Cybersecurity, Privacy, & AI

Trending Now
Report From FDLI Annual Meeting: FDA’s Expanding Use of AI – What Regulated Industry Should Know • NIST Revises SP 800-70 | National Checklist Program for IT Products: Guidelines for Checklist Users and Developers • Cyberattacks Are Now Part of US Counterterrorism Strategy • What’s Driving the Air Force OT Cyber Office’s Massive FY 2027 Budget Request? • DHS Units to Re-Up Contract With Controversial Mobile Device Data Extractor

Attorneys Warn of “Too Much” Data Breach Disclosure

Alfa Photo | Shutterstock

The “forced disclosure” requirements companies face after a cyberattack may be a double-edged sword, alerting prospective victims of similar threats, all the while making the affected business vulnerable to additional attacks or SEC sanctions.

A panel of Baker McKenzie cybersecurity experts and former government officials spoke at the firm’s “Cybersecurity Planning in Unpredictable Times” briefing. They agreed that cyberattacks are here to stay, and the communication around them has to keep pace. However, some attorneys wonder how much disclosure may be too much, especially when regulatory bodies like the SEC get involved. “Anything that you give to the government, anything that you disclose, is automatically not privileged so you have to be very strategic and careful about what you disclose,” remarked Baker McKenzie attorney Jessica Nall.

Source:

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–SaturdaySubscribe here.