by Eric J. Ellman | Nov 9, 2023
The California Privacy Protection Agency (CPPA) noticed its December 8 meeting. In advance of the the meeting, the Agency issued a Draft Regulations on Automated Decisionmaking Technology, Risk Assessments, and Cybersecurity Audits. The document notes that “The Agency...
by Eric J. Ellman | Nov 2, 2023
On November 1, 2023, DFS announced amendments to Cybersecurity Regulation, 23 NYCRR Part 500. (See the final adopted regulatory documents on the Regulatory Activity – Financial Services Law page. Unlike in prior rounds where we did file comments, we did not do...
by Eric J. Ellman | Jul 31, 2023
In July 2023 the White House issued the National Cybersecurity Strategy Implementation Plan (NCSIP). A Covington blog notes that The NCSIP identifies 65 initiatives – to be led by 18 different departments and agencies – that are designed as a roadmap for implementing...
by Eric J. Ellman | Jul 5, 2023
In June 2023, the NY DFS issued Revised Proposed Second Amendment to 23 NYCRR 500 Cybersecurity Requirements for Financial Services Companies. This revised proposal is marked up. The Department also issued a: Notice of Revised Rulemaking Regulatory Impact Statement...
by Eric J. Ellman | Mar 6, 2023
In March 2023, the White House announced a “National Cybersecurity Strategy to secure the full benefits of a safe and secure digital ecosystem for all Americans. In this decisive decade, the United States will reimagine cyberspace as a tool to achieve our goals in a...