Eversheds Sutherland Cybersecurity and Privacy Insights Blog
content top

DHS Announces Public Hearings and Requests Comments on Handling of Critical Infrastructure Information

  The Department of Homeland Security (“DHS”) announced that it will hold a series of public hearings and request comments on revising its regulations regarding the handling of protected critical-infrastructure information (“PCII”) in an automated and electronic format.  According to the notice published in the Federal Register, DHS is requesting comments on revising its rules...

NIST Issues Streamline Guidance for Public Comment

The National Institute of Standards and Technology (“NIST”) has issued a revised version of its guidance for sharing cyber-threat intelligence. The goal of this guidance is to help improve cybersecurity operations and risk management activities through information sharing practices.  NIST has removed elements not related to the core elements of the guidance, such as a discussion on...

Energy Bill Addressing Cyber Issues Passes Senate

The Energy Modernization Act, a comprehensive energy bill that includes electric grid cyber protections, was passed by the Senate by an 85-12 vote. The bill includes language that gives the Department of Energy greater authority to intervene in cyber emergencies as well as language that protects cyber threat data from public disclosure by classifying the data as “critical...

FTC Orders Data Security Auditors to Provide PCI DSS Assessment Data

On March 7, 2016, the Federal Trade Commission (“FTC”) ordered nine data security auditing companies to provide detailed information within 45 days about how they conduct assessments of companies when measuring their compliance with the Payment Card Industry Data Security Standards (“PCI DSS”).  The FTC announced it is specifically seeking information about “the assessment process...

EU-U.S. Privacy Shield – Full Text Released

On February 29, 2016, the European Commission released the text of the EU-U.S. Privacy Shield. The text reveals the details of a new framework that will place stronger obligations on U.S. companies to protect the personal data of EU citizens. It will also involve heightened compliance requirements and authorizes enforcement measures by the U.S. Department of Commerce (Commerce) and the...

« Older Entries Next Entries »