• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to secondary sidebar

Alston & Bird Privacy, Cyber & Data Strategy Blog

  • Home
  • Services
  • Events
  • Contacts

Crisis & Data Breach Response

Connecticut Proposes Mandatory Forensic Investigation and Reporting for Large Scale Data Breaches

March 31, 2026 By Kim Peretti and Alysa Austin

Connecticut lawmakers have introduced legislation that, if enacted, would significantly expand breach-response obligations for organizations affected by large-scale cybersecurity incidents. As proposed, Raised Senate Bill 117 (SB 117), would create a new category of “massive” data breaches and impose mandatory forensic investigation and reporting requirements that go well beyond Connecticut’s existing breach notification framework. What […]

Filed Under: Crisis & Data Breach Response, Privacy & Cyber Regulatory Enforcement Tagged With: Connecticut Breach Notification Law, Data Breach Notification, Large-scale breaches

CISA Warns Organizations to Harden Endpoint Management Systems Following Cyberattack on Stryker Corporation

March 31, 2026 By Kim Peretti and Andrew Rice

On March 18, 2026, the Cybersecurity and Infrastructure Security Agency (CISA) issued an alert (the Alert) urging U.S. organizations to harden their endpoint management systems following the March 11, 2026 cyberattack against medical technology firm Stryker Corporation (Stryker), which disrupted Stryker’s internal Microsoft environment. CISA stated that it is conducting enhanced coordination with federal partners, […]

Filed Under: Crisis & Data Breach Response, National Security & Digital Crimes, Privacy & Cyber Regulatory Enforcement

CISA Revives CIRCIA Rulemaking

March 2, 2026 By Kim Peretti, Lance Taubin and Scott Hilsen

Almost two years after seeking stakeholder input about a final rule under the Cyber Incident Reporting for Critical Infrastructure Act of 2022 (CIRCIA), the Cybersecurity and Infrastructure Security Agency (CISA) announced that it will hold virtual town hall meetings for certain industry sectors in March and April 2026 to solicit additional input on the Notice […]

Filed Under: Board Governance & Cyber Risk Management, Crisis & Data Breach Response, National Security & Digital Crimes, Privacy & Cyber Regulatory Enforcement Tagged With: CIRCIA, CISA, Cybersecurity, Regulatory Enforcement

New Jersey Expands HIPAA-Based Exemptions Under Its Comprehensive Privacy Law

February 16, 2026 By Jennifer Everett, Dorian Simmons and Sara Pullen

On January 20, 2026, the New Jersey Governor signed Assembly Bill A5017 (“Amendment”), amending the New Jersey Data Protection Act (“NJDPA”). The Amendment exempts data that is not protected health information (“non-PHI”) from the NJDPA when it is handled by covered entities or business associates in accordance with the privacy and security requirements of the […]

Filed Under: Crisis & Data Breach Response, HIPAA/Health Information Privacy, Security & Breach Response Tagged With: Cybersecurity, Data Protection, Health Information Security, HIPAA, HITECH, Privacy, US State Law

FBI Launches Operation Winter SHIELD in Effort to Advance Cyber Resilience Across Critical Sectors

February 4, 2026 By Kim Peretti, Lance Taubin and Andrew Rice

On January 28, 2026, the Federal Bureau of Investigation (FBI) announced the launch of Operation Winter SHIELD, a coordinated initiative designed to promote adoption of core defensive measures that are shown to mitigate common intrusion vectors. Operation Winter SHIELD identifies ten priority actions the FBI views as important in improving organizational cyber resilience. The FBI […]

Filed Under: Crisis & Data Breach Response, National Security & Digital Crimes, Privacy & Cyber Regulatory Enforcement Tagged With: Cyber defenses, Cybersecurity, Federal Bureau of Investigation (FBI), National Security

  • Page 1
  • Page 2
  • Page 3
  • Interim pages omitted …
  • Page 41
  • Go to Next Page »

Primary Sidebar

This blog is a service of Alston & Bird’s Privacy, Cyber & Data Strategy team and focuses on key data privacy and data security issues.


Receive email notifications when new posts are added.

Receive email notifications when new posts are added.


RANSOMWARE FUSION CENTER
Click here to request access

THE DIGITAL DOWNLOAD
Click here to see the editions

PRIVACY & CYBER EVENTS
Click here to see upcoming and past events

PRIVACY & CYBER MAILINGS
Click here to sign up


Secondary Sidebar

Categories

Recent Posts

  • Connecticut Proposes Mandatory Forensic Investigation and Reporting for Large Scale Data Breaches
  • CISA Warns Organizations to Harden Endpoint Management Systems Following Cyberattack on Stryker Corporation
  • The Trump Administration’s AI Framework: Key Federal Policy Priorities and Legislative Recommendations
  • EU Privacy Regulators Weigh in on the Proposed EU Biotech Act: Key Takeaways for Life Sciences Companies
  • A New U.S. Cyber Strategy: President Trump’s Cyber Strategy for America
Copyright © 2026 · Alston & Bird · All Rights Reserved. Privacy.