News & Analysis as of

Regulatory Requirements Personally Identifiable Information

Health Care Compliance Association (HCCA)

Privacy Briefs: November 2024

Change Healthcare Inc. has amended its initial breach report to the HHS Office for Civil Rights (OCR) to state that 100 million individuals were impacted by its mammoth ransomware attack and breach. However, as of Oct. 24,...more

Ankura

Ensuring Compliance With Data Privacy Regulations: The Role of e-discovery Services in the Indian Landscape

Ankura on

In today's digital era, the volume of electronic data generated by organizations is staggering. For law firms conducting due diligence, managing this data while ensuring compliance with stringent data privacy regulations is a...more

Nelson Mullins Riley & Scarborough LLP

[Webinar] Keeping Up With and Staying Ahead of FCC Actions on Data Privacy and Security - October 22nd, 12:00 pm - 1:00 pm EDT

Carriers have an obligation to protect customer proprietary network information (CPNI) and personally identifiable information (PI). Several recent FCC consent decrees resolving breaches of CPNI and PI show the FCC will hold...more

Holland & Knight LLP

FinCEN Reference Guide Clarifies Beneficial Ownership Reporting Requirements

Holland & Knight LLP on

The U.S. Department of the Treasury's Financial Crimes Enforcement Network (FinCEN) on July 26, 2024, issued a notice containing a reference guide for customers of financial institutions (the Reference Guide). The Reference...more

Alston & Bird

Pennsylvania Amends Data Breach Notification Law

Alston & Bird on

Pennsylvania’s Governor recently approved amendments to the Commonwealth’s data breach notification law, which represent a significant overhaul to the law. As detailed below, the amended law makes a number of material...more

Polsinelli

The Corporate Transparency Act and Agribusiness and Ag Tech Companies

Polsinelli on

From family farms and businesses to established agribusinesses to emerging ag tech companies, a new federal law requires business entities to disclose their owners’ and control persons’ personal information, and for many...more

Foley Hoag LLP - Security, Privacy and the...

SEC Revamps and Enhances Data Protections with Amendments to Regulation S-P

The Securities and Exchange Commission (“SEC”) has announced the adoption of amendments to Regulation S-P (“Amendments”) to modernize and enhance the rules that govern the treatment of consumers’ nonpublic personal...more

Guidepost Solutions LLC

FTC Proposes Strengthening Children’s Privacy Rule

On January 11, 2024, the Federal Trade Commission (FTC) published a Notice of Proposed Rulemaking that would fortify the Children’s Online Privacy Protection Act (COPPA). This move underscores a significant shift in the...more

Benesch

United States Looks Towards its First Cross-Border Data Transfer Regime with New Executive Order

Benesch on

President Biden issued an Executive Order last month calling on the DOJ and relevant government agencies to tighten regulations on bulk data transfers to “countries of concern.” In late February, President Biden issued...more

Mayer Brown

President Biden Issues Executive Order Empowering DOJ to Regulate the Export of Sensitive Personal Data

Mayer Brown on

On February 28, 2024, President Joe Biden issued Executive Order (“EO”) 14117, empowering the Department of Justice (DOJ) to regulate the export of certain consumer data, in order to prevent certain countries’ governments...more

Troutman Pepper

That’s a Wrap…or Not? Regulatory Data Incident Investigation Resolutions and the Path Forward

Troutman Pepper on

As we discussed in part three of this series, “Navigating the Complexities of Regulatory Data Incident Investigations,” when an organization is the subject of regulatory data incident investigations, it must navigate a...more

Troutman Pepper

New California Law Imposes Significant Data Management Requirements for Sensitive Health Data

Troutman Pepper on

On January 1, California's Assembly Bill No. 352 (AB 352) went into effect, introducing significant changes to the handling and sharing of sensitive health information — particularly information related to reproductive health...more

Pillsbury - Propel

Privacy Breach: The Silent Killer of Startups

Pillsbury - Propel on

A privacy breach can have detrimental consequences for startups:  A privacy breach may trigger legal consequences and regulatory scrutiny, especially for a startup that operates in areas with stringent data protection laws...more

Seyfarth Shaw LLP

Corporate Transparency Act Update – 2023 Year-End Planning

Seyfarth Shaw LLP on

November 29, 2023 Update: In the ever-evolving world of the Corporate Transparency Act (the CTA), there was good news from the Treasury Department today. Reporting Companies formed on or after January 1, 2024, will have...more

Polsinelli

The Corporate Transparency Act: What Fractional Executives Need to Know

Polsinelli on

A new federal law requires businesses to disclose personal information and photographs of their owners and control persons, including retained fractional executives. Why this matters for you. From Wall Street to Main...more

Tonkon Torp LLP

What You Need to Know about the FTC Safeguards Rule

Tonkon Torp LLP on

The compliance deadline for implementation of certain requirements of the Federal Trade Commission’s (FTC) Standards for Safeguarding Customer Information, better known as the “Safeguards Rule,” is June 9, 2023. Here is what...more

Osano

What is the California Age-Appropriate Design Code Act (CAADCA)?

Osano on

On September 25th, 2022, California passed a new law—the California Age-Appropriate Design Code Act (CAADCA). It goes into effect on July 1st, 2024, but compliance may feel challenging for many....more

Wyrick Robbins Yates & Ponton LLP

Working 9 to 5: What a Way to Rack Up BIPA Violations

February brought big changes to the Illinois Biometric Information Privacy Act (“BIPA”) litigation landscape. On the heels of a catastrophic 228 million dollar jury verdict against BNSF, the Illinois Supreme Court issued an...more

Wyrick Robbins Yates & Ponton LLP

Minor Keys: Major Takeaways from New California Online Children’s Privacy Law

The California Age-Appropriate Design Code Act (the “Act”) recently became law and includes a number of online privacy-related requirements related to individuals under the age of 18. The statute is similar to, and expressly...more

Polsinelli

Jury Returns First-of-its-Kind Verdict Against Company in Biometric Class Action

Polsinelli on

The first jury verdict to address violations under Illinois’ Biometric Information Privacy Act (BIPA) resulted in a $2.28 million judgment against BNSF Railway. The case involved a class of more than 40,000 truck drivers who...more

Robinson+Cole Data Privacy + Security Insider

Indiana Amends Breach Notification Law to Require Notification Within 45 Days

Indiana has amended its breach notification law to require entities to notify individuals “without unreasonable delay, but not more than forty-five (45) days after the discovery of the breach.” It clarifies that a delay is...more

Robinson+Cole Data Privacy + Security Insider

Texas AG Sues Meta, Alleging Massive Collection of Face Geometries Without Consent

Texas enacted a biometric information privacy law way back in 2001, which was amended in 2009. That was a long time ago in the context of the development of privacy laws, and even longer when it comes to biometric information...more

Robinson+Cole Data Privacy + Security Insider

Reporting of Breaches Under 500 Due by March 1

HIPAA requires covered entities and business associates to report to the Office for Civil Rights (OCR) all breaches of unsecured protected health information when the incident involves fewer than 500 individuals no later than...more

Dechert LLP

Dechert Cyber Bits - Issue 4

Dechert LLP on

EDPB Issues Draft Guidance on International Data Transfers - On November 18, 2021, the European Data Protection Board (“EDPB”) published draft guidance on the interaction between the GDPR’s transfer provisions set out in...more

Polsinelli

Federal Banking Regulators Issue Rule Requiring 36 Hour Notice of Ransomware and Other Disruptive Cybersecurity Incidents

Polsinelli on

On November 18, 2021, the Federal Deposit Insurance Corporation, the Board of Governors of the Federal Reserve System, and the Office of the Comptroller of the Currency issued a joint final rule to require banking...more

83 Results
 / 
View per page
Page: of 4

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide