Law.com Subscribers SAVE 30%

Call 855-808-4530 or email [email protected] to receive your discount on a new subscription.

The DOJ Goes Phishing: The Rise of False Claims Act Cybersecurity Litigation

By Annie Railton, James Gatta, Jud Welle and Emily Notini
March 01, 2022

This past October, Deputy Attorney General Lisa Monaco announced the launch of the Department of Justice's (DOJ) Civil Cyber-Fraud Initiative targeting entities and individuals that fail to follow government cybersecurity standards. Under the initiative, to be led by the Fraud Section of the Civil Division's Commercial Litigation Branch, the DOJ announced that it would utilize its powerful enforcement tool — the False Claims Act (FCA) — to pursue cybersecurity-related fraud by government contractors and grant recipients. Shortly after the announcement, in remarks at the Cybersecurity and Infrastructure Security Agency (CISA) 4th Annual National Cybersecurity Summit on Oct. 13, 2021, DOJ Civil Division acting Assistant Attorney General Brian Boynton described three "prime candidates" for potential FCA enforcement under the initiative: 1) providing products or services that fail to comply with cybersecurity standards; 2) misrepresenting security controls and practices; and 3) failing to timely report suspected cybersecurity breaches.

The DOJ's initiative comes alongside increased government activity to curb cybersecurity and government contractor risks. Earlier last year, emphasizing this new focus on cybersecurity and compliance, President Biden issued an Executive Order on Improving the Nation's Cybersecurity (EO 14028), which called for, among other things, federal agencies to adopt updated contractual requirements for information technology (IT) and operational technology (OT) contractors to share information about potential cyber threats. In January 2022, President Biden signed a National Security Memorandum to Improve the Cybersecurity of National Security, Department of Defense, and Intelligence Community Systems, calling out cybersecurity as a national security and economic security imperative for the administration. And on Feb. 9, 2022, the Securities and Exchange Commission (SEC) announced upcoming new rules requiring registrants to maintain cybersecurity polices and standards and report significant cyber incidents to the SEC, among other things.

This premium content is locked for Entertainment Law & Finance subscribers only

  • Stay current on the latest information, rulings, regulations, and trends
  • Includes practical, must-have information on copyrights, royalties, AI, and more
  • Tap into expert guidance from top entertainment lawyers and experts

For enterprise-wide or corporate acess, please contact Customer Service at [email protected] or 877-256-2473

Read These Next
New York's Latest Cybersecurity Commitment Image

On Aug. 9, 2023, Gov. Kathy Hochul introduced New York's inaugural comprehensive cybersecurity strategy. In sum, the plan aims to update government networks, bolster county-level digital defenses, and regulate critical infrastructure.

Law Firms are Reducing Redundant Real Estate by Bringing Support Services Back to the Office Image

A trend analysis of the benefits and challenges of bringing back administrative, word processing and billing services to law offices.

Bit Parts Image

Summary Judgment Denied Defendant in Declaratory Action by Producer of To Kill a Mockingbird Broadway Play Seeking Amateur Theatrical Rights

The Bankruptcy Hotline Image

Recent cases of importance to your practice.

How AI Has Affected PR Image

When we consider how the use of AI affects legal PR and communications, we have to look at it as an industrywide global phenomenon. A recent online conference provided an overview of the latest AI trends in public relations, and specifically, the impact of AI on communications. Here are some of the key points and takeaways from several of the speakers, who provided current best practices, tips, concerns and case studies.