Latest Posts › Popular

Share:

Patch Your Systems! Log4j Vulnerability Sparks a Warning From the FTC

Since first announced in December 2021, the critical Log4j vulnerability has stolen the attention of many cybersecurity professionals. The Federal Trade Commission (FTC) has taken notice too....more

DoD's Revamped "CMMC 2.0" for Defense Contractors

The Department of Defense (DoD) has announced major changes to its Cybersecurity Maturity Model Certification (CMMC) program for defense industrial base (DIB) contractors and subcontractors. The revamped program, called "CMMC...more

Commerce Publishes Export Controls for Cybersecurity Intrusion and Surveillance Tools

On October 21, 2021, the Department of Commerce's Bureau of Industry and Security (BIS) published its long-awaited Interim Final Rule establishing export controls for tools and related technology that can be used for hacking...more

"Whole of Government" Anti-Ransomware Campaign on Full Display

November 8, 2021, may have been the most significant single day in the United States' "whole of government" anti-ransomware campaign. The Department of Justice, Department of the Treasury, and Department of State all...more

Warning of "Very Hefty Fines," DOJ Launches Civil Cyber-Fraud Initiative to Pursue Violations of Cybersecurity Requirements in...

The Department of Justice (DOJ) is bringing one of its trustiest tools to the project of improving the nation's cybersecurity. The DOJ announced last week the launch of its Civil Cyber-Fraud Initiative which will use the...more

Federal Technology Providers Take Note: White House Announces Federal "Zero Trust" Strategy for Cybersecurity

Earlier this week, the White House announced that the Office of Management and Budget (OMB) has released a draft of the Federal Zero Trust Strategy—a plan for moving federal civilian executive branch (FCEB) agencies toward...more

Recent SEC Enforcement Activity Highlights Issuers' Cybersecurity Disclosure Obligations and Pitfalls

The U.S. Securities and Exchange Commission (SEC) has continued to make cybersecurity disclosures an enforcement priority. Recent enforcement activity, summarized below, highlights these key points for SEC-regulated issuers....more

TSA Issues Second Security Directive for "Critical" Pipelines and LNG Facilities and Plans to Revise Pipeline Cybersecurity...

The Department of Homeland Security (DHS) announced the issuance of the Transportation Security Administration's (TSA) second Security Directive (Directive) creating mandatory cybersecurity rules for owners and operators of...more

Multiple States Toughen Data Breach and Cybersecurity Requirements

It has been a busy summer for data breach and cybersecurity laws. Several states have shortened their data breach notification timelines, expanded their definitions of personal data breaches triggering notification...more

Biden Administration's National Security Memorandum Focuses on Bolstering Cyber Defenses for Critical Infrastructure,...

Following several high-profile cyberattacks against operators of U.S. critical infrastructure (CI), the White House has issued a National Security Memorandum (NSM) outlining the Biden Administration's plan to encourage...more

Department of Labor Announces Cybersecurity Guidance for ERISA Retirement Plans

The Employee Benefits Security Administration (EBSA) of the U.S. Department of Labor (DOL) recently announced its first cybersecurity guidance for retirement plans subject to the Employee Retirement Income Security Act of...more

36 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide