From EPIC.org: Rep. Luetkemeyer (R-MO) and Rep. Maloney (D-NY) circulated a draft bill, the “Data Acquisition and Technology Accountability and Security Act,” that would set federal requirements for companies collecting personal data and require prompt breach notification. The Federal Trade Commission, which has often failed to pursue important data breach cases, and state Attorneys General…
Category: Federal
What to Know About ED’s New Stance On Data Breach Reporting
Sean Tassi reports: Until recently, colleges and universities that experienced a data breach had no unique reporting obligations to the U.S. Department of Education. Institutions were expected to analyze security incidents under applicable federal and state laws and, when appropriate, notify affected individuals and appropriate federal and state agencies. Because the Family Educational Rights and…
PH: House okays measure declaring credit-card fraud as heinous crime
Jovee Marie de la Cruz reports on a Philippine bill working its way through their legislature: The House of Representatives on Monday approved on third and final reading a measure declaring hacking of bank systems and stealing 50 or more ATM or credit-card details as economic sabotage. Voting 224-0, lawmakers passed House Bill (HB) 6710,…
FR: CNIL issues new data security guidelines
On January 23, 2018, the French data protection authority (the CNIL) published new guidelines on the security of personal data (updating its previous security guide published in 2010 available in English) , providing practical recommendations in the form of “Do’s and Dont’s” to help businesses implement appropriate measures to protect personal data in compliance with…
House Passes Cyber Vulnerability Disclosure Reporting Act
Jennifer Martin and Calvin Cohen write: On January 9, the House of Representatives passed the Cyber Vulnerability Disclosure Reporting Act by voice vote. The Act directs the Secretary of the U.S. Department of Homeland Security (“DHS”) to prepare a report describing the policies and procedures that DHS developed to coordinate the cyber vulnerability disclosures. Under…
(Another) Federal Data Breach Notification Law Introduced in Congress
Gregory Bautista, Jeremy T. Merkel, and Alex Moh of Wilson Elser Moskowitz Edelman & Dicker LLP write: Senate Democrats have introduced a third iteration of a federal data breach notification bill, the Data Security and Breach Notification Act of 2017 (S.B. 2179). If passed into law, this bill would replace the patchwork of 48 separate state breach notification…