• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to secondary sidebar

Alston & Bird Privacy, Cyber & Data Strategy Blog

  • Home
  • Services
  • Events
  • Contacts

Kristen Bartolotta

Avatar photo

About Kristen Bartolotta

Kristen Bartolotta helps clients navigate complex privacy and cybersecurity challenges. She regularly advises on breach investigations and response efforts, guiding companies through ransomware attacks and other cybersecurity incidents.

[Read Bio]

CMMC Phase II is Suspended, but Defense Contractors’ Cybersecurity Obligations are Not

July 21, 2026 By Kim Peretti, Andrew Liebler, Lance Taubin and Kristen Bartolotta

The Department of Defense (“DOD”) has announced the immediate suspension of the Cybersecurity Maturity Model Certification (CMMC) Phase II requirements, which were scheduled to take effect on November 10, 2026. This announcement is significant because, as we noted in our prior advisory, Phase II was expected to move CMMC toward more formal assessment requirements for […]

Filed Under: National Security & Digital Crimes Tagged With: Cybersecurity

The White House’s Gold Eagle Initiative Signals a New Phase in AI Enabled Cyber Defense

July 19, 2026 By Kim Peretti and Kristen Bartolotta

The White House has launched “Gold Eagle,” a new cybersecurity vulnerability coordination clearinghouse designed to use advanced AI capabilities to accelerate how the government and industry identify, prioritize, verify, and remediate software vulnerabilities. The initiative was established under the June 2, 2026 Executive Order, “Promoting Advanced Artificial Intelligence Innovation and Security,” and is being framed […]

Filed Under: AI Cybersecurity & Privacy, Artificial Intelligence (AI), National Security & Digital Crimes Tagged With: Artificial Intelligence, Cybersecurity, The White House

New Executive Order Promotes AI Innovation While Strengthening Cybersecurity Defenses

June 15, 2026 By Kim Peretti and Kristen Bartolotta

On June 2, 2026, President Trump signed an Executive Order titled “Promoting Advanced Artificial Intelligence Innovation and Security” (the “Order”). The Order reflects the Administration’s stated policy of advancing U.S. AI leadership through collaboration with the private sector, while taking steps to harden government and critical infrastructure systems against emerging cyber threats. Importantly, the Order […]

Filed Under: AI Cybersecurity & Privacy, Artificial Intelligence (AI) Tagged With: AI, Artificial Intelligence

Britain’s Financial Regulators Raise the Bar on Cyber Reporting and Resilience

April 20, 2026 By Kelly Hagedorn and Kristen Bartolotta

Cyber risk has shifted from a technical issue to a systemic one and Britain’s financial regulators are making that reality unmistakably clear. On March 18, 2026, the Financial Conduct Authority (FCA), Prudential Regulation Authority (PRA), and Bank of England announced a new, unified cyber and operational resilience framework that strengthens the requirements on how firms […]

Filed Under: Crisis & Data Breach Response, European Privacy & Cybersecurity, Privacy & Cyber Regulatory Enforcement Tagged With: Cybersecurity, Data Breach Notification, Data Protection, EU Data Protection, UK data protection

SEC Withdraws Proposed Cyber-Related Rule Applicable to Broker-Dealers And Signals SolarWinds Settlement on the Horizon

July 18, 2025 By Cara Peterman, Sierra Shear, Madeleine Juszynski Davidson and Kristen Bartolotta

The Securities and Exchange Commission (SEC) recently announced the withdrawal of several Biden-era regulations, including a proposed rule that would have required a broad range of platforms and financial intermediaries (such as broker-dealers, clearing agencies, national securities exchanges, and transfer agents) to adopt policies and procedures that address cybersecurity risks. The proposed rule also would […]

Filed Under: Board Governance & Cyber Risk Management, Privacy & Cyber Regulatory Enforcement Tagged With: Cybersecurity, Regulatory Enforcement, Securities and Exchange Commission

  • Page 1
  • Page 2
  • Page 3
  • Interim pages omitted …
  • Page 7
  • Go to Next Page »

Primary Sidebar

This blog is a service of Alston & Bird’s Privacy, Cyber & Data Strategy team and focuses on key data privacy and data security issues.


Receive email notifications when new posts are added.

Receive email notifications when new posts are added.


RANSOMWARE FUSION CENTER
Click here to request access

THE DIGITAL DOWNLOAD
Click here to see the editions

PRIVACY & CYBER EVENTS
Click here to see upcoming and past events

PRIVACY & CYBER MAILINGS
Click here to sign up


Secondary Sidebar

Categories

Recent Posts

  • European Commission Publishes New Guidelines and Code of Practice on GenAI Transparency
  • CMMC Phase II is Suspended, but Defense Contractors’ Cybersecurity Obligations are Not
  • EU Regulators Outline GDPR Requirements for AI Web Scraping
  • The White House’s Gold Eagle Initiative Signals a New Phase in AI Enabled Cyber Defense
  • DROP Is Coming Due: What California’s Delete Act Means for Data Brokers in August
Copyright © 2026 · Alston & Bird · All Rights Reserved. Privacy.