On May 7, 2024, the White House Office of the National Cyber Director (ONCD) released several reports on the United States’ cybersecurity posture and strategic plan. These documents implement the 2023 National Cybersecurity...more
5/15/2024
/ Biden Administration ,
Critical Infrastructure Sectors ,
Cyber Incident Reporting ,
Cyber Incident Reporting for Critical Infrastructure Act of 2022 (CIRCIA) ,
Cyber Threats ,
Cybersecurity ,
Cybersecurity Information Sharing Act (CISA) ,
Legislative Agendas ,
New Legislation ,
Privacy Laws ,
Regulatory Agenda ,
Regulatory Requirements ,
Strategic Planning
On February 28, 2024, President Biden issued Executive Order 14117 on Preventing Access to Americans’ Bulk Sensitive Personal Data and United States Government-Related Data by Countries of Concern (the EO). The EO empowers...more
3/7/2024
/ Biden Administration ,
Cross-Border Transactions ,
Cybersecurity ,
Cybersecurity Information Sharing Act (CISA) ,
Data Brokers ,
Department of Homeland Security (DHS) ,
Department of Justice (DOJ) ,
Enforcement Actions ,
Executive Orders ,
National Security ,
Office of Foreign Assets Control (OFAC) ,
Privacy Laws ,
Regulatory Agenda ,
Regulatory Requirements ,
Sensitive Personal Information
On February 26, 2024, the National Institute of Standards and Technology (NIST), an agency within the U.S. Department of Commerce, released Version 2.0 of its Cybersecurity Framework (CSF), the first major update since its...more
In 2017, the New York Department of Financial Services (“NYDFS”) enacted a landmark regulation requiring financial services institutions such as banks and insurance companies in the state to meet substantial cybersecurity...more
11/8/2023
/ Banking Sector ,
Covered Entities ,
Cybersecurity ,
Cybersecurity Framework ,
Data Protection ,
Financial Institutions ,
Financial Regulatory Reform ,
Financial Services Industry ,
NYDFS ,
Regulatory Agenda ,
Regulatory Reform ,
Regulatory Requirements ,
Risk Management
Last week, the SEC proposed rule amendments to enhance and standardize disclosures regarding cybersecurity risk management, strategy, governance, and incident reporting by public companies. The proposed rules include an...more