News & Analysis as of

Regulatory Requirements Cybersecurity Reporting Requirements

Eversheds Sutherland (US) LLP

AI at the gate: NYDFS issues guidance on addressing new AI-driven cybersecurity risks under existing cybersecurity requirements

On October 16, 2024, the New York State Department of Financial Services (DFS) issued an industry letter providing guidance on how DFS-regulated entities (covered entities) should be evaluating and responding to artificial...more

McDermott Will & Emery

European Commission Seeks Feedback on NIS2 Draft Cybersecurity Measures

WHAT HAPPENED: On June 27, 2024, the European Commission published for feedback a draft implementing act (draft implementing act) under the Network and Information Security 2 Directive (NIS2). It specifies cybersecurity...more

Jenner & Block

Client Alert: The SEC’s Approach to Cybersecurity Disclosure Decisions

Jenner & Block on

The SEC’s Director of Corporation Finance, Erik Gerding, recently issued two statements regarding a public company’s disclosure obligations in response to a cybersecurity incident. These remarks follow the adoption of the...more

Foley Hoag LLP - Security, Privacy and the...

SEC Revamps and Enhances Data Protections with Amendments to Regulation S-P

The Securities and Exchange Commission (“SEC”) has announced the adoption of amendments to Regulation S-P (“Amendments”) to modernize and enhance the rules that govern the treatment of consumers’ nonpublic personal...more

Lewis Roca

Nevada Gaming Control Board Workshop on Public Regulation

Lewis Roca on

The Nevada Gaming Control Board (“Board”) will hold a workshop on May 23, 2024, to solicit comments on proposed amendments to Nevada Gaming Commission (“NGC”) Regulations regarding, without limitation, Regulations 5, 7A, 8,...more

Skadden, Arps, Slate, Meagher & Flom LLP

Know Your Cloud Customer: Commerce Department Proposes To Regulate Foreign Access to US IaaS Products

On January 29, 2024, the Department of Commerce, Bureau of Industry and Security (BIS) released a proposed rule (Proposed Rule) that would require U.S. cloud services providers (a.k.a. Infrastructure as a Service, or IaaS,...more

Ankura

DOD Issues Memo on FedRAMP Requirements for Defense Contractors

Ankura on

On December 21, 2023, the Department of Defense (DoD) issued a memorandum (Memo) providing guidance and clarification on the security and cyber incident management requirements applicable for the use of external Cloud Service...more

American Conference Institute (ACI)

Panicked Over Cyber Disclosure Laws? Here’s a Plea for Common Sense

Corporate legal departments are scrambling to stay ahead of the latest developments around cyber incident disclosure rules and regulations. In hopes of reducing panic and distress, a pair of legal experts are issuing a...more

Bass, Berry & Sims PLC

Cyber Incident Reporting May Be “Material” for Federal Contractors

Bass, Berry & Sims PLC on

Last month, the Federal Acquisition Regulatory Council proposed new cybersecurity and incident reporting regulations for federal contractors on behalf of the Department of Defense (DoD), the General Services Administration...more

Polsinelli

FTC Adopts Data Breach Notification Obligations for Non-Banking Financial Institutions

Polsinelli on

On October 27, 2023, the Federal Trade Commission (“FTC”) adopted an amendment to the FTC’s Safeguards Rule that will require non-banking financial institutions to notify the FTC within thirty days of discovering a data...more

Fenwick & West LLP

Key Provisions and Impacts of Biden’s Executive Order on AI Regulation and Development

Fenwick & West LLP on

On October 30, 2023, the Biden administration issued a sweeping Executive Order on the Safe, Secure and Trustworthy Development and Use of Artificial Intelligence (the “Executive Order”), which ambitiously directs the...more

Jenner & Block

Client Alert: Byte-Sized Steps – Navigating the Biden Executive Order on AI and Other Recent Developments in AI Regulation

Jenner & Block on

On October 30, 2023, President Biden signed the Executive Order on Safe, Secure, and Trustworthy Artificial Intelligence (the “Federal AI Executive Order”), a long-awaited executive order that builds upon the Biden...more

Perkins Coie

A Potential Look Into the Future: California Issues First Draft of Cybersecurity Audit and Risk Assessment Regulations

Perkins Coie on

The Board of the California Privacy Protection Agency (the CPPA) held its first meeting since July on Friday, September 8, 2023, and discussed the first public draft of cybersecurity audit regulations and risk assessment...more

Mayer Brown Free Writings + Perspectives

SEC Proposes Amendments That Would Place New Cybersecurity Reporting and Disclosure Requirements on Public Companies

On March 9, 2022, the US Securities and Exchange Commission (SEC) voted 3-1 to propose new rules and amendments under the Securities Exchange Act of 1934 that would constitute the SEC’s first attempt to adopt specific rules...more

Eversheds Sutherland (US) LLP

A Cybersecurity Storm and Winds of Change: NY DFS requires all New York financial institutions to report effects of SolarWinds...

The massive SolarWinds security breach, which affected not only the private sector, but federal, state and local governments, has caused some to question whether to share data with the government. On Friday, December 18, the...more

Bracewell LLP

Regulating Broker-Dealers at a (Social) Distance: FINRA Provides COVID-19 Business Continuity Planning Guidance and Regulatory...

Bracewell LLP on

In just a short period of time, the COVID-19 pandemic has triggered a revolution in how we live our lives and do our jobs. These changes have extended to the regulation of the financial industry. While FINRA emphasizes that...more

Robinson+Cole Data Privacy + Security Insider

Yearly Data Breach Reporting Due to OCR by February 29

Every year, we remind our readers that the HIPAA data breach notification regulations require covered entities to notify the Office for Civil Rights (OCR) of any reportable data breaches that involved fewer than 500...more

Pillsbury Winthrop Shaw Pittman LLP

New Proposed DoD Cyber Guidance May Fuel Bid Protest Docket

Newly published draft DoD Guidance for Reviewing System Security Plans (SSP) and the “NIST SP 800-171 Security Requirements Not Yet Implemented” answer some questions but may also result in an increased protest docket due to...more

18 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide