News & Analysis as of

Risk Management Cybersecurity New Regulations

Fox Rothschild LLP

Beyond Visual Line of Sight . . . Getting Closer!!

Fox Rothschild LLP on

The Beyond Visual Line of Sight (BVLOS) for unmanned aircraft are finally here! After literally years of delay and numerous controversies, the FAA has posted a draft of its Notice of Proposed Rulemaking (NPRM). Weighing in...more

Polsinelli

What You Need to Know About California’s Finalized CCPA Amendments: Part Two

Polsinelli on

On July 24, 2025, the California Privacy Protection Agency (CPPA) approved final regulations (the Rule) under the California Consumer Privacy Act of 2018 (CCPA), introducing new obligations related to automated...more

Morgan Lewis

CPPA Board Finalizes New Rules on ADMT, Cybersecurity Audits, and Risk Assessments

Morgan Lewis on

The California Privacy Protection Agency (CPPA) board unanimously voted on July 24, 2025 to finalize a package of regulations related to automated decision-making technology (ADMT), cybersecurity audits, and risk assessments....more

Orrick, Herrington & Sutcliffe LLP

CPPA releases updated regulations proposed after comment period

On July 24, the CPPA released updated regulations under the California Consumer Privacy Act, (CCPA) establishing those changes made after the 45-day comment period affecting three main areas of concern: Automated...more

Eversheds Sutherland (US) LLP

The CCPA’s automated decisionmaking tool rules: New consumer rights and compliance challenges

On July 24, 2025, the California Privacy Protection Agency (CPPA) unanimously adopted a comprehensive rulemaking package under the California Consumer Privacy Act (CCPA) that primarily addresses automated decisionmaking...more

A&O Shearman

Regulation (EU) 2025/1355 on oversight of systemically important payment systems published in OJ

A&O Shearman on

Regulation (EU) 2025/1355 of the European Central Bank (ECB) adopted on 2 July has been published in the Official Journal of the European Union. This Regulation recasts and replaces Regulation (EU) No 795/2014, updating the...more

Hogan Lovells

FDA finalizes cyber device “select updates” guidance, potentially affecting substantial equivalence findings for 510(k)s

Hogan Lovells on

The U.S. Food and Drug Administration (FDA) recently finalized its March 2024 select updates to its guidance "Cybersecurity in Medical Devices: Quality System Considerations and Content of Premarket Submissions” (“Premarket...more

DLA Piper

EU Space Act: First Glance at the 2025 Draft

DLA Piper on

On 25 June 2025, the European Commission has proposed the draft of the EU Space Act. This proposed new law is intended to provide a harmonised regulatory framework at European level from 2030 to ensure safety, resilience, and...more

Hogan Lovells

NYDFS: Penultimate set of cybersecurity requirements under amended Part 500 take effect May 1, 2025

Hogan Lovells on

On May 1, 2025, additional cybersecurity requirements introduced by the Second Amendment to the New York Department of Financial Services (NYDFS) Cybersecurity Regulation (23 NYCRR Part 500) (the “Second Amendment”) took...more

Alston & Bird

Additional Cybersecurity Requirements of NYDFS Part 500 Take Effect

Alston & Bird on

On May 1, 2025, additional enhanced cybersecurity controls required by the Second Amendment to the New York Department of Financial Services (NYDFS) Cybersecurity Regulation (23 NYCRR Part 500) (the “Second Amendment”) take...more

Davis Wright Tremaine LLP

Deadline Approaching: Covered Entities Must File Certifications of Compliance With Amended NYDFS Cyber Regulation by April 15

In November 2023, the New York Department of Financial Services (NYDFS) issued its second amendment to its "Cybersecurity Requirements for Financial Services Companies (the Cybersecurity Regulation or Part 500). This was the...more

Hogan Lovells

CISA reevaluating its critical infrastructure public-private partnership

Hogan Lovells on

Earlier this month, Secretary of the Department of Homeland Security (DHS) Kristi Noem announced plans to disband the Critical Infrastructure Partnership Advisory Council (CIPAC).  First created in 2006, CIPAC is a...more

Ogletree, Deakins, Nash, Smoak & Stewart,...

Reminder: New York Cybersecurity Reporting Deadline April 15, 2025; New Regulations Effective May 1, 2025

Covered entities regulated by the New York State Department of Financial Services (NYDFS) must submit cybersecurity compliance forms by April 15, 2025. New sets of requirements for system monitoring and access privileges,...more

Goodwin

An Overview of the NIS2 Directive and Its Implementation in France and Luxembourg

Goodwin on

With the arrival of the Regulation on Digital Operational Resilience (DORA) and the Network and Information Security 2 (NIS2) Directive, the security of information systems and the protection of critical infrastructures have...more

Mayer Brown

New EU Cyber Rules (NIS2) Take Effect; Implementing Rules Adopted

Mayer Brown on

On 17 October 2024, the European Commission adopted the first Implementing Regulation under the Network and Information Security 2 Directive (EU) 2022/2555 (NIS2), focusing on digital infrastructures and services. The...more

McDermott Will & Schulte

State Regulators Address Insurers’ Use of AI: 11 States Adopt NAIC Model Bulletin

In December 2023, the National Association of Insurance Commissioners (NAIC) adopted a Model Bulletin on the Use of Artificial Intelligence (AI) Systems by Insurers. The model bulletin reminds insurance carriers that they...more

Baker Donelson

[Webinar] New Privacy and Cybersecurity Regulations: What Financial Institutions Need to Know to Stay Compliant - June 13th, 10:00...

Baker Donelson on

The financial services industry has seen a litany of new data privacy and cybersecurity challenges through the first half of 2024. Financial institutions are facing unprecedented compliance hurdles resulting from the...more

SEC Compliance Consultants, Inc. (SEC³)

Regulatory Roundup for May 2024

SEC DROPS NEW REQUIREMENT FOR INCIDENT RESPONSE PROGRAMS, PROPOSAL FOR RIAS TO ADOPT CIP, SEC EXAMS SHARES MARKETING RULE FAILURES, RIA SLAMMED FOR FAILING TO RETAIN TEXTS, AND SEC WINS ON SHADOW TRADING THEORY - Welcome to...more

Sheppard Mullin Richter & Hampton LLP

NY State Bar Association Joins Florida and California on AI Ethics Guidance – Suggests Some Surprising Implications

The NY State Bar Association (NYSBA) Task Force on Artificial Intelligence has issued a nearly 80 page report (Report) and recommendations on the legal, social and ethical impact of artificial intelligence (AI) and generative...more

Bradley Arant Boult Cummings LLP

Florida Bill Proposes Safe Harbor Against Breach Suits to Businesses Maintaining Recognized Cybersecurity Programs

A recently introduced bill in the Florida Legislature would provide businesses operating in Florida, including health care providers, with a legal defense to data breach lawsuits if they maintain robust cybersecurity measures...more

Mitratech Holdings, Inc

Aligning your cyber risk management program with your company’s bottom line

The key to gaining buy-in for your cyber risk roadmap under tightening budgets and staffing challenges. This statement should come as no surprise: there’s been an alarming rise in the number and sophistication of cyber...more

McDermott Will & Schulte

California Reveals Draft Regulations Requiring Onerous Cybersecurity Audits and Privacy Risk Assessments

On August 28, 2023, the California Privacy Protection Agency (CPPA) released discussion drafts of regulations on cybersecurity audits and privacy risk assessments in advance of the CPPA’s meeting on September 8, 2023. ...more

Conyers

Bermuda Regulatory Outlook 2023

Conyers on

An old adage says that the only things in life that are certain are death and taxes. We think regulatory changes can surely be added to that list. A number of regulatory updates will affect Bermuda entities this year, and we...more

Bracewell LLP

Sanctions and Cyber and Crypto, Oh My: The Convergence of Emerging Regulatory and Enforcement Risks Requires Nimble Responses...

Bracewell LLP on

At a sanctions conference held in Washington D.C. on May 5, government officials, practitioners and corporations highlighted the government’s broadening focus on anti-corruption enforcement, across more traditionally siloed...more

McDermott Will & Schulte

[Webinar] Cyber Whistleblowing - New Risks and Exposures - April 21st, 12:00 pm - 1:00 pm EDT

When US President Joe Biden signed the Infrastructure Investment and Jobs Act (IIJA) into law on November 15, 2021, $2 billion was allocated to strengthen the nation’s cyber defenses. With this heightened focus on cyber risk...more

28 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide