• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to secondary sidebar

Alston & Bird Privacy, Cyber & Data Strategy Blog

  • Home
  • Services
  • Events
  • Contacts

Data Protection

2021 Developments in State Cybersecurity Safe Harbor Laws

April 20, 2021 By Alysa Austin

Only four months in and 2021 has already been a big year for state cybersecurity safe harbor legislation.  Two states, Utah and Connecticut, have recently enacted or introduced a breach litigation safe harbor to incentivize businesses to protect personal information by adopting industry-recognized cybersecurity frameworks such as the National Institute of Standards and Technology’s (NIST) […]

Filed Under: Cybersecurity, Data Breach Litigation, Data Protection, Data Security

NYDFS Announces Cybersecurity Settlement, Addresses Multi-Factor Authentication Rules

April 16, 2021 By Privacy, Cyber & Data Strategy Team

On April 14, 2021, the New York Department of Financial Services (“NYDFS”) announced a settlement with National Securities Corporation (“National Securities”), a licensed insurer, in connection with claims under the NYDFS Cybersecurity Regulation (23 NYCRR Part 500). The consent order requires payment of a $3M penalty and mandatory remediation in response to alleged failures to […]

Filed Under: Cybersecurity, Data Breach, Data Protection, Data Security, Digital Crimes, Enforcement, Financial Privacy, Insurance Data Security, NYDFS, Regulation

The GDPR Reaches the US Supreme Court in Cert Petition

March 22, 2021 By Daniel Felz

The EU’s General Data Protection Regulation (GDPR) has been raised in a petition for certiorari before the US Supreme Court, apparently for the first time since the GDPR entered into application in 2018.  A party in Vesuvius USA Corp. v. Phillips has filed a petition for certiorari in a GDPR-related discovery dispute.  Of course, since […]

Filed Under: Data Protection, GDPR, International, Legislation, Privacy, Privacy Litigation Tagged With: GDPR, Litigation, U.S. Supreme Court

NYDFS Reports Major Cybersecurity Settlement

March 11, 2021 By James Harvey and Privacy, Cyber & Data Strategy Team

In early March, the New York Department of Financial Services (NYDFS) announced a settlement involving a $1.5M penalty and mandatory remediation in response to a mortgage lender’s alleged failure to report a cyber breach, and other alleged cybersecurity failures. This enforcement action marks the second public enforcement action under 23 NYCRR Part 500 (the “Cybersecurity […]

Filed Under: Cyber Risk, Cybercrime, Cybersecurity, Data Breach, Data Breach Litigation, Data Protection, Data Security, Digital Crimes, Enforcement, Financial Privacy, NYDFS, Regulation, Security Breach

European Commission Adopts Draft UK Adequacy Decision

February 23, 2021 By Paul Greaves and Wim Nauwelaerts

On February 19, 2021, the European Commission adopted a draft ‘adequacy decision’ in favor of the UK. The adoption of the draft adequacy decision marks the first step in ensuring the continued free flow of personal data from EEA countries to the UK under the EU GDPR. Once (and if) the final adequacy decision is […]

Filed Under: Data Protection, International, Privacy, Regulation Tagged With: Adequacy, Brexit, European Union (EU), GDPR, United Kingdom

  • « Go to Previous Page
  • Page 1
  • Interim pages omitted …
  • Page 19
  • Page 20
  • Page 21
  • Page 22
  • Page 23
  • Interim pages omitted …
  • Page 64
  • Go to Next Page »

Primary Sidebar

This blog is a service of Alston & Bird’s Privacy, Cyber & Data Strategy team and focuses on key data privacy and data security issues.


Receive email notifications when new posts are added.

Receive email notifications when new posts are added.


RANSOMWARE FUSION CENTER
Click here to request access

THE DIGITAL DOWNLOAD
Click here to see the editions

PRIVACY & CYBER EVENTS
Click here to see upcoming and past events

PRIVACY & CYBER MAILINGS
Click here to sign up

@ALSTONPRIVACY
Click here to follow us on Twitter

Secondary Sidebar

Categories

Recent Posts

  • The EU Data Act Comes Into Force
  • Chilean Regulator Launches Public Consultation on New Cybersecurity Law
  • Texas Expands Data Broker Act Requirements
  • United States, International Coalition Issue Joint Warning of Increasing PRC Backed Threat Activity
  • CISA Gives Itself an Extension for Cyber Incident Reporting Rules
Copyright © 2025 · Alston & Bird · All Rights Reserved. Privacy.
This website uses cookies to improve functionality and performance. By continuing to browse this site, you are consenting to the use of cookies on this website.