app developers, app store, Apps, COPPA, data security, FTC, information security, mobile apps, privacy
Recent International Study Reports Delinquencies in App Privacy Disclosures
By InfoLawGroup LLP on September 15, 2014
Breach, information security
Massachusetts Continues Aggressive Information Security Enforcement Agenda
By Mark Paulding on July 25, 2014
Breach, breach response, data breach, data protection, InfoLawGroup, information security, new york breach, privacy, Segalis
Record Number of Data Breaches for New Yorkers in 2013
By InfoLawGroup LLP on July 17, 2014
and COPPA, Children’s Privacy, privacy law
New COPPA Options for Verifiable Consent
By Heather Nolan on July 17, 2014
cybersecurity, cybersecurity framework, data protection, data security, hacking, InfoLawGroup, information security, information security program, Paulding, Red Flags Rule, Segalis, smart grid, white house order
Cybersecurity Effort Moves Forward – NIST Issues Final Critical Infrastructure Cybersecurity Framework
By InfoLawGroup LLP on February 18, 2014
Breach, information security, risk management
Information Security Strategy: A Lesson from the Target Breach
By Mark Paulding on February 18, 2014
cybersecurity, data protection, InfoLawGroup, information security, InformationLawGroup, privacy, Segalis, utility
White House Cyber Security Order Likely to Have Long-Term Impact on Critical Infrastructure Owners and Operators
By InfoLawGroup LLP on February 13, 2013
cyber insurance, data breach, data privacy, information security, risk management, SMB
How Cyber Risk Insurance Can Help SMB's Stay in Business After a Breach
By InfoLawGroup LLP on October 03, 2012
Boris, byod, California, EEOC, employee, employment, Illinois, Law, Maryland, Media, Michigan, Nihar, NLRA, NLRB, privacy, privacy law, Segalis, Shah, Social
Illinois Second State to Enact Law Barring Employers from Obtaining Current or Prospective Employees' Social Media Account Credentials
By InfoLawGroup LLP on August 06, 2012
AB22, Boris Segalis, consumer credit report, credit report, EEOC, employee privacy, group, InfoLawGroup, information, Law, privacy law, Tanya Forsheit, workplace privacy
Restrictions on Use of Consumer Reports in Hiring Process Enacted in California
By InfoLawGroup LLP on October 10, 2011
On October 10, 2011, Governor Brown signed into law a bill, AB22, that restricts the use of consumer credit reports in the hiring and promotion process.
Blumethal, Breach, data security, InfoLawGroup, information law group, information security, Personal Data Protection and Breach Accountability Act, privacy, privacy legislation, Segalis
We Discuss Benefits of Federal Information Security Legislation on Fox
By InfoLawGroup LLP on September 14, 2011
Earlier this week we blogged about Senator Blumenthal's (D-CT) proposed Personal Data Protection and Breach Accountability Act of 2011. Today, InfoLawGroup partner Boris Segalis spoke on Fox Live about the advantages of federal information security legislation.
Breach, data protection, FTC, InfoLawGroup, information law group, information security, information security breach, information security law, information security program, InformationLawGroup, privacy, privacy law, SAFE Data Act, security breach, Segalis, state breach law
Federal Information Security and Breach Notification Law Approved by House Trade Subcommittee
By InfoLawGroup LLP on July 25, 2011
On July 20, 2011, the U.S. House of Representatives Energy and Commerce Committee's Trade Subcommittee approved the Secure and Fortify Electronic Data Act (the "SAFE Data Act"). The Act would require any business that maintains personal information to implement an information security program and notify affected individuals in the event of an information security breach. The SAFE Data Act would preempt the over 45 existing state information security and breach notification laws and task the Federal Trade Commission with developing information security rules implementing the Act.
consent, data protection, InfoLawGroup, information law group, information security, Legislation, privacy enforcement, Russia, Segalis
Russia Amends Federal Data Protection Law; Privacy Enforcement on the Rise
By InfoLawGroup LLP on July 19, 2011
Last week, the upper house of Russia's federal legislature approved amendments to the country's federal data protection law. The amendments impose detailed information security requirements on businesses that process personal data and revise some of the statute's data subject consent provisions.The amended law will come into force when it is published in the official newsletter.
Ceridian, deceptive practices, enforcement, Federal Trade Commission, FTC, FTC Act, FTC consent, InfoLawGroup, information law group, information security, information security program, InformationLawGroup, Lookout, personal data, personal information, privacy enforcement, Section 5, Segalis
FTC Privacy Enforcement Update: Two Companies Allegedly Failed to Protect Sensitive Employee Data
By InfoLawGroup LLP on May 06, 2011
On May 3, 2011, the Federal Trade Commission announced that Ceridian Corporation and Lookout Services, Inc. agreed to settle the FTC's allegations that the companies failed to safeguard their business customers' employee personal information. Ceridian's services include payroll processing, payroll-related tax filing, benefits administration and other human resource services for business customers. Lookout provides a web-based computer product that is designed to help employers comply with their obligations under federal law to complete and maintain a U.S. Citizenship and Immigration Services Form I-9 about each employee in order to verify that the employee is eligible to work in the United States.
Boris Segalis, broker, data protection, dealer, financial privacy, InfoLawGroup, information law group, information security, Nicole Friess, privacy, privacy assessment, privacy enforcement, privacy rule, Regulation S-P, Regulation SP, Safeguards Rule, SEC, Securities and Exchange Commission
Federal Privacy Enforcement Update: SEC Fines Executives for Privacy and Security Violations
By InfoLawGroup LLP on April 13, 2011
As we have reported previously on our blog, federal agencies, including the FTC, NLRB and EEOC have been very active in taking action against privacy and information security violations. This trend continues with the Securities and Exchange Commission's (SEC's) recent announcement of a settlement with three former executives a brokerage firm (GunnAllen Financial, Inc.). The SEC alleged that the former executives violated the Commission's Privacy Rule and Safeguards Rule (Regulation S-P) and aided and abetted the firm in violating these rules. This enforcement action marks the first time the SEC assessed financial penalties against individuals charged solely with violating Regulation S-P.
Daily Journal, InfoLawGroup, information law group, information security, Law, law firm, Los Angeles, privacy, profile, social network
InfoLawGroup Profiled in Los Angeles Daily Journal: "The Social (Law Firm) Network"
By InfoLawGroup LLP on April 08, 2011
InfoLawGroup was recently profiled in the Los Angeles Daily Journal. "The Social (Law Firm) Network" is reprinted here with permission from the Daily Journal. We wish all of our clients, friends, and readers a great weekend.
Boris Segalis, Buzz, Consent Order, Consumer Protection, data protection, data security, Federal Trade Commission, FTC, FTC Act, Google, Google settlement, InfoLawGroup, information law group, information security, personal information, privacy, privacy assessment, privacy by design, privacy enforcement, risk assessment, Safe Harbor, social media, social network
FTC Takes a Big Step in Privacy Enforcement with Google Buzz Settlement
By InfoLawGroup LLP on April 06, 2011
The Google Buzz settlement that the Federal Trade Commission announced on March 30, 2011 is the latest in the line of the Commission's numerous Section 5 actions related to privacy and data security violations. The Google Buzz settlement, however, is unique in several important ways. The settlement represents (i) the first FTC settlement order has requires a company to implement a comprehensive privacy program to protect the privacy of consumers' information, and (ii) the Commission's first substantive U.S.-EU Safe Harbor framework enforcement action. Let's dive in (make sure to read the "Action Item" at the conclusion of the post!).
Boris Segalis, data protection, Electric Utility Data Protection Act, InfoLawGroup, information law group, InformationLawGroup, Oklahoma, personal information, privacy law, privacy legislation, smart grid, SmartGrid
Oklahoma State House Passes Smart Grid Privacy Bill
By InfoLawGroup LLP on March 23, 2011
On March 18, 2011, the Oklahoma State House passed the Electric Utility Data Protection Act (House Bill 1079). The state's Senate will consider the bill next.The Act seeks to establish standards to govern the use and disclosure of electric utility usage data (including personal information) by electric utilities, customers of electric utilities and third parties. The Act also requires electric utility companies to maintain the confidentiality of customer data and allow customers to access the data. State Rep. Scott Martin noted that customers will see energy savings from the Smart Grid, but are vulnerable to potential access of their data by third parties. "This legislation should ensure customers can reap the many benefits of this new system without having to fear someone getting access to their data without permission," said Martin. The legislation is said to have the support of the Oklahoma Gas & Electric Company, which has already converted 100,000 standard meters to smart meters in the state and plans to install 800,000 smart meters in the next two years.
behavioral advertising, behavioral marketing, chitika, deceptive practices, Federal Trade Commission, FIPPs, FTC Act, FTC consent, InfoLawGroup, information law group, information security, InformationLawGroup, opt-out, privacy enforcement, Section 5, Segalis, tracking, twitter
Privacy Enforcement Update: FTC Settles with Twitter and Chitika
By InfoLawGroup LLP on March 18, 2011
As we have previously reported on our blog, 2011 has seen a whirlwind of privacy enforcement activity. The FTC, NLRB, EEOC, HHS and FINRA have all taken privacy enforcement actions this year. This March, the FTC has announced privacy settlements with Chitika and Twitter.
AT&T, FOIA, InfoLawGroup, information law group, personal privacy, privacy law, Supreme Court
Supreme Court Holds Corporations Not Entitled to "Personal Privacy" under FOIA Exemption
By InfoLawGroup LLP on March 01, 2011