What Happened? On December 13, 2022, the European Commission (the “Commission”) took a significant step towards the adoption of the EU-U.S. Data Privacy Framework (“DPF”). The DPF is a new framework designed to replace the EU-U.S. Privacy Shield … [Read more] about European Commission Takes Significant Step Towards New Solution for Transatlantic Transfers of Personal Data
EU Standard Contractual Clauses (SCCs) Deadline is Looming
Companies relying on the SCCs as a data transfer tool have less than a month to update their existing contracts (if they haven’t done so already). WHAT HAPPENED? The EU General Data Protection Regulation (GDPR) allows companies that want to … [Read more] about EU Standard Contractual Clauses (SCCs) Deadline is Looming
NYDFS Releases Significant Enhancements to its Cybersecurity Regulation in the Proposed Second Amendment
The New York Department of Financial Services (“DFS”) released their proposed second amendment to the Cybersecurity Regulation, 23 NYCRR Part 500 (“Proposed Second Amendment”) on October 9, 2022. DFS issued a minor amendment on April 2, 2020, … [Read more] about NYDFS Releases Significant Enhancements to its Cybersecurity Regulation in the Proposed Second Amendment
FTC Delays Effective Date of Certain Changes to the Safeguard Rule
On November 15, 2022, the Federal Trade Commission (FTC) announced that it is delaying the effective date of certain changes to the Gramm–Leach–Bliley Safeguards Rule. The Safeguards Rule, which first became operative in 2003, imposes certain … [Read more] about FTC Delays Effective Date of Certain Changes to the Safeguard Rule
European Parliament Adopts “NIS2” Cybersecurity Directive
On November 10, 2022, the European Parliament adopted a new cybersecurity directive (the “NIS2 Directive”), which is designed to replace and repeal the existing EU Directive on the Security of Network and Information Systems (Directive 2016/1148/EC) … [Read more] about European Parliament Adopts “NIS2” Cybersecurity Directive