Blog

Security, Privacy and the Law

Security and privacy issues encountered by businesses often require immediate and discreet solutions. We cover topics that arise from guiding our clients through the process of complying with the ever-growing number of state, federal and international laws governing information security, identity theft, surveillance and other privacy issues.

Security, Privacy and the Law
Trump’s New AI Frontier: The Executive Order Regulating Frontier AI Models
Blog June 29, 2026
On June 2, 2026, President Trump signed an executive order titled “Promoting Advanced Artificial Intelligence Innovation and Security.”…
U.S. House Report Addresses AI Concerns, Including Privacy and Data Security
Blog December 31, 2024
On December 17, 2024, just before leaving town until the new session of Congress, the U.S. House of Representatives’ Bipartisan Artificial Intelligence Task Force issued a “Report on Artificial Intelligence," which addresses (among other things) several key aspects of privacy and data security concerning artificial intelligence…
HHS-OIG Releases Cybersecurity Toolkit
Blog March 26, 2024
On March 26, 2024, the HHS Office of Inspector General (OIG) released a cybersecurity toolkit for HHS leaders to help them plan and deploy information systems in response to disasters and public health emergencies…
U.S. Department of Homeland Security Launches First-Ever Cyber Safety Review Board
Blog February 05, 2022
Earlier this week, the U.S. Department of Homeland Security (DHS) announced the establishment of the Cyber Safety Review Board (CSRB), as directed in President Biden's Executive Order 14028 on Improving the Nation's Cybersecurity. The CSRB is a public-private initiative that will bring together government and industry leaders to elevate U.S. cybersecurity. The CSRB will review and assess significant cybersecurity events, so that government…
Biden Issues Memorandum Aimed at Improving Cybersecurity
Blog July 30, 2021
On July 28, 2021, President Biden issued a Memorandum on Improving Cybersecurity for Critical Infrastructure Control Systems.  The Memo recognizes that the protection of the nation's critical infrastructure lies not only with government, i.e., at the federal, state, local, tribal, and territorial levels, but with critical infrastructure owners and operators.  In addition, the Memo states that cybersecurity threats to critical infrastructure, and the systems that control and operate it…
Cybersecurity and Infrastructure Security Agency Identifies Essential Critical Energy Infrastructure Workers During COVID-19 Response
Blog March 20, 2020
On March 19, 2020, the Cybersecurity and Infrastructure Security Agency (CISA) issued its Memorandum on Identification of Essential Critical Infrastructure Workers During COVID-19 Response (“Memo”).  The Memo identifies workers who conduct “a range of operations and services that are essential to continued critical infrastructure viability” and who support a wide-spectrum of industries such as medical and healthcare, telecommunications, information technology systems, defense, and……
Countdown to CCPA: Foley Hoag Podcast Series Number 3
Blog March 09, 2020
Companies that have already done the work to become GDPR-compliant are a step ahead, but all companies that collect California users' personal information or just do business in California should check to see whether they are obligated to comply with the CCPA. Foley Hoag's Privacy Data Security practice group has more than a decade of experience and deep knowledge in domestic and international privacy law. Our CCPA team, with lawyers admitted to practice in California…
Watch: Best Practices: Terms of Service and Privacy Policies
Blog February 27, 2020
Terms of service and privacy policies form the primary legal agreement between your organization and anyone who visits your website, downloads your app, or subscribes to your platform. These agreements are ubiquitous, yet often overlooked by start-ups and established companies alike. And with new privacy laws like GDPR and CCPA affecting businesses globally, understanding how these laws affect your policies and terms is crucial for doing business. Foley Hoag attorneys Christopher……
Countdown to CCPA: Foley Hoag Podcast Series Number 2
Blog November 07, 2019
The passage of the California Consumer Privacy Act (CCPA) was a seismic event in U.S. data privacy law. CCPA has an expansive, rights-based approach to privacy, with national and international ramifications. Foley Hoag attorneys Colin Zick, Chris Hart, Yoni Bard and Scott Bloomberg present a second podcast discussing the latest developments with the CCPA. Click here to listen to part one…
1 of 5

ABOUT

The Foley Hoag Security, Privacy and the Law Blog focuses on the security and privacy issues encountered by businesses that often require immediate and discreet solutions. Here we cover topics that arise from guiding our clients through the process of complying with the ever-growing number of state, federal and international laws governing information security, identity theft, surveillance and other privacy issues.

Our lawyers assist clients with questions on how to legally and ethically investigate abusive e-mail, take down infringing Web sites, maintain surveillance of company facilities and information systems, and remediate breaches of security. We work with clients to ensure the legality and success of existing security policies and protocols and help them develop new programs when necessary. Our lawyers have managed unexpected crises ranging from surprise inspections by government investigators to obtaining emergency court orders needed to secure stolen company computers from rogue insiders.

Blog Authors