News & Analysis as of

Third-Party Risk Assessment

Health Care Compliance Association (HCCA)

[Event] Healthcare Privacy Compliance Academy - June 9th - 12th, Pittsburgh, PA

HCCA's Healthcare Privacy Compliance Academy is a three-and-a-half-day interactive education program with a focus on the vast body of privacy laws and regulations in place to help you protect PHI and other critical data. Our...more

Robinson+Cole Data Privacy + Security Insider

AI Governance: Steps to Adopt an AI Governance Program

There are many factors to consider when assisting clients with assessing the use of artificial intelligence (AI) tools in an organization and developing and implementing an AI Governance Program. Although adopting an AI...more

Health Care Compliance Association (HCCA)

[Event] Healthcare Privacy Compliance Academy - March 24th - 27th, Chicago, IL

HCCA's Healthcare Privacy Compliance Academy is a three-and-a-half-day interactive education program with a focus on the vast body of privacy laws and regulations in place to help you protect PHI and other critical data. Our...more

Foley & Lardner LLP

Key Takeaways: 7th Annual “Let’s Talk Compliance” Conference

Foley & Lardner LLP on

Editor’s Note: PYA and Foley & Lardner hosted the 7th Annual “Let’s Talk Compliance” two-day virtual conference on January 23 and 24, 2025. Panelists included Foley attorneys and PYA subject matter experts. The event was...more

Lowenstein Sandler LLP

Top AI Risks General Counsels Should Address

Lowenstein Sandler LLP on

Considering the rapid development and deployment of artificial intelligence (AI) in a wide array of applications and business sectors, it can be a daunting task for a company’s General Counsel (GC) to keep pace in identifying...more

A&O Shearman

European Commission rejects draft technical standards on sub-contracting ICT services under Digital Operational Resilience Act

A&O Shearman on

The European Commission has published a letter (dated 21 January 2025) addressed to the Joint Committee of the European Supervisory Authorities (ESAs) rejecting certain draft regulatory technical standards (RTS) the ESAs...more

Venable LLP

Communicating in a Crisis: Tips for Protecting Communications When It Matters Most

Venable LLP on

As recent high-profile litigation, government investigations, and large-scale data-security incidents have shown, organizations are often thrust into crisis mode, requiring rapid responses and close collaboration with third...more

Baker Botts L.L.P.

New York State Department of Financial Services Issues Guidance Concerning Cybersecurity Risks Posed by Artificial Intelligence

Baker Botts L.L.P. on

Last month, the New York State Department of Financial Services (“DFS”), which has broad regulatory powers over financial services-related entities and insurance companies operating in New York State, published guidance...more

Cozen O'Connor

Department of Defense Publishes Final Rule on Cybersecurity Maturity Model Certification

Cozen O'Connor on

On October 15, 2024, the Department of Defense (DoD) published the long-anticipated first part of its final rule (the Final Rule) for the Cybersecurity Maturity Model Certification (CMMC) program. After the implementation of...more

McGlinchey Stafford

Bank Partnerships in an Evolving World

McGlinchey Stafford on

Financial institutions have utilized service providers for a multitude of purposes over many years. The use of service providers has not historically been a controversial issue, and financial institutions have always had an...more

Ballard Spahr LLP

Federal Banking Agencies Issue Guide to Third-Party Risk Management Practices for Community Banks

Ballard Spahr LLP on

On May 3, 2024, the Board of Governors of the Federal Reserve System (the “Federal Reserve”), the Federal Deposit Insurance Corporation (“FDIC”), and the Office of the Comptroller of the Currency (“OCC”) jointly released the...more

Knobbe Martens

FDA Dataset Helps Firms Scrutinize Third-Party Chemistry Labs

Knobbe Martens on

Medical devices that contact the human body undergo biocompatibility safety assessments prior to market release, including tests for physiochemical properties.  The Food and Drug Administration’s (FDA) Center for Devices and...more

Perkins Coie

CFPB Issues New Report Examining Financial and Privacy Risks to Consumers in Video Gaming Marketplaces: What Now?

Perkins Coie on

On April 4, 2024, the Consumer Financial Protection Bureau (CFPB) issued a new report, titled “Banking in Video Games and Virtual Worlds” (Report), that examines the growth of financial transactions in online video games and...more

NAVEX

Compliance & Cybersecurity – Working and Worrying Together About the Intersection of People and Technology

NAVEX on

I’m not a cyber expert, but as a compliance professional with accountability for internal investigations of employee and third-party misconduct I’ve had a front row seat to the evolution of risk that has mirrored the mass...more

Vinson & Elkins LLP

Who’s to Blame: Texas Federal Court Finds Contractual Counterparty Not Liable for Third-Party Wire Transfer Fraud

Vinson & Elkins LLP on

The facts are an oft-told business email compromise horror story: a hacker interjects themselves into an email discussion of a business deal, changes the wire instructions to their own account, and disappears with the...more

Miller Canfield

Artificial Intelligence in the Workplace: Spotlight on Confidentiality Concerns

Miller Canfield on

Generative artificial intelligence (“GAI”) has the potential to revolutionize efficiency and productivity in our day-to-day working lives. But while this technology is becoming more sophisticated by the day, companies should...more

Society of Corporate Compliance and Ethics...

Third-party due diligence: Are supplier questionnaire(s) the answer?

Numerous laws (U.K. Bribery Act guidance document, German Supply Chain Act, Foreign Corrupt Practices Act resource guide, OECD Due Diligence Guidance for Responsible Supply Chains of Minerals from Conflict-Affected and...more

Constangy, Brooks, Smith & Prophete, LLP

Take these steps to safeguard against third-party cyber threats

The ever-increasing privacy and security risks via third-party vendors and service providers were apparent in 2023 with news of large organizations such as MOVEit, Okta and AT&T being affected. Research has shown that 98...more

Foley & Lardner LLP

What Every Multinational Company Should Know About . . . Implementing an International Compliance Program (Part II)

Foley & Lardner LLP on

In our prior update (published November 29), we provided the first five steps in our twelve-step program for international compliance. These steps are intended to help companies identify international regulatory risk inherent...more

Husch Blackwell LLP

CPPA Publishes Proposed Revisions to CCPA Regulations

Husch Blackwell LLP on

Keypoint: The Agency proposed more revisions to the CCPA regulations for consideration at the December 8 board meeting. On December 1, 2023, the California Privacy Protection Agency (Agency) published proposed revisions to...more

Stevens & Lee

Evading Transaction Roadblocks: Strategies for Common Late-Stage Dealbreakers

Stevens & Lee on

After completing the arduous task of preparing to sell a business and agreeing to the terms in principle for a transaction in which a business owner will sell his or her “life’s work,” selling business owners (“Seller” or...more

Health Care Compliance Association (HCCA)

[Event] Healthcare Privacy Compliance Academy - December 11th - 14th, Orlando, FL

Designed for professionals with some compliance knowledge and experience, HCCA’s Healthcare Privacy Compliance Academy is ideal for practitioners who want a deeper understanding of effective compliance management in a...more

Ogletree, Deakins, Nash, Smoak & Stewart,...

OSHA Proposes Rule to Allow Third Parties to Participate in Workplace Walkaround Inspections

On August 30, 2023, the Occupational Safety and Health Administration (OSHA) published a proposed rule that would change the scope of who would be allowed to participate in walkarounds conducted as part of OSHA inspections. ...more

Hinch Newman LLP

FTC and HHS Warn Hospital Systems and Telehealth Providers About Use of Technologies That Share Sensitive Health Information

Hinch Newman LLP on

The Federal Trade Commission and the U.S. Department of Health and Human Services' Office for Civil Rights are cautioning hospitals and telehealth providers about the privacy and security risks related to the use of online...more

Amundsen Davis LLC

Insights from the OCC Semiannual Risk Perspective

Amundsen Davis LLC on

On June 14, 2023, the Office of the Comptroller of the Currency (OCC) published its Semiannual Risk Perspective which identifies key issues facing the federal banking system. This highly anticipated report comes in the wake...more

58 Results
 / 
View per page
Page: of 3

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide