Disclosing Information Security Breaches Under Privacy and Securities Laws

The Privacy Rights Clearinghouse estimates that over 100 million records containing sensitive personal information have been involved in security breaches. This non-profit consumer organization has tracked these breaches on its website (www.privacyrights.org) beginning with the significant and well-publicized ChoicePoint breach in February 2005. As a result, over two-thirds of states enacted security breach notification laws governing the notification that a company must make in the event of a security breach. This article outlines the requirements for providing notification of a security breach under state security breach notification law by any company and the factors that a public company needs to take into account regarding whether to disclose a security breach under federal securities law.

19 minute read February 27, 2007 at 09:36 AM
By
Law.com Staff
Disclosing Information Security Breaches Under Privacy and Securities Laws

[Editor's Note: This is the second in a series of articles addressing some of the key issues surrounding corporate responsibility with respect to the privacy of information and security breaches.]

This premium content is locked for LawJournalNewsletters subscribers only

ENJOY UNLIMITED ACCESS TO THE SINGLE SOURCE OF OBJECTIVE LEGAL ANALYSIS, PRACTICAL INSIGHTS, AND NEWS IN LawJournalNewsletters

  • Stay current on the latest information, rulings, regulations, and trends
  • Includes practical, must-have information on copyrights, royalties, AI, and more
  • Tap into expert guidance from top entertainment lawyers and experts

Already have an account? Sign In Now

For enterprise-wide or corporate access, please contact Customer Service at [email protected] or call 1-877-256-2473.

NOT FOR REPRINT

© 2026 ALM Global, LLC, All Rights Reserved. Request academic re-use from www.copyright.com. All other uses, submit a request to [email protected]. For more information visit Asset & Logo Licensing.

Continue Reading

Agentic AI introduces risks that are novel and complex, but the most effective response is a familiar one. Zero Trust answers the problem of when an AI agent misfires on its own by constraining what an agent can do rather than betting on how it will behave.

July 31, 2026

The outsourcing of office and administrative services is expected to grow 50%-60% in the next five years. Contrary to what decision-makers think, and what the service providers hope you think, the biggest risk in outsourcing isn't choosing the wrong provider. It's outsourcing the wrong process, under the wrong model, with the wrong performance measures and contract terms.

July 31, 2026