CareFirst cyberattack causes data breach of more than 1 million members

“Personal information of more than 1 million current and former CareFirst BlueCross BlueShield members was leaked in a cyberattack on the insurer’s database.” The information exposed included names, birth dates, email addresses, and subscriber identification numbers. The attack was similar to the Premera BlueCross breach, which was hit one month earlier than CareFirst. Read more: …

Excellent information and great company: check out AllClear ID’s “Resources” page

I have always been a fan of AllClear ID for being the best of the best at handling breach response logistics but now, I have to give them a shoutout for another reason. AllClear has a Resources page with some of the very best and most well-respected law firm blogs in the world. While I am …

FTC Gives Good Reason to Not (Try to) Hide Data Breaches

Why do I need to report a data breach? This is a common question that business owners ask me all of the time. In response, I rattle off a laundry list of reasons why reporting is not optional — but mandatory. This includes ethical stewardship and obligations, business and public relationship reasons, and finally legal …

Cybersecurity Risk: Law and Trends – Ethical Boardroom Article

The law is trending toward more risk of liability for Officers and Directors. Learn more about this from my recent article in Ethical Boardroom — full text available without paywall here: Cybersecurity Risk: Law and Trends. Learn more about the CyberGard Business Cyber Risk Management Program

Bleak Cybersecurity Future: Data Breaches on Track to Cost Companies $2.1 Trillion

I recently posted about how corporate general counsel now view cybersecurity as a top 3 concern. At this rate, it will soon be their #1 concern. A recent article in Corporate Counsel gives several reasons for why this problem will only continue to increase in volume, expense, and overall risk to companies: Companies continue to move …

Cybersecurity Presentation at ACFE 25th Annual DFW Fraud Conference

I am really looking forward to speaking to the 400+ attendees at the Association of Certified Fraud Examiners’ (ACFE) 25th Annual DFW Fraud Conference event on Friday, May 15, 2015. My address is titled Addressing the Most Current Cybersecurity Threats: Don’t Be the Next Victim. You can learn more about this event at this LINK …

Cybersecurity is a Top Concern for Corporate General Counsel

LawyersWeekly has found that cybersecurity is now one of the top 3 concerns of corporate general counsel. It should probably be the first, given the trend toward finding liability for officers and directors for cybersecurity incidents. See Growing Trend of Officer & Director Liability for Cybersecurity Incidents Here are my key takeaways from the LawyersWeekly article: General counsel’s …

Will Officers & Directors Be Held Legally Responsible for Companies’ Data Breaches and Cybersecurity Incidents?

Will Officers and Directors be held legally responsible for their companies’ data breaches and cybersecurity incidents? That is the question I addressed in Cybersecurity Risk: Law and Trends – A Director’s Duties Must Evolve With The Company’s, which was recently published in the Spring 2015 issue of Ethical Boardroom (see article below). The article is short …

A Few Thoughts on the Consumer Litigation Settlement in the Target Data Breach Case

Many thanks to CSO Online and Michael Santarcangelo (@catalyst) for his excellent synopsis of our conversation regarding the recent settlement of the Consumer Litigation in the Target data breach lawsuit (note, the more substantive Financial Institutions Litigation has not settled). Please give the full article a read and also give a shout-out to Michael on his Twitter …

Low Hanging Fruit Can Make a Pretty Good Cybersecurity Pie

“Cybersecurity” just sounds like something that must be really complicated, right? Sure it does — it sounds exotic and cool — and complicated. And yes, when you get into the weeds of technical things that hackers (actually, crackers) do to monkey around with computers, it can be mind-boggling. But, must you really understand all of …