New York is the latest state to adopt a law that requires businesses that collect private information on its residents to implement reasonable cybersecurity safeguards to protect that information. New York now joins California, Massachusetts and Colorado in setting these standards. New York’s law mandates the implementation of a data security program, including measures such as risk assessments, workforce training and incident response planning and testing. Businesses should immediately begin the process to comply with the Act’s requirements effective March 21, 2020 ...
Recent Updates
- New Jersey’s Employer Response Portal: What You Need to Know
- Final Rules Dismantle Civil Rights Protections for Minorities, Women, Individuals with Disabilities, and Veterans
- U.S. Court of Appeals Decision Highlights Retaliation Risks During Employee Separations
- Fast Facts About the DOL Proposed Rule for Electronic Disclosures for ERISA Group Health Plans
- San Francisco Amends its Fair Chance Ordinance