May 1, 2024
May 1, 2024
Answers to Top Questions About the E.U. AI Act: Risk Tiers and Big-Player Transparency
The European Regulation on Artificial Intelligence, or E.U. AI Act (Act), approved last month as the world’s first comprehensive AI law, will have a global impact, applying to any companies whose AI interacts with Europeans. It promises regulation proportionate to the risks of each AI use, but companies worry that the Act’s layers of red tape will hold back innovation. This second article in a three-part series that answers common questions about the Act addresses the implications of the Act’s risk tiers and required assessments, including how it treats internal uses of AI. Part one reported on reactions among companies and delved into gray areas around its reach, the Act’s categorization of AI providers and deployers, and requirements affecting use of generative AI features. Part three will discuss practical steps for companies to prepare now for the Act. See “IBM, eBay and Walgreens CPOs Outline 10 Steps for Building AI Governance” (Oct. 18, 2023). Read full article …
Navigating Ransomware’s Challenges
Ransomware is growing in speed, complexity and the size of financial damage it can visit upon a victim company, amplifying questions about how to deal with such events. During the recent Incident Response Forum Masterclass 2024, partners at Alston & Bird, Latham & Watkins, FGS Global and Skadden discussed these issues and how the regulatory environment has advanced, putting additional demands on companies. This article distills their insights, including those regarding ransomware response challenges and suggested practices for achieving an effective combination of people, processes and technologies. “Ransomware Incident Response Checklist” (Apr. 26, 2023). Read full article …
Off-Channel Communications Are Not the Only Source of Electronic Recordkeeping Violations
In the past several years, regulators have been laser-focused on the recordkeeping duties of regulated firms with respect to business communications made on unapproved channels. The SEC and CFTC have together imposed nearly $3 billion in penalties for violations of those duties. A recent FINRA proceeding is an important reminder that regulated firms should also remain vigilant with respect to their authorized systems – especially legacy systems. FINRA’s letter of acceptance waiver and consent (AWC) with a broker-dealer alleges that, due to deficient supervisory procedures, the firm failed to preserve more than a million business-related electronic communications on four of its own platforms. This article details FINRA’s allegations and the terms of the AWC. See “Latest SEC Sweep of Off‑Channel Communications Both Befuddles and Turns Up the Heat on Investment Advisers” (Apr. 10, 2024). Read full article …
Greenberg Traurig Welcomes Technology Litigator in San Francisco
Greenberg Traurig has announced that technology litigator Michael Burshteyn has joined the firm’s intellectual property litigation practice as a shareholder in San Francisco. He arrives from security startup CryptoMove, where he was founder and CEO. For insights from Greenberg Traurig, see our two-part series on private actions under the CPRA: “Key Issues and Defense Strategies” (Oct. 18, 2023), and “Settlement Considerations and Mitigating Risk” (Oct. 25, 2023). Read full article …
Most-Read Articles
-
Apr. 3, 2024
Examining Utah’s Pioneering State AI Law -
Apr. 17, 2024
AI Governance Strategies for Privacy Pros -
Apr. 24, 2024
Answers to Top Questions About the E.U. AI Act: Reach and Unique Requirements -
Apr. 10, 2024
Practical Insights Direct From U.S. State Privacy Enforcers -
Apr. 17, 2024
Tracking Technologies: Compliance Challenges and Solutions
Spotlight on Trailblazing Women
To mark International Women’s Day 2024, women editors and reporters of ION Analytics interviewed outstanding women in the industries and jurisdictions we cover. In this part, Jill Abitbol, Managing Editor of the Cybersecurity Law Report and Anti-Corruption Report, features notable women in data privacy, cybersecurity, white collar defense, compliance and anti-corruption law, including Christina Montgomery, Leslie Shanklin, Palmina Fava, Alexandra Ross and Lucinda Low. Enjoy reading their inspiring remarks here.
We Celebrate Data Privacy Day 2024
Read the full brief here.
Spotlight on Trailblazing Women
In honor of International Women’s Day, some of ION Analytics' editorial teams led by women interviewed notable women in the markets and industries we cover. In this part, the Cybersecurity Law Report highlighted notable women in compliance and hedge fund, data privacy and cybersecurity, and anti-corruption law, including Amii Barnard-Bahn, Abigail Bell, Genna Garver, Jane Horvath, Barbara Li, Amy Mushahwar, Mara Senn and Carol Widger. The interviews are here.
Webinar on Compliant International Data Transfers
Listen here to our discussion with our colleagues at Ethos Privacy, which took place on March 1, 2022, on how to approach international data transfer challenges.
Webinar on Getting a Handle on Vendor Contracts
A recording of the March 10 webinar can be accessed here.
Cybersecurity Resolutions for 2021
In this quick take video, we talk about some of our cybersecurity resolutions for 2021.
Facial Recognition Concerns
In this short video, we discuss the privacy and bias concerns with facial recognition technology.
ACR and CSLR Spring Update 2020
The Senior Editors of the Anti-Corruption Report and the Cybersecurity Law Report recently teamed up to present an update on the trends and hot topics in the anti-corruption, cybersecurity and data privacy spaces since the beginning of the year and what the publications will be focusing on in the coming months. A complimentary download of the webinar is available here.
Upcoming Webinar: Companywide Work From Home - Cybersecurity and Privacy Best Practices
Please join us on Monday, March 23, 2020, from 12:00 p.m.- 12:30 p.m. EDT for a complimentary webinar discussing the cybersecurity and privacy challenges the shift to remote working has created and how to overcome them. Registration information for the webinar is here.
Upcoming Webinar to Explore Best Practices for Alternative Data Use
Please join us on Wednesday, January 15, 2020, at 11:00 a.m. EST for a complimentary webinar hosted by our sister publication, the Hedge Fund Law Report, discussing issues relating to the use of alternative data by private fund managers. To register for the webinar, click here.
Upcoming HFLR/CSLR Webinar to Explore Strategies and Tactics for Conducting an Effective Tabletop Exercise
Please join the Hedge Fund Law Report and the Cybersecurity Law Report on Tuesday, July 30, 2019, at 1:00 p.m. ET for a complimentary webinar discussing the strategies and tactics companies can employ to conduct an effective tabletop exercise. GCs and CCOs are encouraged to invite their CISOs and CTOs to join as well. The webinar will be moderated by Shaw Horton, Associate Editor of the Hedge Fund Law Report, and will feature Luke Dembosky, partner at Debevoise, John “Four” Flynn, chief information security officer at Uber, and Jill Abitbol, Senior Editor of the Cybersecurity Law Report. Registration for the webinar is available here.
Anti-Corruption Webinar: How HPE Is Using Its New T&E Tool to Generate Compliance Metrics
Measuring the effectiveness of a compliance program can be tricky, but some companies are finding ways to use their existing internal controls to generate useful data. Join our sister publication the Anti-Corruption Report (ACR) for a complimentary webinar that explores Hewlett Packard Enterprises’ new travel-and-entertainment-approval tool. On Wednesday, March 27, 2019, from 1:00 p.m. to 2:00 p.m. EDT, the ACR’s Megan Zwiebel will interview Becky Rohr, vice-president of anti-corruption and global trade at Hewlett Packard Enterprises, about how they are using their T&E tool to measure and improve compliance. Registration information is here.