News & Analysis as of

Regulatory Requirements Data Security Data Protection

Purpose Legal

Best Practices for Confidentiality in the Age of AI-Powered Legal Tools

Purpose Legal on

Artificial Intelligence is no longer an experiment in the legal industry—it’s here, and it’s changing how we serve clients every day. At the same time, it challenges us to safeguard a cornerstone of our profession:...more

Ward and Smith, P.A.

Data Security and National Security: Are You the Weak Link?

Ward and Smith, P.A. on

International cybercrime is not new.  As a business owner in today's interconnected economy, you know all about the need to protect your technology, financial accounts, business operations, and customer data from digital...more

Lighthouse

M365 Academy: The Power of Sensitivity Labels in Microsoft 365

Lighthouse on

Read takeaways from our recent M365 Academy webinar on sensitivity labels, which covered how labels support governance across M365, from taxonomy design and classification to Copilot oversight, DLP, Insider Risk, and...more

Skadden, Arps, Slate, Meagher & Flom LLP

Do’s and Don’ts of Using AI: A Director’s Guide - Summer 2025

At the same time that AI chatbots and tools have begun reshaping how businesses operate — including how they strategize, optimize workflows, perform R&D and distill large amounts of information — individuals, including...more

Morgan Lewis

China’s New Standard on Sensitive Personal Information Goes Into Effect November 1

Morgan Lewis on

In a move to further bolster data privacy, China’s State Administration for Market Regulation and the Standardization Administration of China jointly issued a national standard, GB/T 45574-2025, Data Security Technology –...more

Ice Miller

[Webinar] Cybersecurity Collaboration: Informing and Empowering the Defense Industrial Base - September 10th, 12:00 pm - 1:00 pm...

Ice Miller on

Join us for a timely and topical webinar hosted by Ice Miller, LLP, discussing cybersecurity collaboration and information sharing in the defense industrial base. The webinar also will feature a robust discussion of best...more

King & Spalding

Data Sharing in a Connected World: Does the EU Data Act Call for New Business Models?

King & Spalding on

The EU Data Act (the Act), entered into force on January 11, 2024 but most of its provisions will apply from September 12, 2025. For any organization that designs, manufactures, or uses connected products, provides related...more

Troutman Pepper Locke

3 Takeaways From Recent Cyberattacks On Healthcare Cos.

Troutman Pepper Locke on

Significant data breaches have affected major players in the healthcare industry in the last year, with the methods of attack being as diverse as the affected entities themselves. Originally published in Law360 - June 4,...more

DLA Piper

Thailand: PDPA Crackdown 2025: Are You Next? – Major Fines and Lessons from Thailand’s Latest Enforcement

DLA Piper on

Since the full enforcement of Thailand’s Personal Data Protection Act B.E. 2562 (2019) (“PDPA”) in June 2022, the Personal Data Protection Committee (“PDPC”) has moved decisively from awareness-building to active enforcement....more

Hudson Cook, LLP

Massachusetts Data Breach Settlement: A Wake-Up Call for Rental Housing Operators

Hudson Cook, LLP on

On August 19, 2025, the Massachusetts Attorney General announced a $795,000 settlement with Peabody Properties, Inc., a Braintree, Massachusetts-based property management company, over serious failures in its handling of...more

DLA Piper

Germany: Further Judgment on Non-Material Damages for Loss of Control over Personal Data

DLA Piper on

In its judgment of May 13, 2025 (case number VI ZR 186/22), the German Federal Court of Justice (Bundesgerichtshof – “BGH”) continued its case law on the compensability of non-material damages under Article 82 GDPR, in...more

Sheppard Mullin Richter & Hampton LLP

More Privacy Compliance Considerations for the 2026 Budget Process

Now is the time that many are putting together their 2026 budgets and considering how much to allocate next year to address the constantly evolving privacy and data security landscape. In the last article in this series we...more

Baker Donelson

Ten Key Insights from IBM's Cost of a Data Breach Report 2025

Baker Donelson on

IBM and the Ponemon Institute have released the 2025 Cost of a Data Breach Report. The report, which has become an annual late-summer tradition, highlights the evolving risks and costs associated with data breaches. This...more

Ankura

Navigating the DOJ's Final Rule on Bulk Sensitive Data Transactions: Data Security Program Insights and Compliance

Ankura on

On Feb. 28, 2024, President Biden issued Executive Order 14117, titled “Preventing Access to Americans' Bulk Sensitive Personal Data and United States Government-Related Data by Countries of Concern.” This executive order...more

Benesch

Businesses Must Be Ready for Additional October Compliance Obligations under the DOJ’s Bulk Data Transfer Rule when Interacting...

Benesch on

On April 8, 2025, the Bulk Data Transfer Rule went into effect. It became enforceable on July 8, 2025; however, many of the technical enforcement obligations under the Bulk Data Transfer Rule become enforceable on October 6,...more

Osano

The Privacy Insider Podcast Episode 17: Security, Cyber-Intel, and a Sense of Humor with Nir Rothenberg of Rapyd

Osano on

Nir Rothenberg, Chief Information Security Officer of Rapyd, joins us to discuss why building resilient privacy and security frameworks is critical now as fintech companies face heightened scrutiny. With Rapyd expanding...more

Baker Botts L.L.P.

Canada's Officer of the Privacy Commissioner Issues Guidance on Biometric Data Processing

Baker Botts L.L.P. on

On August 11, 2025, the Office of the Privacy Commissioner of Canada ("OPC") issued two sets of guidance for processing of individual's biometric data: one for federal institutions and one for private businesses. Below we...more

Morris, Manning & Martin, LLP

Do you know what your AI is doing?

Imagine signing off on an update to your customer support portal and later discovering that an AI agent the development team added to the portal has been quietly sending snippets of support tickets to an unsecured LLM for...more

White & Case LLP

Cyber-attacks – What Does the Law Require?

White & Case LLP on

As major cyber-attacks continue to cause widespread organisational and economic disruption, and botnets are being discovered which have the capability of comprising entire organisations, many businesses are re-evaluating...more

Parker Poe Adams & Bernstein LLP

Federal Trade Commission Finalizes Order With Web Hosting Company Over Data Security Failures

On May 21, 2025, the Federal Trade Commission (FTC) finalized a consent order with GoDaddy to settle allegations that the web hosting company misled customers and failed to implement basic data security protections. Although...more

Dacheng

China Monthly Data Protection Update: August 2025

Dacheng on

This monthly report outlines key developments in China’s data protection sector for August. The following events merit special attention: CAC Summons NVIDIA Over Cybersecurity Concerns Related to H20 Chip: On July 31, CAC...more

Butler Snow LLP

What Tennessee’s New Privacy Law Means for Your Business

Butler Snow LLP on

On July 1, 2025, Tennessee officially joined the growing list of states enacting consumer privacy laws with the Tennessee Information Protection Act (TIPA). Inspired by the California Consumer Privacy Act, TIPA introduces a...more

Orrick, Herrington & Sutcliffe LLP

AI Use: What Should We Keep in Mind When Using AI Tools?

This update is part of our AI FAQ Series. Learn more at our AI Law Center. What questions should I ask before using an AI tool? There are a number of questions that should be considered before using an AI tool, including: (1)...more

Warner Norcross + Judd

Avoid the October Surprise: What You Need to Know About DOJ’s New Data Security Program

Warner Norcross + Judd on

The Department of Justice’s (“DOJ”) Data Security Program (“the Program”, 28 C.F.R. Part 202) went into effect on April 8 with a 90-day period of limited enforcement. With DOJ now expecting full compliance, with additional...more

Hogan Lovells

Thailand ramps up data protection enforcement

Hogan Lovells on

Thailand's Personal Data Protection Committee (“PDPC”) has significantly intensified its enforcement of Thailand's Personal Data Protection Act B.E. 2562 (2019) (“PDPA”), announcing on 1 August 2025 eight new administrative...more

212 Results
 / 
View per page
Page: of 9

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide