Call 855-808-4530 or email [email protected] to receive your discount on a new subscription.
By Craig R. Heeren, Mollie D. Sitkowski and Angela Lam
The Department of Justice (DOJ) has proposed a rule that would regulate certain transactions involving bulk sensitive personal data. Public comments are due in 30 days from the notice date.
The rule would implement a complex regulatory framework, with civil and criminal enforcement, that is similar to sanctions and export licensing regimes. It also implicates federal cybersecurity requirements, government contracting and CFIUS actions.
Businesses that handle significant amounts of sensitive personal data, as well as those that handle any amount of certain U.S. government data, should ensure they are prepared for these significant new potential regulations.
On Oct. 21, 2024, the National Security Division of the Department of Justice (DOJ NSD) issued a notice of proposed rulemaking (NPRM) that would establish a comprehensive regulatory framework to prevent and restrict the transfer of “bulk sensitive personal data” to countries and entities that are deemed a risk to U.S. national security. As explained in a prior insight regarding an advance notice of proposed rulemaking on this issue, the DOJ is issuing this rule after the Biden administration directed federal agencies to issue regulations to respond to the concern of misuse of sensitive data that could impact national security. The NPRM addresses comments provided through the advance notice process, details the proposed rule, and provides for an additional 30-day comment period. As discussed below, the proposed rule is a significant effort to regulate data through civil and criminal enforcement mechanisms akin to sanctions and export control regulations. Businesses potentially subject to its reach should carefully consider how to handle the rule’s implementation.
ENJOY UNLIMITED ACCESS TO THE SINGLE SOURCE OF OBJECTIVE LEGAL ANALYSIS, PRACTICAL INSIGHTS, AND NEWS IN ENTERTAINMENT LAW.
Already a have an account? Sign In Now Log In Now
For enterprise-wide or corporate acess, please contact Customer Service at [email protected] or 877-256-2473
The DOJ's Criminal Division issued three declinations since the issuance of the revised CEP a year ago. Review of these cases gives insight into DOJ's implementation of the new policy in practice.
This article discusses the practical and policy reasons for the use of DPAs and NPAs in white-collar criminal investigations, and considers the NDAA's new reporting provision and its relationship with other efforts to enhance transparency in DOJ decision-making.
When we consider how the use of AI affects legal PR and communications, we have to look at it as an industrywide global phenomenon. A recent online conference provided an overview of the latest AI trends in public relations, and specifically, the impact of AI on communications. Here are some of the key points and takeaways from several of the speakers, who provided current best practices, tips, concerns and case studies.
On Aug. 9, 2023, Gov. Kathy Hochul introduced New York's inaugural comprehensive cybersecurity strategy. In sum, the plan aims to update government networks, bolster county-level digital defenses, and regulate critical infrastructure.