News & Analysis as of

Financial Services Industry Data Security Data Privacy

DLA Piper

A Revamped CFPB Rulemaking on Personal Financial Data Rights

DLA Piper on

The Consumer Financial Protection Bureau (CFPB) published an Advance Notice of Public Rulemaking on August 22, 2025, reopening the rulemaking process for Section 1033 of the Dodd-Frank Act, which deals with how consumers can...more

Katten Muchin Rosenman LLP

The CFPB is Reconsidering Personal Financial Data Rights Rule Under the Dodd-Frank Act

On August 22, 2025, the Consumer Financial Protection Bureau (CFPB) issued an advance notice of proposed rulemaking seeking public comment on potential revisions to its Personal Financial Data Rights Rule (the Rule) under...more

Fisher Phillips

GLBA Set for Overhaul? 10 Questions That May Decide the Next Generation of Financial Privacy Law

Fisher Phillips on

Congress is asking the financial industry – and anyone else with a stake in consumer data – to weigh in on the future of the Gramm-Leach-Bliley Act (GLBA). On July 31, the US House Financial Services Committee leaders issued...more

Ankura

Financial Services: Data Management Strategies for AI Readiness

Ankura on

58 In the complex and highly regulated financial services environment, the cost of poor data management is staggering, estimated to cost businesses billions annually in operational inefficiencies, regulatory fines, and missed...more

Jackson Lewis P.C.

HB1127 Explained: North Dakota’s New InfoSec Requirements for Financial Corporations

Jackson Lewis P.C. on

Earlier this year, North Dakota’s Governor signed HB 1127, which introduces new compliance obligations for financial corporations operating in North Dakota. This new law will take effect on August 1, 2025....more

Foley Hoag LLP - Security, Privacy and the...

DOJ’s “Bulk Sensitive Data Rule” is in Effect, and May Require Significant Compliance Obligations as Enforcement is Set to Begin

Pursuant to a newly effective U.S. Department of Justice (DOJ) regulation, the transfer and storage of certain sensitive U.S. government and personal data may be prohibited or restricted, depending on the intended recipient,...more

Wiley Rein LLP

Wiley Consumer Protection Download (June 3, 2025)

Wiley Rein LLP on

Wiley also has launched a Trump Administration Resource Center and Resource Guide to track Executive branch priorities during the second Administration of President Trump. With Wiley’s deep-rooted understanding of Washington...more

Orrick, Herrington & Sutcliffe LLP

Nevada enacts new customer information safeguarding standards for financial services companies

On May 26, the governor of Nevada enacted SB 44 to impose new duties on financial services providers in Nevada, aligning state requirements for safeguarding customer information with FTC standards in its safeguards rule (16...more

IR Global

Recursive Artificial Intelligence: Can the Law Keep Up?

IR Global on

While Artificial Intelligence (AI) has emerged as groundbreaking and significantly impacting various sectors and enhancing quality of life, the chasm between technological advancements and the law is growing by the...more

Benesch

AI Reporter - May 2025

Benesch on

The use of AI in banking was a topic in April, as Bank of America revealed it will spend $4 billion on AI initiatives in the coming year. The bank cited AI’s usefulness in reducing IT support calls and the over 90% usage...more

Troutman Pepper Locke

Looking Back at 2024's Noteworthy State AG Litigation

Troutman Pepper Locke on

State attorneys general across the U.S. took bold steps in 2024 to address unlawful activities by corporations in several areas, including privacy and data security, financial transparency, children’s internet safety, and...more

Pierce Atwood LLP

2024 Trends in First Circuit Class Actions

Pierce Atwood LLP on

We are pleased to present our final 2024 update to the New England and First Circuit Class Action Tracker, which focuses on class action filings in state and federal courts within the boundaries of the First Circuit in New...more

Orrick, Herrington & Sutcliffe LLP

RegFi Episode 55: Implementing the 1033 Rule: SSOs, APIs and Data Security

Jane Barratt, Financial Data Exchange (FDX) co-board chair, joins RegFi co-hosts Jerry Buckley and Sasha Leonhardt to share the role FDX will play as the first standard setting organization (SSO) approved by the CFPB pursuant...more

Davis Wright Tremaine LLP

PCI SSC Clarifies Obligations for Ecommerce Merchants That Outsource Payment Card Processing

The Payment Card Industry Security Standards Council (PCI SSC) has issued an FAQ for ecommerce merchants that outsource their payment card processing to a vendor using an embedded payment page or form (such as an "iframe")....more

Katten Muchin Rosenman LLP

NYDFS Annual Compliance Submissions Due April 15, 2025 and New Compliance Requirements Effective on May 1, 2025

As we previously reported, in 2023 the New York State Department of Financial Services (NYDFS) amended its cybersecurity regulation, 23 NYCRR 500 (or Part 500). As of November 1, 2024, Class A Companies and Covered Entities...more

McGlinchey Stafford

The Next Wave of Open Banking: New Rules on Personal Financial Data Rights

McGlinchey Stafford on

A rapid transformation in consumer finance is being brought about by open banking—a pivotal innovation that allows consumers to give third parties real-time access to their detailed financial data. Open banking has the...more

Husch Blackwell LLP

New York Amends its Data Breach Notification Law

Husch Blackwell LLP on

Keypoint: New York has amended its data breach notification law twice in the last 60 days to (1) add a 30-day deadline for notifying affected residents, (2) clarify that covered financial entities must still notify the New...more

Hogan Lovells

European Supervisory Authorities published a roadmap to designate critical ICT third-party service providers under the Digital...

Hogan Lovells on

The European Supervisory Authorities (“ESAs”) published a roadmap to designate critical ICT third-party service providers (“CTPPs”) under the Digital Operational Resilience Act (“DORA”). To designate an ICT third-party...more

Orrick, Herrington & Sutcliffe LLP

CFPB’s union raises concerns over security and alleged misuse of sensitive information

On February 7, the union representing CFPB employees published a notice expressing concerns regarding the recent addition of certain DOGE employees to the CFPB’s email directory and their presence in offices. ...more

Morrison & Foerster LLP

Congressional Investigations Outlook: What to Expect from the 119th Congress

The 119th Congress is underway, and Republicans control both chambers. With President Trump in the White House, both the House and the Senate will focus more of their oversight on the private sector. Continuing a trend over...more

Troutman Pepper Locke

CFPB Updates List of Consumer Reporting Companies for 2025

Troutman Pepper Locke on

On January 30, the Consumer Financial Protection Bureau (CFPB or Bureau) released its updated list of consumer reporting companies for 2025. The list includes nationwide consumer reporting companies as well as several other...more

Morgan Lewis - Tech & Sourcing

DORA European Commission Clarifies Scope of ICT Services

European regulators recently published clarifications on the scope of ICT services under the EU Digital Operational Resilience Act (DORA), prepared by the European Commission, which confirms previous guidance and enables...more

Hogan Lovells

European Commission confirms that financial services are not ICT services for DORA purposes

Hogan Lovells on

Firms involved in implementing changes to comply with new rules under the EU Digital Operational Resilience Act (DORA) have questioned whether financial services provided by other regulated firms may fall within the...more

Orrick, Herrington & Sutcliffe LLP

CFPB requests information on data protection

On January 15, the CFPB published to the Federal Register a Request for Information (RFI) on the collection, use, sharing and protection of consumer payment and personal financial data by companies offering financial products...more

Blake, Cassels & Graydon LLP

Digital Policy Issues Face Uncertain Future After Prorogation of Parliament

On January 6, 2025, the federal parliamentary session ended when the Governor General of Canada accepted Prime Minister Justin Trudeau’s request to prorogue Parliament until March 24, 2025....more

96 Results
 / 
View per page
Page: of 4

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide