Latest Publications

Share:

Cybersecurity Best Practices for AI-Powered Robotics Under State and Federal Privacy Laws

As robotics technology rapidly advances in connection with the use of artificial intelligence (AI), the collection, processing, and storage of personal information—including biometric data—will become increasingly common....more

Unpacking Dark Patterns

“Dark patterns” have increasingly been the focus of legislative and regulatory scrutiny. Yet the phrase is never used in business. No business designs a website, mobile app, or business process with the instruction, “let’s...more

California Passes Flurry of Year-End AI Legislation

In 2024, the California legislature passed 17 laws related to artificial intelligence (AI). These new laws cover various themes and industries, including but not limited to deepfakes, training data disclosures, health care,...more

Understanding the Colorado AI Act

With the governor’s signature, Colorado has enacted a new consumer protection law focused on artificial intelligence (“AI”) systems. The “Colorado AI Act” will go into effect on February 1, 2026. It will have a minor impact...more

NYDFS Issues Guidance on Cybersecurity Risks Arising from Artificial Intelligence

On October 16, 2024, the New York Department of Financial Services (NYDFS) issued an Industry Letter that discusses the cybersecurity risks associated with the use of artificial intelligence (AI) and outlines strategies to...more

The EU AI Act: Part Four – Low Risk AI Systems and Enforcement

This is part four of our examination of the European Union’s new artificial intelligence law, the (“EU AI Act”). In part one, we introduced the scope of the EU AI Act and discussed what types of AI systems are outright...more

The EU AI Act: Part Three – General-Purpose Models

This is part three of our examination of the European Union’s new artificial intelligence law (the “EU AI Act”). In part one, we introduced the scope of the EU AI Act and discussed what types of AI systems are outright...more

The EU AI Act: Part Two – High-Risk AI Systems

This is part two of our examination of the European Union’s new artificial intelligence law, the (“EU AI Act”). In part one, we introduced the scope of the EU AI Act and discussed what types of AI systems are outright...more

Joint Guidelines for Secure AI Deployment

New cybersecurity guidance for artificial intelligence (AI) systems, available here, was recently issued jointly by the U.S. Cybersecurity and Infrastructure Security Agency (CISA), the FBI, the National Security Agency’s...more

The European Union Artificial Intelligence Act: Part One – Scope and Prohibited Systems

The European Union recently enacted its new artificial intelligence regulation, the (“EU AI Act”). The new law is expected to have a substantial impact on the AI industry, including on companies outside of the EU, much as...more

California Appellate Court Greenlights Enforcement of Privacy Regulations

Since late June 2023, the California Privacy Protection Agency (CPPA) has been prohibited by court order from enforcing the regulations it finalized on March 29 of last year. According to that ruling, because the text of the...more

California’s Delete Act Creates Universal Deletion Requirement Aimed at Data Brokers

On October 10, Governor Gavin Newsom signed into law California’s most recent foray into the world of consumer data privacy: the Delete Act. Targeting so-called data brokers, the Act expands on regulations already in place...more

SEC Adopts Final Rules on Cybersecurity Risk Management, Strategy, Governance, and Incident Disclosure

On July 26, 2023, the Securities and Exchange Commission (SEC) announced the adoption of final rules relating to cybersecurity risk management, strategy, governance, and incident disclosures. The new rules define a...more

EU Adopts the EU-U.S. Data Privacy Framework

The European Union (EU) announced on July 10 that it had formally adopted the adequacy decision for the EU-U.S. Data Privacy Framework, which goes into effect on July 11. U.S. organizations have been without a...more

Irish Data Protection Commission’s Decision Throws Use of Standard Contractual Clauses Into Doubt

On May 22, Ireland’s Data Protection Commission (DPC) announced that it had imposed a €1.2 billion fine on Meta Platforms for violating the European Union’s General Data Protection Regulation (GDPR) in its use of standard...more

Another New California Privacy Law Targets the Collection of Information from Minors

With so much attention focused on the California Privacy Rights Act (CPRA) going into effect on January 1, 2023, it is not surprising that the enactment of another far-reaching California privacy law has flown beneath the...more

The New Standard Contractual Clauses Deadline is Approaching

On June 4, 2021, the European Commission introduced the new set of Standard Contractual Clauses (“SCCs”), a primary mechanism for lawfully transferring personal data from Europe to the United States under the European Union’s...more

AI and Cybersecurity Issues Look Set to Dominate the Privacy Landscape in 2022

Meghan Stoppel, who spent over a decade serving as an Assistant Attorney General, and later a Consumer Protection Chief, to both Democratic and Republican state attorneys generals, talks to Andy Baer, Chair of Cozen...more

SEC Proposes New Rules for Cybersecurity Incident Reporting

On March 9, 2022, the U.S. Securities and Exchange Commission (SEC) proposed new rules that would require public companies to report detailed information about material cybersecurity incidents affecting their business and...more

FFIEC Updates Guidance to Financial Institutions for Authentication and Access

The Federal Financial Institutions Examination Council (FFIEC), an interagency body of leading financial regulators, including the Federal Deposit Insurance Corporation and the Office of the Comptroller of the Currency,...more

European Data Protection Board Releases Guidance On Cross-Border Data Flows In The Wake Of Schrems II

On November 10, the European Data Protection Board (EDPB), the European Union’s top data privacy regulator, issued long-awaited guidance setting out a framework for navigating transfers of data out of the European Economic...more

California Privacy Rights Act Will Revamp CCPA To Include GDPR-Type Requirements

On June 24, the eve of the July 1 enforcement date for the California Consumer Privacy Act (CCPA), the California Secretary of State certified the California Privacy Rights Act (CPRA), the latest brainchild of privacy...more

22 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide