Law.com Subscribers SAVE 30%

Call 855-808-4530 or email [email protected] to receive your discount on a new subscription.

The Rise of False Claims Act Cybersecurity Litigation

By Annie Railton, James Gatta, Jud Welle and Emily Notini
March 01, 2022

This past October, Deputy Attorney General Lisa Monaco announced the launch of the Department of Justice's (DOJ) Civil Cyber-Fraud Initiative targeting entities and individuals that fail to follow government cybersecurity standards. Under the initiative, to be led by the Fraud Section of the Civil Division's Commercial Litigation Branch, the DOJ announced that it would utilize its powerful enforcement tool — the False Claims Act (FCA) — to pursue cybersecurity-related fraud by government contractors and grant recipients. Shortly after the announcement, in remarks at the Cybersecurity and Infrastructure Security Agency (CISA) 4th Annual National Cybersecurity Summit on Oct. 13, 2021, DOJ Civil Division acting Assistant Attorney General Brian Boynton described three "prime candidates" for potential FCA enforcement under the initiative: 1) providing products or services that fail to comply with cybersecurity standards; 2) misrepresenting security controls and practices; and 3) failing to timely report suspected cybersecurity breaches.

The DOJ's initiative comes alongside increased government activity to curb cybersecurity and government contractor risks. Earlier last year, emphasizing this new focus on cybersecurity and compliance, President Biden issued an Executive Order on Improving the Nation's Cybersecurity (EO 14028), which called for, among other things, federal agencies to adopt updated contractual requirements for information technology (IT) and operational technology (OT) contractors to share information about potential cyber threats. In January 2022, President Biden signed a National Security Memorandum to Improve the Cybersecurity of National Security, Department of Defense, and Intelligence Community Systems, calling out cybersecurity as a national security and economic security imperative for the administration. And on Feb. 9, 2022, the Securities and Exchange Commission (SEC) announced upcoming new rules requiring registrants to maintain cybersecurity polices and standards and report significant cyber incidents to the SEC, among other things.

This premium content is locked for Entertainment Law & Finance subscribers only

  • Stay current on the latest information, rulings, regulations, and trends
  • Includes practical, must-have information on copyrights, royalties, AI, and more
  • Tap into expert guidance from top entertainment lawyers and experts

For enterprise-wide or corporate acess, please contact Customer Service at [email protected] or 877-256-2473

Read These Next
New York's Latest Cybersecurity Commitment Image

On Aug. 9, 2023, Gov. Kathy Hochul introduced New York's inaugural comprehensive cybersecurity strategy. In sum, the plan aims to update government networks, bolster county-level digital defenses, and regulate critical infrastructure.

The Bankruptcy Hotline Image

Recent cases of importance to your practice.

The DOJ's Corporate Enforcement Policy: One Year Later Image

The DOJ's Criminal Division issued three declinations since the issuance of the revised CEP a year ago. Review of these cases gives insight into DOJ's implementation of the new policy in practice.

How AI Has Affected PR Image

When we consider how the use of AI affects legal PR and communications, we have to look at it as an industrywide global phenomenon. A recent online conference provided an overview of the latest AI trends in public relations, and specifically, the impact of AI on communications. Here are some of the key points and takeaways from several of the speakers, who provided current best practices, tips, concerns and case studies.

CLE Shouldn't Be the Only Mandatory Training for Attorneys Image

Each stage of an attorney's career offers opportunities for a curriculum that addresses both the individual's and the firm's need to drive success.