2017
11 January 2018

Looking Back at Our 2017 Privacy and Cybersecur...

We ended 2017 by making predictions about what 2018 will bring to the privacy and cybersecurity world.  We’ll start 2018 by looking at how we fared in our 2017 predictions.  Spoiler alert, we nailed it. Expansion of Breach Notification Requirements We’ll give ourselves half credit for this one. While some states took action, Michigan did not […]

Cyber Insurance
30 November 2017

Privacy and Cybersecurity 101: Buying Cybersec...

With Uber joining Equifax, JP Morgan, Target and others as the latest victim of a high-profile data breach, all companies should be evaluating how they can protect themselves from data breaches and the fallout.  Over the past month, we have covered how to encrypt your laptop and covered how to send secure emails.  Even if […]

Typing at a laptop
02 November 2017

$2.5 Million is an Expensive Laptop!

In April 2017, the U.S. Department of Health and Human Services (“HHS”) announced yet another HIPAA settlement agreement with a health care provider relating to a stolen mobile device containing Protected Health Information (“PHI”).  As part of this settlement agreement, CardioNet agreed to pay $2.5 million and implement a corrective action plan resulting from the […]

Laptop Phone Coffee
19 October 2017

Data Breach? First Call Your Lawyer.

If your company experiences a data breach, the first person you should contact is your lawyer.  While this advice is certainly self-serving to the authors, it is nevertheless the most prudent course of action. In the first few moments after a data breach, everything you say or do is discoverable in subsequent litigation or other […]

Questions Answers
21 September 2017

The 3 Most Common Equifax Breach Questions (wit...

Ever since the news broke regarding the Equifax breach affecting over 140 million people in the U.S., we have received daily phone calls from clients, friends, and family asking what they can do to protect themselves.  Should I sign up for the credit monitoring?  Am I am going to waive my right to join a […]

Hacked
08 September 2017

Equifax Announces Breach That Could Impact 143 ...

Yesterday. on September 7, 2017, Equifax, a credit monitoring agency, announced that the personal information of nearly half of all Americans may have been breached.  According to Equifax, criminals used “a U.S. website application vulnerability” to gain access to files that contained names, Social Security numbers, birth dates, addresses and driver’s license numbers. Equifax stated […]

Cybersecurity
25 August 2017

Data Breach Class Actions: an actual violation ...

In a previous post on this blog here, we noted that the recent decision in D.C. Circuit Court of Appeals had joined a growing number of federal courts holding the risk of future harm is enough to allow a class action to proceed following a data breach. Now the Ninth Circuit Court of Appeals joins […]

Cyber Security
10 August 2017

Data Breach Class Actions: Is a Risk of Future ...

On August 1, the D.C. Circuit Court of Appeals joined a growing number of federal courts holding the risk of future harm is enough to allow a class action to proceed following a data breach. Attias v. CareFirst, Inc., et al., involves a federal class action lawsuit brought by customers whose personal information was allegedly […]

Euros - Privacy Shield
27 July 2017

Penalty: Up to 20 Million Euros, or 4% of Gross...

In data privacy circles, there is constant discussion regarding the EU-US Privacy Shield and the EU General Data Protection Regulation (“GDPR”).  While the temptation for US- based companies to take an isolationist approach and ignore these EU regulations is understandable, doing so may unintentionally subject such companies to significant liability.  All US-based organizations that hold, […]