News & Analysis as of

Third-Party Vendors

Seyfarth Shaw LLP

CPPA Underscores That Businesses Own CCPA Compliance – Even When Privacy Management Tools Fail

Seyfarth Shaw LLP on

The California Privacy Protection Agency (“CPPA”) has made it abundantly clear: privacy compliance isn’t just about publishing the right disclosures – it’s about whether your systems actually work. On May 6, the agency fined...more

Integreon

DORA Compliance Part 1: Proactively Meeting DORA Supply Chain Resilience Obligations

Integreon on

Introduction to DORA and its Implications - As of Jan.17, 2025, the European Union’s Digital Operational Resilience Act (DORA) became enforceable. This new regulatory framework significantly impacts financial institutions and...more

Ankura

Internal Control Lessons Learned from Global Anti-Corruption Enforcement in 2024

Ankura on

2024 saw another strong year of Foreign Corruption Practices Act (FCPA) enforcement actions from the United States Department of Justice (DOJ) and the Securities and Exchange Commission (SEC). There were 15 resolutions with...more

Mitratech Holdings, Inc

Red Flags In Your Vendor’s Business Continuity Plan

Ensure your vendors are crisis-ready by recognizing these key indicators of weak continuity planning. The interconnected nature of modern business means that your vendors’ operational resilience can, and frequently does,...more

Conn Kavanaugh

Three Things You Should Know About Service Level Agreements in SaaS/Cloud Contracts

Conn Kavanaugh on

When a customer purchases software-as-a-service (SaaS)–which is sometimes called a “cloud” service or product–the software is not hosted. It does not reside at the customer’s location or data center. Rather the software is...more

Husch Blackwell LLP

U.S. Privacy Litigation Update: September 2024

Husch Blackwell LLP on

Keypoint: California state courts weigh in on what does, and does not, qualify as a “pen registry” or “tap and trace” device while one California federal court raises whether a wiretapping claim can also allow for a CCPA...more

Jackson Lewis P.C.

Health Plan Hygiene Part 4 – Show Me the Money

Jackson Lewis P.C. on

Our “health plan hygiene” series has focused on steps that fiduciaries of employer-sponsored group health plans can take to ensure they meet their fiduciary responsibilities. This issue has been brought to the forefront...more

Amundsen Davis LLC

When External Vendors Create Internal Problems: Managing Harassment from Outside Sources

Amundsen Davis LLC on

Most employers have policies and procedures in place to maintain an atmosphere of safety and mutual respect in the workplace. These policies often prohibit employees from engaging in unlawful behavior, such as harassment,...more

Kerr Russell

Price Collusion in the Crosshairs

Kerr Russell on

There has been a spate of legislation and lawsuits targeting the use of software that gives visibility to competitors’ prices. This allows firms to adjust their prices, either undercutting the competition or setting a de...more

Fenwick & West LLP

NAIC Forms Third-Party Data and Models Task Force and Proposes 2024 Charges and Work Plan

Fenwick & West LLP on

At the recent National Association of Insurance Commissioners (NAIC) meeting in Phoenix, Arizona (March 14–18), a new Third-Party Data and Models Task Force (Task Force) was created. The charges of the Task Force are twofold....more

Integreon

Thomson Reuters: Achieving Compliance With Your Law Enforcement and Third-party Subpoena Response Process

Integreon on

This article originally appeared on Thomson Reuters Westlaw Today on February 12, 2024. View the original article here. Robert Daniel and Mark Grant of Integreon, Inc. explore areas legal operations professionals should...more

Jackson Lewis P.C.

Pay Transparency Requirements Impacting the Retail Industry

Jackson Lewis P.C. on

As more state and local pay transparency laws are enacted throughout the country, retail industry employers face a new challenge in an ever-evolving industry. State Pay Transparency Laws Pay transparency laws are in effect...more

Charles E. Rounds, Jr. - Suffolk University...

“Clearing” the constructive trustee’s legal title: The doctrinal and practical considerations

The court in Freeport-McMoRan Oil & Gas LLC v. 1776 Energy Partners, LLC, 672 S.W.3d 391 (Tex. 2023) explained that “constructive trusts, being remedial in character, have the very broad function of redressing wrong or...more

Constangy, Brooks, Smith & Prophete, LLP

Take these steps to safeguard against third-party cyber threats

The ever-increasing privacy and security risks via third-party vendors and service providers were apparent in 2023 with news of large organizations such as MOVEit, Okta and AT&T being affected. Research has shown that 98...more

Stark & Stark

Recent NJ Appellate Division Offers Guidance on Sexual Harassment of Non-Employees

Stark & Stark on

The New Jersey Appellate Division issued a decision which sheds light on the issue of whether an employee’s sexual harassment of a third-party (non-employee) could subject the employer to liability under the New Jersey Law...more

Balch & Bingham LLP

Joint Cybersecurity Advisory (“CSA”) Issued Regarding IRGC-Affiliated Cyber Threats to Multiple Sectors, including U.S. Water and...

Balch & Bingham LLP on

On December 1, 2023, the Federal Bureau of Investigation (“FBI”), Cybersecurity and Infrastructure Security Agency (“CISA”), National Security Agency (“NSA”), Environmental Protection Agency (“EPA”), and the Israel National...more

Balch & Bingham LLP

Seventh Circuit Rules Disclosure Of Personal Information To Vendor Is Not An Injury - (Transcript)

Balch & Bingham LLP on

In this episode of Consumer Finance Compass, Balch’s Jason Tompkins, partner in Balch & Bingham’s Consumer Finance Compliance & Defense Practice, explores the Seventh Circuit’s new decision ruling that the disclosure of...more

Carlton Fields

Colorado DOI Fast-Tracks Big Data Governance Rulemaking

Carlton Fields on

On August 31, 2023, the Colorado Division of Insurance will hold a virtual rulemaking hearing for its proposed regulation on governance and risk management framework requirements for life insurers using external consumer data...more

Fox Rothschild LLP

OCR Warns Providers About Patient Data Trackers

Fox Rothschild LLP on

Earlier this week, our Fox partner Odia Kagan spoke on HIMSS TV about the risks associated with what may be a “blind spot” in your data privacy compliance efforts: the use of data trackers (such as cookies, tracking pixels,...more

King & Spalding

Global Trends in IT Outsourcing

King & Spalding on

The IT sector has been demonstrating its value in the wake of the COVID-19 pandemic. As more businesses adopt hybrid or even permanent remote work, worldwide IT spending is forecast to reach $4.5 trillion in 2022 and expand...more

Tarter Krinsky & Drogin LLP

The Anti-Kickback Statute and its Implications on Medical Practices

The Anti-Kickback Statute (AKS) protects healthcare beneficiaries from the influence of money in their medical decision-making. Overall, the AKS criminalizes renumeration “intended to induce patient referrals or influence the...more

McGuireWoods LLP

FINRA’s Important Reminder to Firms—Don’t Forget to Supervise Third-Party Vendors

McGuireWoods LLP on

I. Overview - Broker-dealers, like most companies, rely on third-party vendors for a wide variety of functions. This common practice of outsourcing does not relieve a broker-dealer of its regulatory compliance and...more

Troutman Pepper Locke

New FINRA Guidance Suggests Increased Scrutiny of Member Firms’ Relationships with Third-Party Vendors

Troutman Pepper Locke on

Who Needs to Know FINRA member firms. - Why It Matters On August 13, the Financial Industry Regulatory Authority released a regulatory notice to member firms, clarifying their existing obligations on the supervision of...more

BakerHostetler

Dramatic Increase in the Number of Third-Party Vendor Incidents Emphasizes the Need for Better Vendor Due Diligence Processes

BakerHostetler on

As reflected in our 2021 Data Security Incident Response Report  2020 saw a sharp spike in the number of incidents involving vendors, which amounted to over 25 percent of the total incidents handled in 2020, and the trend is...more

Jackson Lewis P.C.

Data Protection And The Role Of Vendor Management

Jackson Lewis P.C. on

The SolarWinds hack highlights the critical need for organizations of all sizes to include cyber supply chain risk management as part of their information security program. It is also a reminder that privacy and security...more

62 Results
 / 
View per page
Page: of 3

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide