Time is running out. The effective date of New York’s cybersecurity law mandating that organizations implement an information security program to protect “private information” of New York State residents, including employee and consumer data, is now only 45 days away. New York’s law requires the implementation of a cybersecurity program, including reasonable protective measures such as risk assessments, workforce training and incident response planning and testing. Businesses should immediately take steps to comply with the Act’s requirements effective March ...
New York is the latest state to adopt a law that requires businesses that collect private information on its residents to implement reasonable cybersecurity safeguards to protect that information. New York now joins California, Massachusetts and Colorado in setting these standards. New York’s law mandates the implementation of a data security program, including measures such as risk assessments, workforce training and incident response planning and testing. Businesses should immediately begin the process to comply with the Act’s requirements effective March 21, 2020 ...
Recent Updates
- New Jersey’s Employer Response Portal: What You Need to Know
- Final Rules Dismantle Civil Rights Protections for Minorities, Women, Individuals with Disabilities, and Veterans
- U.S. Court of Appeals Decision Highlights Retaliation Risks During Employee Separations
- Fast Facts About the DOL Proposed Rule for Electronic Disclosures for ERISA Group Health Plans
- San Francisco Amends its Fair Chance Ordinance