In a recent decision out of the Northern District of California, the court held that a website operator’s privacy policy, even one presented in a passive, browse wrap-style hyperlink, can
Continue Reading For Whom the Discovery Tolls: Your Privacy Notice May Help Time-Bar Website Wiretapping ClaimsPrivacy Policy
By Pivoting, Major Tech Companies Could Benefit From Increased Data Regulation
Data-rich companies like Facebook have a unique opportunity to capitalize on the recent surge in regulatory scrutiny and turn it to their advantage.
Savvy tech companies are attuned to public…
Continue Reading By Pivoting, Major Tech Companies Could Benefit From Increased Data Regulation
The Anatomy of a Cyber Attack: Prevention, Response and Postmortem (Part 6 of 6)
This blog post is the sixth and final entry of a six-part series discussing the best practices relating to cyber security. The previous post discussed the individuals and organizations that should be notified once a cyberattack occurs. This post will focus on what a business should not do after a cyberattack. Key points include (1) not using the network, (2) not sharing information with unconfirmed parties, and (3) not attempting to retaliate against a different network. …
Continue Reading The Anatomy of a Cyber Attack: Prevention, Response and Postmortem (Part 6 of 6)
The Anatomy of a Cyber Attack: Prevention, Response and Postmortem (Part 5 of 6)
This blog post is the fifth entry of a six series discussing the best practices relating to cyber security. The previous post discussed the important steps that a business should take to preserve evidence and information once a cyberattack has been identified. This post will discuss the individuals and organizations that should be notified once a cyberattack occurs. The four most important groups to contact are (1) individuals within the business, (2) law enforcement officials, (3) The Department of Homeland Security, and (4) other possible victims.
Continue Reading The Anatomy of a Cyber Attack: Prevention, Response and Postmortem (Part 5 of 6)
The Anatomy of a Cyber Attack: Prevention, Response and Postmortem (Part 4 of 6)
This blog post is the fourth entry of a seven-part series discussing the best practices relating to cyber security. The previous post discussed the initial steps that a business should take once a cyberattack has been identified. This post will discuss further steps that a business should take after an attack. …
Continue Reading The Anatomy of a Cyber Attack: Prevention, Response and Postmortem (Part 4 of 6)
The Anatomy of a Cyber Attack: Prevention, Response and Postmortem (Part 3 of 6)
This blog post is the third installment of a seven-part series discussing the best practices relating to cyber security. The first two blog posts discussed the best practices for preparing a business in case of a cyberattack. This post will discuss the initial steps that a business should take after a cyberattack occurs. …
Continue Reading The Anatomy of a Cyber Attack: Prevention, Response and Postmortem (Part 3 of 6)
The Anatomy of a Cyber Attack: Prevention, Response and Postmortem (Part 1 of 6)
Cyber-attacks can impact any business regardless of size, sector, or level of cyber security. The best way to minimize damages from a cyber-attack is to plan ahead and prepare for a possible attack. Forward thinking can minimize damages and shorten the process of recovery from a cyber-attack. The following suggestions are important steps that every business should take to prepare for a cyber-attack.
Continue Reading The Anatomy of a Cyber Attack: Prevention, Response and Postmortem (Part 1 of 6)
When Privacy Policies Should NOT Be Published – Two Easy Lessons From the FTC’s Nomi Technologies Case
[Also posted at https://hipaahealthlaw.foxrothschild.com/]
This case has nothing to do with HIPAA, but should be a warning to zealous covered entities and other types of business entities trying to give…
Continue Reading When Privacy Policies Should NOT Be Published – Two Easy Lessons From the FTC’s Nomi Technologies Case
SEC and FINRA Examine Cybersecurity
The Security and Exchange Commission’s Office of Compliance Inspections and Examinations (OCIE) recently released an initial summary of its findings from its 2014 OCIE Cybersecurity Initiative. The OCIE examined …
Continue Reading SEC and FINRA Examine Cybersecurity
FTC and EU Are Critical of the White House’s Consumer Privacy Bill of Rights
Officials from both the Federal Trade Commission (FTC) and European Union (EU) recently called for enhancements to the Obama administration’s proposed Consumer Privacy Bill of Rights.
The White House’s…
Continue Reading FTC and EU Are Critical of the White House’s Consumer Privacy Bill of Rights