Latest Publications

Share:

New Hampshire Poised to Enact New England’s Second State Comprehensive Privacy Law

On January 18, the New Hampshire legislature passed on a bipartisan basis its version of the state comprehensive privacy law first adopted by Virginia in 2021 and subsequently by more than ten other states, most recently New...more

Vermont Considers Bringing Its Version of Washington’s ‘My Health My Data Act’ To New England

The Vermont Legislature is considering its version (S.173) of Washington’s My Health My Data Act to regulate non-HIPAA health data. If enacted, the Vermont law would take effect on January 1, 2025. The bill is premised on a...more

New York Announces Two Major Artificial Intelligence Initiatives

On January 8, 2024, New York Governor Kathy Hochul and the New York Office of Information Technology Services (NY ITS) announced two major initiatives on artificial intelligence (AI) that will impact private and public...more

[Webinar] Protecting Hospitals From Cyberattacks: New York’s Trailblazing Cybersecurity Requirements - January 30th, 1:00 pm -...

Hospitals, health systems and providers are targets of cyberattacks at an alarming rate, putting patient data, electronic infrastructure and, most importantly, patient lives at risk. The Department of Health and Human...more

Balancing New Federal & State Cyber Reporting Rules on Health Care & Financial Services Industries

Balancing cybersecurity incident disclosures has been a challenge for those in the trenches for years. That has not changed, and recent regulatory activity should not alter the challenges breach counsel confront. In short,...more

Is OCR Correct That Website Metadata Is Regulated by HIPAA? Chicago Federal Court Asks

The plaintiff’s bar continues to bring new wiretapping claims over pixels and analytics programs in courts around the country, including against hospitals and other entities covered by the Health Insurance Portability and...more

Navigating the HIPAA Risks of Website Trackers

Covered entities are used to ensuring that many different facets of their operations comply with Health Insurance Portability and Accountability Act (HIPAA) rules. Among other things, covered entities must ensure that they...more

Federal Wiretap Act: Illinois Court Rejects Claim Over Hospital Deploying Website Analytics Tools

Wiretapping claims have become the focus of the privacy plaintiff’s bar. These cases are everywhere, and the hospital industry in particular has been in the crosshairs of recent filings (with as many as a couple of dozen new...more

Client Alert: Illinois’s Biometric Law (BIPA) Reminds Us Again of Privacy and Security Vendor Risks

Synopsis: While certain industries have been able to navigate the explosion of privacy laws in recent times through express statutory exemptions or exceptions (often due to other regulatory regimes being in place, such as the...more

[Webinar] Health Care Cybersecurity: Risks, Challenges and the Path Forward - March 8th, 2:00 pm - 3:00 pm ET

Hospitals, health systems and providers are targets of cyberattacks, putting valuable patient data and, more importantly, patient lives at risk. The Department of Health and Human Services’ Office of Civil Rights reported an...more

Health Care Industry Reminded Again About Cybersecurity Risks With Cloud Vendors

Synopsis. The Ohio Supreme Court ruled last week that insurance coverage was not available to a cloud-based medical software provider because, under the applicable insurance policy, “[c]omputer software cannot experience...more

CA Fails to Extend Privacy Exemptions for B2B and Employment Data from the CCPA into 2023

Right now, beginning on January 1, 2023, the California Consumer Privacy Act (the CCPA), as amended by the passage of the California Privacy Rights Act in the November 2020 election, will apply to personal information...more

Telehealth and Digital Health Privacy Regulations

What Is the Current Status of Federal and State Privacy Law? Federal Privacy Law - The Health Insurance Portability and Accountability Act of 1996 (HIPAA) is the primary federal law that protects patients’ health care...more

Cyber Beware: E-Gaming and Cyber-Criminality

Recent events illustrate that the e-gaming industry—developers, publishers, esports leagues and teams, and the financial machinations behind them—are significant targets for cyberattacks, theft and cyber-criminality....more

[Ongoing Program] The World Wide Web of Risk: Protecting Yourself in the Metaverse - May 5th, 12:00 pm - 12:30 pm PT

Join an interdisciplinary panel of Manatt professionals for the third of a three-part webinar series on the metaverse and the dawn of the Web3 era. While Parts One and Two of our series focused on the blockchain basics and...more

GDPR: EDPB’s New Breach Guidelines Present Additional Challenges for Legal & Security Professionals

To close out 2021, the European Data Protection Board (EDPB) adopted additional General Data Protection Regulation (GDPR) data breach notification guidelines in Guidelines 01/2021 on Examples regarding Personal Data Breach...more

U.S. Cyber Regulations Expand: Banking Agencies Approve New Incident Notification Requirements

On November 18, the Office of the Comptroller of the Currency, the Federal Reserve and the Federal Deposit Insurance Corporation (FDIC) adopted a rule that will require banking organizations and their bank service providers...more

OFAC Speaks Again on Ransomware: Mature Cybersecurity Programs Are Important

Last year, as employees clicked away at home amid the COVID-19 pandemic lockdown, ransomware attacks surged, with hospitals and other health care providers the top target. This year will be worse—2021 has already seen more...more

Beyond Big Tech: CFPB’s Payments Data Obsession May Broadly Target Third-Party Data Purchasers

In late October, the Consumer Financial Protection Bureau (CFPB) sent a shot across the bow at Big Tech’s use of consumer payments data. While much of the industry has focused on the impact on Big Tech, some lenders, lead...more

Virginia’s Consumer Data Protection Act Has Passed: What’s in It?

On March 2, Virginia Governor Ralph Northam signed the Consumer Data Protection Act (CDPA), making Virginia the latest state to enact a cross-industry privacy rights law. The CDPA displays a blend of concepts from two leading...more

Considerations in Machine Learning-Led Programmatic Underwriting

Underwriting is critical to insurance profits: Identify, qualify, and quantify the risk that an insurance policy covers and set the premiums across a pool of the policies to cover the risk. It is the original hedge fund, in...more

Security Implications of Foreign Funding and Access at U.S. Colleges and Universities

While global media outlets have focused attention on election security, major U.S. healthcare facilities have been under direct cyberattacks in recent months. This follows disruptive cyberattacks on municipalities earlier...more

Retention of Biometric Data Beyond Stated Period Creates Article III Standing: Seventh Circuit

Alleged violations of privacy laws continue to bedevil the federal courts—in particular, with respect to determining whether an alleged violation creates a sufficiently concrete and redressable grievance to permit the federal...more

The California Privacy Rights Act Has Passed: What’s in It?

On November 3, 2020, Californians voted to approve Proposition 24, a ballot measure that creates the California Privacy Rights Act (CPRA). The CPRA amends and expands the California Consumer Privacy Act (CCPA)—California’s...more

35 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide