Latest Publications

Share:

Upcoming California Privacy Rights Act: Key Compliance Tasks for California Employers

California employers' reprieve from obligations to employees to disclose data privacy practices and provide access rights to employees appears to be coming to an end as the California Privacy Rights Act (CPRA) becomes...more

California Attorney General Bark Turns to Bite as First CCPA Settlement Includes Monetary Penalty

In a long anticipated development, on August 24 California Attorney General Rob Bonta ("Cal AG") announced the state's first monetary penalty under the California Consumer Privacy Act ("CCPA"), in a settlement with the beauty...more

New York State Department of Financial Services Imposes $30 Million Fine in First Cryptocurrency Enforcement Action

On August 2, in its first ever cryptocurrency enforcement action, the New York State Department of Financial Services ("NYDFS") announced it had imposed a $30 million fine on Robinhood Crypto, LLC ("RHC") for failures in its...more

Connecticut Lends Its Hand to U.S. Data Privacy Framework

This week, on Tuesday May 10, 2022, Connecticut Gov. Ned Lamont approved Connecticut Senate Bill 6, an Act Concerning Personal Data Privacy and Online Monitoring (the "Connecticut Privacy Act"). Governor Lamont’s approval...more

The Utah Consumer Privacy Act: Utah Becomes Fourth US State with Comprehensive Privacy Law

Continuing efforts at the state level to establish a data privacy framework in the US, a fourth state has passed a comprehensive consumer privacy law. Utah has joined the ranks of Colorado, California and Virginia after...more

SEC Proposes Mandatory Cybersecurity Disclosure Rules

On March 9, 2022, the Securities and Exchange Commission ("SEC") proposed rules that would require public companies to make prescribed cybersecurity disclosures. The proposed rules would "strengthen investors' ability to...more

Good security practices for data and networks are essential to M&A success

With data privacy laws tightening and cyberattacks on the rise, due diligence of technology networks and data processes should be a top priority for dealmakers - May 2021 saw one of the most high-profile cyberattacks in US...more

Taking Your First Steps: Key Compliance Tasks to Kick-start Compliance with California and Virginia Data Privacy Laws

As state and federal legislatures across the United States continue to contemplate comprehensive data protection legislation, two pending laws—the California Privacy Rights Act (CPRA) and the Virginia Consumer Data Protection...more

Time to Revisit Risk Factors in Periodic Reports

Ninth Circuit Decision Highlights Importance of Updating Risk Factors to Address Material Developments, including those relating to Cybersecurity Risks. As companies prepare their periodic reports with the SEC, a recent...more

Colorado Privacy Act: US Consumer Data Privacy Framework Continues Expansion

Colorado has joined California and Virginia in enacting comprehensive data privacy legislation after Governor Jared Polis signed the Colorado Privacy Act into effect yesterday. The enactment of the Colorado Privacy Act...more

Cybersecurity Enforcement: New York Department of Financial Services issues first penalty under Cybersecurity Regulation

Consistent with its increasing activity in the cybersecurity enforcement space, in March 2021, the NYDFS issued its first penalty under the Cybersecurity Regulation. This client alert explores the settlement and offers...more

Virginia joins California in regulating consumer information: Virginia enacts the Consumer Data Protection Act

On March 2, 2021, Governor Ralph Northam of Virginia signed the Consumer Data Protection Act ("CDPA") into law, after it passed both houses of the legislature with overwhelming support.  This new legislation is set to take...more

Before the Dust Settles: The California Privacy Rights Act Ballot Initiative Modifies and Expands California Privacy Law

Hot on the heels of the California Attorney General's rulemaking process for the California Consumer Privacy Act ("CCPA"), California voters have passed a ballot initiative to expand and create new privacy rights for...more

US Government Warns Healthcare Sector of Targeted Ransomware: Outlines Best Practices and Provides Technical Details of Attack

On October 28, 2020, a coalition of US government entities consisting of the Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), and the Department of Health and Human Services...more

Building a Robust Biometric Compliance Program in the US: A Five-Step Checklist

As companies across industries continue to take advantage of existing and emerging technologies that involve the collection and use of human biometric identifiers, corporate privacy programs must take into account the unique...more

US Treasury Advises on Potential Sanctions Risks Raised by Ransomware Attacks

On October 1, 2020, the US Department of the Treasury's Office of Foreign Assets Control ("OFAC") issued an advisory opinion on the sanctions risks associated with certain cyberattacks ("OFAC Guidance"). The OFAC Guidance...more

US Cybersecurity Standards to Get Tougher and More Specific: FTC and NYDFS Lead the Way

In the past few years, cybersecurity has taken on increasing importance in the eyes of lawmakers and regulators. Traditionally, cybersecurity compliance that is tied to the protection of personal information generally has...more

The California Consumer Privacy Act Regulations Are Finally Here, But Wait There’s More…

On August 14, 2020, California’s Office of Administrative Law (“OAL”) approved the final version of the implementing regulations for the California Consumer Privacy Act (“Final Regulations”). The approval of these final...more

Ensuring an Effective Cybersecurity Program: Best Practices from the SEC and OCIE

The Securities and Exchange Commission (“SEC”) Office of Compliance Inspections and Examinations (“OCIE”) recently released a report summarizing best practices for securities market participants, including public companies,...more

UK Business Exposure To The California Consumer Privacy Act 2018 ("CCPA")

The CCPA took effect on 1 January 2020, introducing significant compliance burdens for most businesses that collect personal information about California residents. The reach of the CCPA extends beyond California and the US;...more

Navigating Privacy and Cyber Incident Notification and Disclosure Requirements

White & Case Technology Newsflash - Fulfilling a company's data breach and cybersecurity incident notification and disclosure requirements is an increasing challenge. Companies operating across industry sectors and around...more

CCPA 100-Day Compliance Checklist: It's Not Just About the Privacy Policy

White & Case Technology Newsflash With only 100 days left in 2019 as of the date of this publication, the California Consumer Privacy Act (CCPA) will be here before you know it. As we have described previously, the CCPA...more

New York Continues State’s Charge to Protect Consumers' Personal Information

New York recently amended its existing data breach notification law to expand the data breach notification obligations of persons and businesses (and state agencies) and impose specific data security requirements on persons...more

77 Results
 / 
View per page
Page: of 4

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide