Eversheds Sutherland Cybersecurity and Privacy Insights Blog
content top

In the spotlight—Cyber resilience and risks around outsourcing

The operational resilience of financial institutions has come under increased scrutiny following a number of recent high-profile IT failures and cyberattacks. Operational resilience itself is much broader than merely IT and cyber events: it covers events ranging from natural disasters to civil unrest, and those impacting critical national and market infrastructure. Learn...

Cybersecurity and Data Privacy review and update: Looking back on 2018 and planning ahead for 2019

From the implementation of the GDPR to the passage of the CCPA, the year 2018 proved to be a monumental one for cybersecurity and data privacy. Regulators from around the world responded to devastating, large-scale cyber-attacks, and a desire for their citizens to have more control over their data, by passing a wide range of regulations aimed at protecting consumer information. These...

FERC Issues Geomagnetic Disturbance Final Rule

FERC has approved reliability requirements to address the impacts of geomagnetic disturbances. The requirements were proposed by the North American Electric Reliability Corporation (NERC) as revisions to NERC’s mandatory and enforceable reliability standards applicable to owners and operators of major electric transmission facilities. FERC determined that NERC’s standard “better...

Cyber security rules needed for pipelines: FERC commissioners

If you have turned on the news or picked up a paper lately, you have probably seen reports that foreign enemies are increasingly launching cyber-attacks on America’s critical infrastructure, including energy facilities. To address these threats, electric grid operators must comply with mandatory standards overseen by the Federal Energy Regulatory Commission (FERC) that protect...

FERC Clarifies FAST Act Regulations and Proposes Rules on Geomagnetic Disturbance Events

FERC has clarified its regulations implementing the Fixing America’s Surface Transportation Act (FAST Act) related to Critical Energy/Electric Infrastructure Information (CEII). In Order No. 833-A, issued May 17, 2018, FERC clarified that it would consider “public safety benefits” in evaluating a request for CEII, and that its CEII Coordinator may solicit input from affected parties in...

NERC and power company reach settlement on violations of cybersecurity standards

A power company has reached an agreement with the North American Electric Reliability Corporation (NERC) to pay $2.7 million for violations of a cybersecurity reliability standard. This violation resulted from the online exposure of the company’s data due to a vendor’s mishandling of the data, allowing unrestricted third-party access to 30,000 asset records. The violation posed a...

« Older Entries