirements for The Campaign Registry (“TCR”). The year 2025 saw a...more

Troutman Pepper Locke

Key Takeaways from FINRA’s 2026 Annual Regulatory Oversight Report

Troutman Pepper Locke on

The Financial Industry Regulatory Authority’s (FINRA) 2026 Annual Regulatory Oversight Report is the most current and comprehensive statement of FINRA’s priorities and expectations for member firms. It does not create new...more

Morrison & Foerster LLP

Data, Cyber + Privacy Predictions for 2026

Morrison & Foerster LLP on

The Morrison Foerster Data, Cyber + Privacy team provides creative, practical advice across every stage of the information lifecycle, from navigating complex privacy laws and managing breach response to litigating data...more

Mayer Brown

We Have Been Hacked: Now What? Lessons for the Boardroom

Mayer Brown on

The almost daily prevalence of cyber-attacks has brought the issue of cybersecurity as a core governance responsibility to the front of mind of company boards. In 2024 alone, over 15 million cyberattacks were recorded...more

Ropes & Gray LLP

Artificial Intelligence Integration: Legal & Regulatory Essentials for Asset Managers

Ropes & Gray LLP on

Asset managers generally have fiduciary duties to their clients, including the duty of care and the duty of loyalty. These duties require, among other things, appropriate diligence in selecting, engaging and overseeing AI...more

Dickinson Wright

From Sales Pitch to Cease and Desist in Tennessee’s Wine Market

Dickinson Wright on

There is a particular type of sales pitch that shows up in inboxes when a market matures. One that promises growth without friction, national reach without regulatory headaches, and new customers without any need to rethink...more

Blake, Cassels & Graydon LLP

Affaires mondiales Canada publie des lignes directrices sur les technologies contrôlées et le stockage dans le nuage

Le 5 novembre 2025, Affaires mondiales Canada a publié l’Avis aux exportateurs no 1159 (les « lignes directrices »), qui précise les situations où l’utilisation des services infonuagiques constitue une exportation de...more

Mitratech Holdings, Inc

Best Background Check Software 2026: Top Vendors for Compliance, Speed, and User Experience

The truth is that a solid background screening program is really a compliance program in a friendlier outfit. Every disclosure, every consent, every adjudication note, every pause for adverse action, every state requirement...more

Orrick, Herrington & Sutcliffe LLP

SEC announces examination priorities for fiscal year 2026

On November 17, the SEC’s Division of Examinations published its 2026 examination priorities, outlining key areas of regulatory focus for the upcoming year. ...more

Herbert Smith Freehills Kramer

ASIC Report 827 on whistleblowing practices of 134 surveyed companies: how does your company stack up?

On 4 December 2025, ASIC published Report 827, Insights from the ASIC Whistleblower Questionnaire: July 2024 to June 2025 (Report). The Report sets out the findings of a questionnaire conducted by ASIC into the whistleblowing...more

114 Results
 / 
View per page
Page: of 5

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide