Skip to main content

Privacy & Cybersecurity

Viewpoints

Filter by:

Yesterday, the Department of Commerce published a notice in the Federal Register, seeking feedback on proposals in its recently-unveiled privacy report.
Read more
Since March 1, 2010, privacy professionals have been waiting for a data breach that could bring an enforcement action under 201 CMR 17.00, the Massachusetts privacy regulations. I just spoke with Paul Roberts, editor of threatpost.com, a blog that posted an entry yesterday regarding a breach that could do just that.  
Read more

Questions Asked by the FTC in the Privacy Report - Part II

December 7, 2010 | Blog | By Cynthia Larose

In last week's Privacy Report , the Federal Trade Commission posed a series of questions, soliciting comment and discussion from stakeholders to better inform its final report on the subject, due to be issued mid-2011.
Read more
In all the flurry of privacy-related issues over the last few weeks, a deadline has been slowly creeping up......remember the Red Flags Rule?  
Read more
The Federal Trade Commission (FTC) has just released its long-awaited (and 123-page long) report on consumer privacy: "Protecting Consumer Privacy in an Era of Rapid Change: A Proposed Framework for Businesses and Policymakers"  (the "Report").
Read more
The Federal Trade Commission (FTC) has reached a settlement with EchoMetrix over charges that it failed to inform parents that information it was collecting about their children would be disclosed to third-party marketers. 
Read more
Recently, a California state appellate court in Cutler v. Dike, No. B210624, 2010 WL 3341663 (Cal. Ct. App. Aug. 26, 2010), upheld a jury finding that an employer illegally fired an employee because he objected to the manner in which his employer maintained its confidential patient information.
Read more

WellPoint Sued by Indiana AG for $300K - UPDATE

November 1, 2010 | Blog | By Cynthia Larose

Back on July 1, we blogged in this space about a very large data breach experienced by health insurer WellPoint. According to WellPoint, over 470,000 individual insurance customers may have been affected by a breach that went unreported for over five months. 
Read more

Encryption -- Not Always the "Silver Bullet"

October 18, 2010 | Blog | By Cynthia Larose

Recently, a news bulletin in Health Data Management  highlighted the point that many security experts are trying to make these days: Encryption is not always a "safe harbor."
Read more
It’s a distressingly common scenario. A corporate laptop containing job applicant data, including social security numbers, is stolen from an employee who has taken the laptop off of corporate premises. Access to the social security numbers makes it possible for wrongdoers to engage in identity theft.
Read more

REMINDER - HITECH/201 CMR 17.00 Compliance Workshop

July 8, 2010 | Blog | By Cynthia Larose

On July 13, Mintz Levin will be joined by Sophos, Six Weight Consulting, and MFA Cornerstone Consulting to hold a free compliance workshop focused on both the gaps and overlap of Massachusetts’ data protection regulation 201 CMR 17.oo and the recent updates to federal health and medical data privacy found in the HITECH Act.
Read more
At the urging of congressional lawmakers, the Federal Trade Commission has for the fifth time delayed enforcement of the “Red Flags” Rule – this time through December 31, 2010. In the interim, Congress plans to consider legislation that would alter the scope of entities covered under the Rule.
Read more

Major Data Breach at California Health Insurer

June 28, 2010 | Blog | By Cynthia Larose

Anthem Blue Cross is notifying approximately 230,000 members and applicants for individual health insurance of a breach involving a web site used by individuals to apply for insurance and track the status of their applications.
Read more
It’s been a while since we have visited the Federal Trade Commission’s Red Flags Rule here in this blog. The oft-postponed deadline is now fast approaching on June 1. Except, that is, for lawyers and now, doctors.
Read more

Privacy Events Calendar

May 6, 2010 | Blog | By Cynthia Larose

Symposium on Privacy and Innovation
Tomorrow, the Commerce Department is hosting a day-long symposium called “A Dialogue on Privacy and Innovation.” It will include several panel discussions to discuss stakeholder views and to facilitate further public discussion on privacy policy in the United States.
Read more
A Connecticut woman has filed a charge of discrimination under the Federal Genetic Information Nondiscrimination Act ("GINA"), which prohibits discrimination against employees based upon their status as carriers of genetic information.
Read more
Brokerage firm DA Davidson has agreed to pay a fine of $375,000 for failing to protect confidential client data from Latvian hackers who breached the company in 2007 in an online extortion scheme and the three have pleaded guilty in Montana.
Read more

Privacy and Security Bits and Bytes

April 9, 2010 | Blog | By Cynthia Larose

Our Friday afternoon feature --
Virginia Adds Medical Information Breach Law - The Commonwealth of Virginia has amended its data breach notification law to include breaches of medical information.
Read more

More on last week's NJ Supreme Court decision -

April 6, 2010 | Blog | By Cynthia Larose

The decision we blogged about in this space last week is creating quite a bit of buzz in both privacy and employment law circles. My employment law colleagues in our New York office have authored an analysis of the decision here: Employment Alert: New Jersey Supreme Court Finds Privacy Rights in Employee E-Mails
Read more

More detail on Dave & Buster's FTC Settlement

March 29, 2010 | Blog | By Cynthia Larose

As we blogged here last week, we were going to post our Client Alert with further details about the settlement and consent order reached by the restaurant chain Dave & Buster's and the Federal Trade Commission relating to the breach suffered by the chain.
Read more

Explore Other Viewpoints: