News & Analysis as of

SaaS Risk Management

DarrowEverett LLP

Building Smarter: SaaS Agreements in Real Estate and Construction

DarrowEverett LLP on

The real estate development and construction industry has traditionally been driven by brick, mortar, and manpower. Yet, in today’s market, technology has become just as important a building block as concrete. From...more

Lowenstein Sandler LLP

UPDATE: Organizations Using the Salesloft Drift AI Chat Agent Must Check It for Compromise

On August 28th, Mandiant issued an update to its previous Salesloft Drift advisory. Therein, Mandiant discussed that Salesloft issued a security notification on Aug. 26 regarding its Drift application. At that time, it...more

Lowenstein Sandler LLP

Salesforce Users: Organizations Using the Salesloft Drift AI Chat Agent with Salesforce Must Check Their Presence for Compromise

Lowenstein Sandler LLP on

Salesloft issued a security notification on August 26 regarding its Drift application. It appears to be a broad opportunistic attack on Salesloft/Drift instances integrated with Salesforce tenants. Salesloft issued updates...more

Venable LLP

Have You Updated Your End User License Agreement (EULA) for 2025?

Venable LLP on

In the fast-evolving world of software licensing, mobile app, and software-as-a-service (SaaS) agreements, your end user license agreement (EULA) or end user customer agreement is more than a formality. It is a risk...more

Lathrop GPM

Liability Considerations for Developers and Users of Agentic AI Systems

Lathrop GPM on

What Are Agentic AI Systems? Agentic AI systems are artificial intelligence technologies that: ..Operate autonomously, ..Adapt to changing environments, and ..Execute multi-step tasks based on user input or...more

NAVEX

A Call to Do Better at Vendor Security Risks

NAVEX on

Technology vendors everywhere want to serve big Wall Street banks, so when one of those banks talks about risks they see in their software supply chain, compliance and audit professionals should listen – which brings us to an...more

Venable LLP

Service-Level Agreements for Online or Cloud-Based Arrangements

Venable LLP on

Negotiating a service-level agreement sets clear expectations of each party's roles and responsibilities within online or cloud-based service arrangements. A service-level agreement (in particular, a "customer service-level...more

Robinson+Cole Data Privacy + Security Insider

Privacy Tip #434 – Use of GenAI Tools Escaping Corporate Policies

According to a new LayerX report, most users are logging into GenAI tools through personal accounts that are not supported or tracked by an organization’s single sign on policy. These logins to AI SaaS applications are...more

Harris Beach Murtha PLLC

Have a SaaS Contract in Place? You May Need an AI Addendum

Virtually every business has signed an agreement with a software as a service (“SaaS”) provider at one time or another. And now, virtually every SaaS provider (it seems, at least) is coming out with an AI-related feature or...more

Conn Kavanaugh

Three Things You Should Know About Service Level Agreements in SaaS/Cloud Contracts

Conn Kavanaugh on

When a customer purchases software-as-a-service (SaaS)–which is sometimes called a “cloud” service or product–the software is not hosted. It does not reside at the customer’s location or data center. Rather the software is...more

Baker Donelson

Best Practices for Protecting Operations from Vendor's Cyber Incidents

Baker Donelson on

In the aftermath of a vendor's hack that crippled an industry, ensure your business is up to date on best practices for mitigating the risks of third-party cyber incidents. Many businesses struggle to adequately consider the...more

The Volkov Law Group

Episode 326 -- Dottie Schindlinger on Diligent's Report on Board Oversight of Cybersecurity Risks and Performance

The Volkov Law Group on

Dottie Schindlinger is Executive Director of Diligent Institute, the global corporate governance research arm of Diligent - the largest SaaS software company in the Governance, Risk, Compliance (GRC), and ESG space. Diligent...more

Ankura

Common Causes of CFIUS Agreement Non-Compliance and Enforcement Risk

Ankura on

Following the update to the Committee on Foreign Investment in the United States (“CFIUS” or the “Committee”) Enforcement and Penalty Guidelines, the Committee has continued to signal its intention to more heavily leverage...more

Foley & Lardner LLP

Episode 10: Building the Decarbonized Future with Chris Rezendes of Context Labs

Foley & Lardner LLP on

In our tenth episode, Chris Rezendes, Chief Business Officer from Context Labs, joins Chris McKenna to discuss how digitalization can help companies achieve their climate goals. How is the use of data changing for energy...more

Ankura

What is MDR and How Does it Fit Into Your Security Strategy?

Ankura on

The global cyber threat landscape is rapidly evolving. The number of attacks, threat vectors, and endpoints continues to grow exponentially alongside the average time to detect and respond to a security incident. Today,...more

Mitratech Holdings, Inc

Emerging Cyber Risks in the US & UK

Mitratech Holdings, Inc on

Cyber risk management has significantly escalated in importance, during the last couple of years, as a result of companies overcoming the operational challenges of the pandemic, transitioning to hybrid working, preparing for...more

EDRM - Electronic Discovery Reference Model

[Webinar] Managing Data Related Procedures Inside Corporate! - September 27th, 1:00 pm - 2:15 pm ET

Join us in a unique discussion regarding the cross-functional activities eDiscovery, IT, Compliance, Data Governance, and Security leaders often participate in while managing a large corporation’s information. Tips and tricks...more

Lighthouse

IT at the Helm: Change Management for Cloud-Based SaaS is Key to Minimizing Risk

Lighthouse on

Cloud computing dates to the mid-1990s – so why is this relatively old concept still such a hot topic? Haven’t we figured it all out by now? And isn’t the benefit of today’s SaaS cloud environments that someone else, namely...more

Hanzo

Data Intelligence is the Vital First Step for Legal and Compliance Teams: A Webinar Recap

Hanzo on

Organizations create and share enormous volumes of sensitive information, and with the rise of SaaS applications and collaboration tools, this information can exist in many places: emails, Slack messages, Jira tickets,...more

Mitratech Holdings, Inc

The Impact of SEC’s Proposed New Rules in Cyber Risk Management

A new discourse in the cyber risk management landscape of US public companies is here. This past March 2022, the US Securities and Exchange Commission (SEC) added another item to their to-do list by announcing a...more

Mitratech Holdings, Inc

Operational Resilience for Financial Institutions: Will You Be Ready?

The UK’s Operational Resilience Framework - Financial services regulators have been focusing on the robustness of their chartered institutions for many years. In 2020 the Federal Reserve highlighted the need for enhanced...more

Mitratech Holdings, Inc

Leveraging Enterprise Risk Management for Business Advantage

Enterprise Risk Management (ERM) is not a new discipline. However, its profile has continued to evolve in recent years as organizations overcome the ongoing challenges of today’s ever changing business world....more

Mitratech Holdings, Inc

Cyber Risk Management in 2022: New Challenges and Opportunities

Cyber risk management has undergone a significant change over the last couple of years. What once was the headache of the IT or risk management department is now an issue of considerable interest to the Board and senior...more

Mitratech Holdings, Inc

US Regulators Raise Expectations of Third-Party Risk Management

Mitratech Holdings, Inc on

It takes something significant for all the US Banking Regulators – the Federal Reserve, the Office of the Comptroller of the Currency (OCC), and the Federal Deposit Insurance Corporation (FDIC) – to come together to pool...more

Mitratech Holdings, Inc

What’s the OCC Banking Regulatory Outlook for 2022?

As the year’s end approaches, the US Office of the Comptroller of the Currency (OCC), a primary US banking regulator, has published its Banking Supervision Operating Plan for 2022. As you might expect, much of the OCC’s...more

36 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide