Latest Publications

Share:

Reminder: More New York Department of Financial Services (NYDFS) Requirements Go Into Effect Next Month

As we have previously written, late last year the New York Department of Financial Services (NYDFS) adopted long-awaited amendments to its Part 500 Cybersecurity Regulations (Part 500). These are some of the most significant...more

Colorado Attorney General Proposes Amendments to the Colorado Privacy Act Focused on Biometric Data and Children’s Privacy

On September 13, 2024, the Colorado Attorney General’s Office (AG) published proposed amendments to the Colorado Privacy Act (CPA) Rules that create new requirements for the collection and use of biometric data and children’s...more

California Privacy Protection Agency (CPPA) to Businesses: Avoid Dark Patterns

On September 4, 2024, the California Privacy Protection Agency (CPPA) issued an Enforcement Advisory on the importance of avoiding dark patterns. As we have previously written, dark patterns were first addressed in detail in...more

SEC Adopts Amendments To Regulation S-P

On May 15, 2024, the Securities and Exchange Commission (the “SEC”) adopted amendments to Regulation S-P. Originally passed in 2000, Regulation S-P regulates the treatment of non-public personal information of consumers by...more

Intellectual Property Considerations for AI Companies: A Guide for Investors and Startups

In the rapidly evolving landscape of AI, the valuation and viability of AI companies are extensively tied to their intellectual property assets. For AI companies, safeguarding these assets is not just about legal...more

Illinois Legislature Passes Major BIPA Amendment

On May 16, 2024, the Illinois Legislature passed SB 2979, which amends the Illinois Biometric Information Privacy Act (BIPA) to clarify that any person whose biometric identifier or biometric information is “scanned” by a...more

Key Takeaways From the Spring 2024 Privacy+Security Forum: Misinformation and Youth Online Safety

Paul Hastings attended the spring 2024 Privacy+Security Forum hosted by Professors Daniel Solove and Paul Schwartz, where privacy professionals from all over the world gathered in Washington, D.C. to learn about the latest...more

Revised FTC Safeguards Rule Brings Breach Reporting Obligations to Non-Banking Financial Institutions in May 2024

Federal jurisdiction under the Gramm Leach Bliley Act (“GLBA”) is a patchwork, particularly for banks –the Federal Reserve, the Federal Deposit Insurance Corporation, and the Office of the Comptroller of the Currency all...more

FAR Pushes Proposed Rules Comments Deadline Further

On October 3, 2023, the Federal Acquisition Regulatory (“FAR”) Council released two draft rules which would impose new cybersecurity requirements for federal contractors. Comment periods for both proposed rules were slated to...more

NYDFS Releases Major Update to Part 500 Cybersecurity Requirements for Financial Services Companies

The New York Department of Financial Services (NYDFS) adopted a long-expected amendment to its Part 500 Cybersecurity Regulations (Part 500) this week. These are the first significant changes to Part 500 since its inception...more

White House Passes Sweeping AI Executive Order

On October 30, 2023, the Biden-Harris Administration unveiled a sweeping Executive Order on the Safe, Secure, and Trustworthy Development and Use of Artificial Intelligence (AI). The Executive Order represents the most...more

Preparing for New State Privacy Laws in 2024

As we enter into the final few months of the year, it is important for companies operating in the United States to not only assess the implementation of the compliance requirements for the four new comprehensive state privacy...more

“FAR” Reaching Consequences: Proposed FAR Cybersecurity Requirements Will Add New Obligations for Contractors

Earlier this month the Federal Acquisition Regulation (“FAR”) Council released two draft rules which would impose new cybersecurity requirements for federal contractors. The proposed rules, Cyber Threat and Incident Reporting...more

SEC Cyber Rules Published in Federal Register

The SEC’s Cybersecurity Risk Management Strategy, Governance, and Incident Disclosure Rules were officially published in the Federal Register on August 4, 2023 and go into effect on September 5, 2023....more

The SEC Adopts Cybersecurity Disclosure Regime for Public Companies

On July 26, 2023, the U.S. Securities and Exchange Commission adopted enhanced disclosure requirements regarding cybersecurity risk management, strategy, governance and incident reporting for public companies. The final rules...more

Oregon Enacts Privacy Law

Oregon is the latest state to join the growing patchwork of U.S. state privacy laws. On July 18, 2023, the Oregon Governor signed S.B. 619, enacting what will become the eleventh state privacy law. The Oregon law follows many...more

NYDFS Proposes Further Changes to Part 500 Rules

The New York Department of Financial Services (“NYDFS”) released a “revised proposed second amendment” on June 28 that makes further changes to its Cybersecurity Regulation (“23 NYCRR Part 500”). Part 500 was first enacted in...more

SEC Delays Finalized Cybersecurity Rules until Fall 2023

Based on recent changes to its rulemaking agenda, the Securities Exchange Commission has postponed the much anticipated release of its final rules for Cybersecurity Risk Management, Strategy, Governance and Incident...more

Washington State is Set to Expand Protection of Consumer Health Data

Washington State (“Washington”) is preparing to break new ground in the privacy law space, as its legislature finalizes the “My Health My Data Act“ which will further regulate how health data of Washington residents should be...more

First Round of California Privacy Rights Act Regulations Go Into Effect, March 31, 2023

On March 30, 2023, the California Office of Administrative Law (OAL) formally approved regulations that will govern the applicability and enforcement of the California Privacy Rights Act (CPRA)....more

Iowa Becomes Sixth State to Enact Comprehensive Privacy Law

As we continue to wait for a potential federal privacy law, the State of Iowa became the sixth state to pass a comprehensive state privacy law (Senate File 262) on March 28th when Governor Kim Reynolds signed the legislation....more

Walton v. Roosevelt University: Ill. Supreme Court Issues Rare Defense-Friendly BIPA Opinion

On March 23, 2023, the Illinois Supreme Court issued an opinion in Walton v. Roosevelt University, 2023 IL 128338 that affirms the validity of an important preemption defense for employers facing litigation under the Illinois...more

SEC Proposes New Cybersecurity Rule and Amendments

On March 15, 2023, the SEC issued proposed amendments and a proposed rule addressing cybersecurity. Specifically, the SEC proposed Rule 10, which addresses cybersecurity risks, and proposed to amend Regulation SCI and...more

New BIPA Ruling Could Bring Additional Liability

Last week the Illinois Supreme Court issued its long awaited opinion in the Cothron v. White Castle System, Inc. In Cothron, the Seventh Circuit Court of Appeals had certified a question of Illinois law to the Illinois...more

30 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide