Regulations & Enforcement
- Legislation
- Investigations and Actions
- Regulatory Bodies
Nov. 13, 2024
Unpacking the Second Circuit’s Bombshell VPPA Ruling
Aug. 7, 2024
Jarkesy and Loper: Bombshells or Busts?
Jul. 10, 2024
Implications of the New E.U. AML Directive
May 22, 2024
SEC Enforcement Actions Target “AI Washing”
Apr. 17, 2024
AI Governance Strategies for Privacy Pros
Apr. 3, 2024
Examining Utah’s Pioneering State AI Law
Mar. 27, 2024
SEC’s 2024 Regulatory Focus
Mar. 20, 2024
AI Drives Rise in Private Funds’ Use of Alternative Data
Jan. 24, 2024
Emerging Cyber Threats and Defenses
Nov. 1, 2023
Compliance Challenges in Records Management
May 31, 2023
Colorado Controllers: The Final (Rules’) Frontier
Mar. 15, 2023
A Roadmap to the Final Regulations Under the CPRA
Mar. 1, 2023
Getting Used to Zero Trust? Meet Zero Copy
Feb. 22, 2023
Is Coinbase a Warning to Other Crypto Players?
Feb. 1, 2023
Key Privacy Issues for 2023
Oct. 26, 2022
Takeaways From the New Push for a Federal AI Law
Sep. 28, 2022
Lessons From California’s First CCPA Enforcement Action
Sep. 14, 2022
Shaping the BIPA Landscape: Avoiding Liability
Aug. 10, 2022
Protecting Against Crypto Theft
Jun. 29, 2022
Navigating the Intersection of Digital Assets and AML
Jun. 1, 2022
FINRA Clarifies Stance on CCO Supervisory Liability
May 4, 2022
Effective Use of Privacy Impact Assessments
Apr. 27, 2022
SEC Proposes Cyber Risk Management Rules for Advisers
Mar. 23, 2022
Are “Privacy-First” Clean Rooms Safe From Regulators?
Mar. 2, 2022
Blockchain Recordkeeping Stirs Privacy Concerns
Feb. 16, 2022
The Privacy and Antitrust Paradox in the Age of Data
Feb. 2, 2022
Gensler Discusses the SEC’s Cyber Priorities
Jan. 19, 2022
Privacy Resolutions for 2022
Nov. 17, 2021
Data Localization: Cybersecurity Challenges Abound
Nov. 3, 2021
Data Localization: Laws Spread and Enforcement Rises
Oct. 27, 2021
IOSCO Issues Final Guidance on AI and Machine Learning
Oct. 20, 2021
Collective Actions in the U.K. After Lloyd v. Google
Aug. 11, 2021
Complying With NYC’s New Biometrics Law
Jul. 28, 2021
Incident Response in the Financial Services Industry
Jun. 30, 2021
Using RegTech to Enhance Compliance
Jun. 23, 2021
Three Years In, GDPR Legal Landscape Remains in Flux
Jun. 9, 2021
To “Cure” or Not to “Cure,” That Is the Question
Apr. 28, 2021
AI Compliance Playbook: Understanding Algorithm Audits
Feb. 17, 2021
A Fake Zoom Invite Hack: Eight More Lessons
Feb. 10, 2021
GDPR Lives On in the U.K. Post-Brexit
Feb. 10, 2021
A Fake Zoom Invite Hack: What Happened and Three Lessons
Jan. 20, 2021
Disputed Twitter Fine Offers Breach Response Lessons
Jan. 20, 2021
Privacy Resolutions for 2021
Dec. 9, 2020
What the New IoT Act Means for the Private Sector
Sep. 23, 2020
Identifying and Preventing Ransomware Attacks
Sep. 9, 2020
Implementing the CCPA Regulations: Are You Ready?
Aug. 12, 2020
Navigating China’s Cybersecurity Regulatory Maze
May 27, 2020
Recent Developments in E.U. Cybersecurity Regulation
Mar. 25, 2020
Gauging the GDPR’s Global Reach
Mar. 11, 2020
The Keys to Encryption: Legal and Regulatory Framework
Feb. 12, 2020
How to Approach CCPA’s Under-16 Opt‑in Consent
Jan. 22, 2020
How to Stem the Coming Tide of CCPA Private Litigation
Dec. 11, 2019
Not Just GDPR: Examining the Other European Privacy Laws
Dec. 11, 2019
How to Handle E.U. Data Subject Access Requests
Nov. 13, 2019
AI for Fund Managers and Beyond: Government Guidance
Oct. 23, 2019
CFTC Issues $1.5-Million Fine After Phishing Attack
Aug. 21, 2019
Examining Portugal’s GDPR Implementation Statute
Jul. 17, 2019
Maine Enacts Sweeping Broadband Customer Privacy Law
Jul. 17, 2019
How to Establish an Efficient Incident Response Plan
Jul. 10, 2019
Implications of Nevada’s New Privacy Law
Jul. 10, 2019
Can GDPR Hinder AI Made in Europe?
Jun. 26, 2019
Preparing for the Latest SEC Cyber Sweeps
Jun. 19, 2019
Kids, Privacy & Legal Compliance
Mar. 13, 2019
Mitigating the Risks of Open-Source Software
Feb. 6, 2019
Analyzing Early GDPR Enforcement: France
Jan. 30, 2019
Analyzing Early GDPR Enforcement: U.K. and Austria
Jan. 23, 2019
Analyzing Early GDPR Enforcement: Portugal and Germany
Nov. 28, 2018
The Growing Role of State AGs in Privacy Enforcement
Nov. 7, 2018
How GoDaddy Built an Effective Privacy Program
Oct. 17, 2018
Regulating AI: U.S., E.U. and Industry Laws and Guidance
Oct. 10, 2018
Lessons From the SEC’s First Red Flags Rule Settlement
Sep. 26, 2018
Five Takeaways From the Fiserv Wake-Up Call
Mar. 28, 2018
Evaluating Cybersecurity Coverage in Light of the GDPR
Mar. 14, 2018
Developing an Effective Third-Party Management Program
Mar. 14, 2018
How Will the GDPR Affect Due Diligence?
Feb. 28, 2018
The GDPR’s Data Subject Rights and Why They Matter
Feb. 14, 2018
Using Technology to Comply With the GDPR
Oct. 25, 2017
Privacy Shield Survives First Annual Review
Jul. 26, 2017
How the CCO Can Use SEC Guidance to Tackle Cyber Threats
May 17, 2017
Tracking Data and Maximizing Its Potential
Apr. 19, 2017
How to Ensure Cyber Risks Do Not Derail an IPO
Jan. 11, 2017
FTC Priorities for 2017 and Beyond
Jan. 11, 2017
Ten Cybersecurity Priorities for 2017
Nov. 16, 2016
Navigating U.S. and E.U. Cybersecurity Requirements
Jul. 20, 2016
Challenges Facing Chief Privacy Officers
Jul. 20, 2016
Key Requirements of the Newly Approved Privacy Shield
Feb. 17, 2016
White House Lays Out Its Broad Cybersecurity Initiatives
Feb. 17, 2016
Deal Struck to Maintain the Transatlantic Data Flow
Feb. 3, 2016
Safe Harbor 2.0 Agreement Reached
Nov. 11, 2015
Liability Lessons from Data Breach Enforcement Actions
Aug. 26, 2015
Seeking Solutions to Cross-Border Data Realities
Apr. 22, 2015
Steps to Take Following a Healthcare Data Breach
Aug. 21, 2024
Navigating U.S. Privacy Laws in Internal Investigations
Aug. 7, 2024
How Privacy Efforts Can Boost Revenue
Aug. 7, 2024
Jarkesy and Loper: Bombshells or Busts?
Jul. 31, 2024
Challenges, Risks and Future of the CISO Role
May 22, 2024
SEC Enforcement Actions Target “AI Washing”
May 1, 2024
Navigating Ransomware’s Challenges
Apr. 17, 2024
AI Governance Strategies for Privacy Pros
Mar. 27, 2024
SEC’s 2024 Regulatory Focus
Mar. 20, 2024
Court Hands FTC Grounds to Curb Data Broker Sales
Feb. 14, 2024
Mitigating CISO Personal Liability Post-SolarWinds
Jan. 24, 2024
Emerging Cyber Threats and Defenses
Nov. 1, 2023
Compliance Challenges in Records Management
Jul. 12, 2023
SEC Remains Focused on Off-Channel Communications
Jun. 14, 2023
Messaging Apps Come Under Increasing Regulatory Scrutiny
May 31, 2023
How CPOs Communicate Privacy’s Value to the Board
Mar. 22, 2023
ECJ Ruling Expands Legal Professional Privilege
Nov. 30, 2022
Understanding and Implementing Privacy Audits
Nov. 9, 2022
Lessons From the Conviction of Uber’s Former CISO
Sep. 28, 2022
Lessons From California’s First CCPA Enforcement Action
Apr. 27, 2022
SEC Proposes Cyber Risk Management Rules for Advisers
Feb. 16, 2022
The Privacy and Antitrust Paradox in the Age of Data
Feb. 2, 2022
Gensler Discusses the SEC’s Cyber Priorities
Jan. 19, 2022
Privacy Resolutions for 2022
Jul. 28, 2021
Incident Response in the Financial Services Industry
Jun. 9, 2021
To “Cure” or Not to “Cure,” That Is the Question
Jan. 20, 2021
Privacy Resolutions for 2021
Jul. 29, 2020
Remote Forensic Data Collection Steps Into the Spotlight
Apr. 1, 2020
Investigation Strategies During Social Distancing
Oct. 23, 2019
CFTC Issues $1.5-Million Fine After Phishing Attack
Jul. 31, 2019
Learning From the Equifax Settlement
Jun. 26, 2019
Preparing for the Latest SEC Cyber Sweeps
Apr. 3, 2019
FCA Evaluates Firms’ Cyber Resilience
Nov. 28, 2018
The Growing Role of State AGs in Privacy Enforcement
Oct. 10, 2018
Lessons From the SEC’s First Red Flags Rule Settlement
Aug. 1, 2018
Staying Current With Geolocation Restrictions
Mar. 14, 2018
How Will the GDPR Affect Due Diligence?
Dec. 6, 2017
Gathering and Analyzing Compliance Data
Oct. 25, 2017
Privacy Shield Survives First Annual Review
Jul. 26, 2017
How the CCO Can Use SEC Guidance to Tackle Cyber Threats
Jan. 11, 2017
FTC Priorities for 2017 and Beyond
Aug. 24, 2016
Takeaways From the FTC’s Revival of the LabMD Action
Nov. 25, 2015
FTC Loses Its First Data Security Case
Nov. 11, 2015
Liability Lessons from Data Breach Enforcement Actions
Aug. 26, 2015
Seeking Solutions to Cross-Border Data Realities
FTC
Nov. 13, 2024
Unpacking the Second Circuit’s Bombshell VPPA Ruling
Aug. 7, 2024
How Privacy Efforts Can Boost Revenue
Apr. 17, 2024
AI Governance Strategies for Privacy Pros
Mar. 20, 2024
Court Hands FTC Grounds to Curb Data Broker Sales
Feb. 14, 2024
Mitigating CISO Personal Liability Post-SolarWinds
Nov. 30, 2022
Understanding and Implementing Privacy Audits
Feb. 16, 2022
The Privacy and Antitrust Paradox in the Age of Data
Jan. 19, 2022
Privacy Resolutions for 2022
Jan. 20, 2021
Privacy Resolutions for 2021
Jul. 31, 2019
Learning From the Equifax Settlement
Aug. 1, 2018
Staying Current With Geolocation Restrictions
Oct. 25, 2017
Privacy Shield Survives First Annual Review
Jan. 11, 2017
FTC Priorities for 2017 and Beyond
Aug. 24, 2016
Takeaways From the FTC’s Revival of the LabMD Action
Nov. 25, 2015
FTC Loses Its First Data Security Case
Nov. 11, 2015
Liability Lessons from Data Breach Enforcement Actions
DOJ
Feb. 14, 2024
Mitigating CISO Personal Liability Post-SolarWinds
Nov. 1, 2023
Compliance Challenges in Records Management
Nov. 9, 2022
Lessons From the Conviction of Uber’s Former CISO
FCC
SEC
Aug. 7, 2024
Jarkesy and Loper: Bombshells or Busts?
Jul. 31, 2024
Challenges, Risks and Future of the CISO Role
May 22, 2024
SEC Enforcement Actions Target “AI Washing”
May 1, 2024
Navigating Ransomware’s Challenges
Mar. 27, 2024
SEC’s 2024 Regulatory Focus
Feb. 14, 2024
Mitigating CISO Personal Liability Post-SolarWinds
Nov. 1, 2023
Compliance Challenges in Records Management
Jul. 12, 2023
SEC Remains Focused on Off-Channel Communications
Jun. 14, 2023
Messaging Apps Come Under Increasing Regulatory Scrutiny
May 31, 2023
How CPOs Communicate Privacy’s Value to the Board
Apr. 27, 2022
SEC Proposes Cyber Risk Management Rules for Advisers
Feb. 2, 2022
Gensler Discusses the SEC’s Cyber Priorities
Jul. 28, 2021
Incident Response in the Financial Services Industry
Jun. 26, 2019
Preparing for the Latest SEC Cyber Sweeps
Oct. 10, 2018
Lessons From the SEC’s First Red Flags Rule Settlement
Jul. 26, 2017
How the CCO Can Use SEC Guidance to Tackle Cyber Threats
U.S. States
Apr. 17, 2024
AI Governance Strategies for Privacy Pros
Apr. 3, 2024
Examining Utah’s Pioneering State AI Law
May 31, 2023
Colorado Controllers: The Final (Rules’) Frontier
Mar. 15, 2023
A Roadmap to the Final Regulations Under the CPRA
Mar. 1, 2023
Getting Used to Zero Trust? Meet Zero Copy
Feb. 1, 2023
Key Privacy Issues for 2023
Oct. 26, 2022
Takeaways From the New Push for a Federal AI Law
Sep. 28, 2022
Lessons From California’s First CCPA Enforcement Action
Sep. 14, 2022
Shaping the BIPA Landscape: Avoiding Liability
Mar. 23, 2022
Are “Privacy-First” Clean Rooms Safe From Regulators?
Feb. 16, 2022
The Privacy and Antitrust Paradox in the Age of Data
Jan. 19, 2022
Privacy Resolutions for 2022
Aug. 11, 2021
Complying With NYC’s New Biometrics Law
Jun. 9, 2021
To “Cure” or Not to “Cure,” That Is the Question
Jan. 20, 2021
Privacy Resolutions for 2021
Sep. 9, 2020
Implementing the CCPA Regulations: Are You Ready?
Mar. 11, 2020
The Keys to Encryption: Legal and Regulatory Framework
Feb. 12, 2020
How to Approach CCPA’s Under-16 Opt‑in Consent
Jan. 22, 2020
How to Stem the Coming Tide of CCPA Private Litigation
Jul. 17, 2019
Maine Enacts Sweeping Broadband Customer Privacy Law
Jul. 10, 2019
Implications of Nevada’s New Privacy Law
Jun. 19, 2019
Kids, Privacy & Legal Compliance
Nov. 28, 2018
The Growing Role of State AGs in Privacy Enforcement
Nov. 11, 2015
Liability Lessons from Data Breach Enforcement Actions
Global
May 15, 2024
New E.U. Directive Expands Scope of Due Diligence
Jan. 19, 2022
Privacy Resolutions for 2022
Nov. 17, 2021
Data Localization: Cybersecurity Challenges Abound
Nov. 3, 2021
Data Localization: Laws Spread and Enforcement Rises
Jun. 23, 2021
Three Years In, GDPR Legal Landscape Remains in Flux
Feb. 10, 2021
GDPR Lives On in the U.K. Post-Brexit
Jan. 20, 2021
Privacy Resolutions for 2021
Jan. 20, 2021
Disputed Twitter Fine Offers Breach Response Lessons
Aug. 12, 2020
Navigating China’s Cybersecurity Regulatory Maze
May 27, 2020
Recent Developments in E.U. Cybersecurity Regulation
Dec. 11, 2019
Not Just GDPR: Examining the Other European Privacy Laws
Oct. 23, 2019
A Glimpse at the New Cayman Islands Data Protection Law
Aug. 21, 2019
Examining Portugal’s GDPR Implementation Statute
Jul. 31, 2019
Takeaways From the U.K. ICO’s FaceApp Warning
Feb. 6, 2019
Analyzing Early GDPR Enforcement: France
Jan. 30, 2019
Analyzing Early GDPR Enforcement: U.K. and Austria
Jan. 23, 2019
Analyzing Early GDPR Enforcement: Portugal and Germany
Jul. 20, 2016
Key Requirements of the Newly Approved Privacy Shield
Feb. 17, 2016
Deal Struck to Maintain the Transatlantic Data Flow
Feb. 3, 2016
Safe Harbor 2.0 Agreement Reached
Sep. 16, 2015
Privacy and Cybersecurity in Canada: Legal Risk Update
Aug. 26, 2015
Seeking Solutions to Cross-Border Data Realities
Most-Read Articles
-
Oct. 16, 2024
Deciphering California’s Pioneering Mandate for an AI Nutrition Label -
Nov. 13, 2024
Unpacking the Second Circuit’s Bombshell VPPA Ruling -
Oct. 23, 2024
Emerging Issues in Workplace Privacy: Data Collected and Employees’ Perspectives -
Oct. 23, 2024
Aftermath of the Ninth Circuit BIPA Liability Shake‑Up in Zellmer v. Meta -
Oct. 30, 2024
What to Know (and Do) About DOJ’s Efforts to Identify and Prosecute Cybersecurity Fraud Under the False Claims Act
We Celebrate Data Privacy Day 2024
Read the full brief here.