Latest Posts › Data Protection

Share:

Insurance Companies Face $11.3 Million in Fines Due to Cybersecurity Failures

In yet another example of the importance of a robust cybersecurity and data protection system, New York Attorney General (OAG) and the New York State Department of Financial Services (DFS) collectively fined the insurance...more

FTC Fines Hotel Company $52 Million for Delinquent Cybersecurity Practices

In a settlement with Marriott International and its subsidiary Starwood hotels and Resorts Worldwide, the FTC will require Marriott to implement a new comprehensive data security program. The settlement stems from a series of...more

Tackling Cyber Risks in the Manufacturing Industry

As the manufacturing industry increasingly relies on advanced technology such as the industrial internet of things, automation and big data, manufacturers are particularly susceptible to cyberattacks. Manufacturing operations...more

Reflecting on the Impact of the SHIELD Act

In March 2020, the Cybersecurity Mandate within New York’s Stop Hacks and Improve Electronic Data Security Act (SHIELD Act) went into effect. In its entirety, the SHIELD Act expanded breach notification obligations for...more

FTC Seeks Expansion of Children’s Privacy Protection Law

On Dec. 20, 2023, the Federal Trade Commission (FTC) published a Notice of Proposed Rulemaking (NPRM) to the Children’s Online Privacy Protection Act (COPPA). COPPA was enacted in 1998 and went into effect in 2000. Under...more

Ransomware Attack on Ardent Health Services Causes Disruption at Hospitals

On Nov. 27, 2023, Nashville-based healthcare corporation Ardent Health Services (Ardent) announced that a ransomware attack impacted 30 of its hospitals and forced the shutdown of several emergency rooms in at least three...more

Cybersecurity Awareness Month – FTC Holds Corporate Executive Personally Liable for Cybersecurity Failures

On Jan. 10, 2023, the Federal Trade Commission (FTC) finalized its order against online alcohol marketplace, Drizly, and its CEO, James Cory Rellas for failing to implement security safeguards that led to a data breach in...more

Delaware Joins Consumer Protection Bandwagon

On Sept. 11, 2023, Delaware became the next state to enact a comprehensive consumer data privacy law as Gov. John Carney signed the Delaware Personal Data Privacy Act (DPDPA) which will go into effect on Jan. 1, 2025. The...more

Data Transfers Permitted Across the Pond via New EU-U.S. Data Privacy Framework

On July 10, 2023, the European Commission adopted its adequacy decision on data transfers for the EU-U.S. (European Union/United States) Data Privacy Framework (DPF). The adequacy decision concluded that the United States...more

Nevada Enacts Expansive New Consumer Health Privacy Act

On June 5, 2023, the Nevada Legislature passed an amended version of Senate Bill 370 (SB 370 or the Act), which imposes new requirements on the collection, use and sale of consumer health data. The bill was signed on June 22,...more

Fined $520 Million by the FTC for Privacy Violations

On Dec. 19, 2022, Epic Games, the developer of popular video game Fortnite, agreed to pay more than $520 million to settle Federal Trade Commission (FTC) claims that alleged a violation of the Children’s Online Privacy...more

The New Year Brings New Data Privacy Obligations

On Jan. 1, 2023, both the California Privacy Rights Act (CPRA) and Virginia Consumer Data Privacy Act (VCDPA) come into effect, introducing new and updated data privacy and security obligations to covered entities. As these...more

Ignoring NY SHIELD Act’s Cybersecurity Mandate Proves Costly

New York’s Cybersecurity mandate under the New York SHIELD Act became effective on March 22, 2020. This unfortunate timing, considering its alignment with the beginning of COVID-19 shutdowns, created an almost unspoken...more

Cybersecurity Awareness Month – Fast-Fashion Under the Spotlight: SHEIN and ROMWE Owner Fined $1.9M for Significant Data Breach...

Zoetop, the parent company behind online fashion retailers SHEIN and ROMWE, has been fined $1.9 million by New York State after it failed to properly inform customers of a data breach that affected millions of users. A...more

Cybersecurity Awareness Month – An Eye towards enforcement under NY SHIELD

New York's SHIELD Act, which became effective on March 21, 2020, requires persons and organizations that own or license electronic data that includes New York resident’s private information to maintain reasonable...more

Cybersecurity and Data Privacy Developments

The cybersecurity and data privacy legal landscape continues its rapid evolution. Below is an outline of some of the most significant developments in the last quarter. Federal Legislation: In June, a bipartisan...more

Mitigating Risk & Impact of Ransomware Attacks in Healthcare Sector

How do you get ahead of a ransomware attack in the healthcare delivery environment? By acting, now. A quick way to organize? Look at the 405(d) group’s work, including its recently released ransomware infographic....more

The Great Wall of Data Privacy: China Passes Comprehensive Data Privacy Law

On Aug. 20, 2021, the Standing Committee of China’s National’s People’s Congress, the top legislative body of the People’s Republic of China, adopted a national privacy law. The extensive law, named the Personal Information...more

EDPB Issues Guidance on Data Transfers After CJEU’s Decision Invalidating the EU-U.S. Privacy Shield

The decision of the Court of Justice of the European Union (CJEU), in Schrems II, invalidating the EU-U.S. Privacy Shield has engendered significant uncertainty regarding data transfers from the EU to the United States. In...more

High Court in the EU Strikes Down Privacy Shield

After years of United States organizations—large and small—investing in and relying on the EU-U.S. Privacy Shield as the foundation for permissible data transfer between the EU and the U.S., with the stroke of a pen, or...more

Let the Litigation Begin! California Residents Already Filing Enforcement Actions Under the CCPA

The ink is still wet, and the dust has hardly settled after the California Consumer Privacy Act (CCPA) went into effect on January 1, 2020. Yet starting in February, two class actions were filed by California residents...more

NY SHIELD Act – Are Your Policies in Place?

Taking effect March 21, 2020, the New York Stop Hacks and Improve Electronic Date Security Act (SHIELD Act), imposes several potentially onerous compliance requirements on businesses operating in (and even some outside of)...more

2019 Amendments to the California Consumer Privacy Act Clarify Several Important Data Privacy Issues

On the last day of its 2019 session, the California legislature passed six bills that amend and clarify key provisions of the California Consumer Privacy Act (the “CCPA”), the state’s landmark 2018 data privacy law. The CCPA,...more

NY SHIELD Act - Are You Ready To Comply?

As you likely already know, on July 25, 2019, Governor Cuomo signed into law the New York Stop Hacks and Improve Electronic Data Security Act (“SHIELD” or “the Act”). Imbedded in the dense text of the Act are upcoming...more

24 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide