Latest Publications

Share:

[Webinar] Financial Services Cyber Fraud: The Latest Risks and Best Responses - October 20th, 12:00 pm - 1:00 pm ET

Cyber fraud costs the financial services industry billions in losses each year and has been on the rise. Regulation has followed, creating risks of a different kind. This timely webinar will walk through some of the latest...more

NAIC’s Privacy Protections Working Group Plans Extended Growing Season for Fall 2023 Harvest

The NAIC’s Privacy Protections Working Group has updated its work plan, planting two crops for its fall 2023 harvest: Time will tell what other seedlings catch the NAIC’s eye. The above dates, however, are subject to growing...more

NAIC’s New Cybersecurity Working Group Prepares for Planting

More than 200 regulators and interested parties attended the NAIC’s Cybersecurity (H) Working Group’s first meeting of the year on March 23. The working group, made up of 23 states, co-chaired by Missouri and New York, is...more

SEC Showers Down Proposed Cybersecurity Rules: 5 Steps for Staying Dry

It’s rainy season for proposed SEC cybersecurity rules. The first watershed was proposed regulations targeting investment companies’ and advisers’ cybersecurity preparedness. See “SEC Plants New Cybersecurity Regulations;...more

Four Takeaways From the SEC's Proposed Cyber Rule for Public Companies

On March 9, the Securities and Exchange Commission (SEC) published a proposed rule, File No. S7-09-22, that would significantly impact public companies' cybersecurity reporting obligations. Among other things, the rule would...more

SEC Plants New Cybersecurity Regulations; Time Will Tell What Will Bloom

It’s planting season for the SEC, and among the seedlings is File Number S7-04-22, a proposed cybersecurity rule intended to increase regulation of advisers’ and investment companies’ cybersecurity preparedness. As currently...more

The Health Data Use and Privacy Commission Act: Is HIPAA Getting a Facelift and Expanding Its Reach?

On February 9, 2022, U.S. Sens. Tammy Baldwin (D-Wis.) and Bill Cassidy (R-La.) introduced the “Health Data Use and Privacy Commission Act.” The bipartisan act, intended to modernize the Health Insurance Portability and...more

Regulators Forecast Storm of Cybersecurity Activity

In September and October 2021 alone, the Federal Trade Commission, the New York State Department of Financial Services, and the Securities and Exchange Commission all signaled their plans for a cybersecurity squall....more

When Congress Freezes Up, the NAIC’s Privacy Protections Working Group Lights a Fire

On November 18, calling frozen federal legislative efforts “an opportunity” for state insurance regulators to “update state privacy protections … and potentially forestall or mitigate the impacts of any preemptive federal...more

Diving Into IoT Data? Here Are Some Privacy Considerations

Many insurers contemplate using data from internet- connected devices, including wearables, for a deep dive into wearers’ lifestyles and invaluable insights for automated underwriting. Before diving into the deep end, there...more

Bracing for 2023: 10 Steps to Prepare for a New Era in U.S. Privacy

On July 7, Colorado joined California and Virginia as the third state to pass comprehensive consumer privacy legislation. All three states have new privacy laws with effective dates in 2023 (though California’s Privacy Rights...more

DFS Continues Focus on Cybersecurity: Issues Ransomware Guidance and Signals Increased Enforcement Actions

The New York State Department of Financial Services (DFS) is continuing its focus on financial institutions’ cybersecurity, issuing new guidance, probing cybersecurity as part of routine examinations, and signaling increased...more

Biden Administration Issues Practical Guidance for Ransomware Attacks

On June 2, 2021, President Biden issued a memorandum providing "recommended best practices" for protecting against ransomware. The memorandum urged corporate executives and business leaders to...more

Cast Into the Deep: Questions for Charting New Privacy Waters

As insurers consider new data from new sources and new means for consumer outreach, working through the privacy requirements is like navigating choppy waters. The various privacy regimes include...more

Spring Is Hot for State Privacy Legislation

It’s a hot spring for state privacy legislation. Privacy bills are pending in roughly 20 states, and while Gramm-Leach-Bliley Act (GLBA) exemptions may act as a cool breeze in some, issues remain...more

Florida's New Privacy Bill Promises Big Changes

Florida recently joined a small but growing number of states considering sweeping reforms to their data privacy and protection laws. House bill 969, titled “Consumer Data Privacy,” in many ways mirrors the California Consumer...more

Health Care Providers Are Under Attack. Are You Ready for 2021?

2020 can rightfully be called the year for remote health care. Fueled by necessity and accompanying loosened regulations, telehealth and the demand for remote patient monitoring boomed. Signs that this progress is here to...more

Eleventh Circuit Decisions May Chill Future Data Breach Class Actions

The holidays came early for class action defendants in the Eleventh Circuit. Within just over a month, that court issued two decisions with potentially large consequences for data breach litigation in the Eleventh Circuit:...more

Final CCPA Regulations Submitted, but Compliance Burden Could Increase

The California Consumer Privacy Act (CCPA) took effect on January 1, 2020, and brought with it a panoply of new legal obligations for many companies doing business with California residents. ...more

HIPAA Compliance for Work-From-Home or Telehealth Programs: Five Frequently Overlooked Considerations

COVID-19 has challenged health care providers to change the way they offer services — from shifting to an increasingly remote workforce to diving into telehealth. These adjustments have privacy implications. The following are...more

10 Privacy Recommendations for Health App Developers From the AMA’s Latest Privacy Principles

There has been no lack of new guidance regarding health care cybersecurity in recent weeks. But the American Medical Association’s (AMA) newly released “Privacy Principles” is unique in its aim at entities involved in health...more

NAIC Restarts Its Work Revising Its Model Privacy Provisions

After a brief hiatus due to COVID-19, the NAIC’s Privacy Working Group returned to work on May 5 discussing comments received on the working group’s markup of the NAIC Insurance Information and Privacy Protection Model Act...more

Five Steps to Prepare for Telehealth Data Breach Litigation

As we’ve previously reported, COVID-19 has caused a surge in telehealth and has temporarily reduced the HIPAA Security Rule requirements placed on telehealth service providers. ...more

10 Steps for Responding to a Telehealth Data Breach

Thus far, telehealth breaches have been exceedingly rare, but as telehealth is increasingly used, telehealth data breaches and similar incidents may become more commonplace. Here are 10 steps for responding to a telehealth...more

Six Steps to Protect Against Increased Telehealth Cybersecurity Dangers

Last week, the American Medical Association (AMA) and the American Hospital Association (AHA), recognizing the increased cybersecurity threats facing health care providers, issued joint guidance for physicians working from...more

58 Results
 / 
View per page
Page: of 3

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide