Tag Archives: new york

New Hampshire Enacts Insurance Data Security Law

New Hampshire Governor Chris Sununu recently signed the New Hampshire Insurance Data Security Law, which “establishes the exclusive state standards applicable to licensees for data security, the investigation of a cybersecurity event…, and notification to the commissioner.” The law is applicable to all persons or entities licensed, authorized to operate, registered or required to be … Continue Reading

$7.75 Million Grant Awarded to Drone Companies for Drone Traffic Management

Two New York drone companies, AX Enterprize and Thales USA, were awarded a $7.75 million grant from the U.S. Air Force Research Lab to develop state-of-the-art air traffic management (ATM) systems to would allow civilian and military drones to safely coexist alongside manned aircraft in the national airspace. The project and research will be conducted … Continue Reading

Model Rule for Securities Administrators Approved by NASAA

The North American Securities Administrators Association (NASAA) this week approved an information security model rule package aimed at improving the cybersecurity posture of the 17,543 state-registered advisers. The proposed model would require state-registered investment advisers to establish written cybersecurity policies and procedures designed to safeguard clients’ records and information, and to deliver its privacy policy … Continue Reading

New York AG Warns Investors of Risks of Trading on Cryptocurrency Exchanges

As part of its Virtual Markets Integrity Initiative, on September 18, 2018,  the New York Attorney General’s Office issued a report reviewing the platforms of various cryptocurrency exchanges. The initiative arose from the recognition that online virtual currency exchanges perform functions markedly similar to traditional stock exchanges and broker-dealers, but are generally not registered under … Continue Reading

Years-Long Exposure of Sensitive Client Information Results in $200,000 Settlement with New York Attorney General

In late August, the Attorney General of the State of New York announced a $200,000 settlement with a New York-based non-profit organization that provides services to developmentally disabled individuals and their families after concluding that the organization exposed sensitive personal information of its clients on the Internet for almost three years. The settlement is the … Continue Reading

Parties Seek to Centralize Saks/Lord & Taylor Data Breach Litigation

As we noted earlier this year, Saks Fifth Avenue LLC, Saks Incorporated, and Lord & Taylor previously disclosed, on April 1, 2018, that some of their customers’ personal information may have been compromised in a data breach. Those companies all share the Canadian business group Hudson’s Bay Company (collectively with Lord & Taylor LLC, Saks … Continue Reading

Developing Crypto’s Regulatory Landscape: A Survey of Recent Actions by Federal Regulators to Fence Off Jurisdiction Over Virtual Currencies

In the decades that followed the enactment of the Homestead Act of 1862, more than 1.6 million U.S. citizens and intended citizens filed applications with the U.S. government to lay claim to 160 acres of land guaranteed to each applicant willing to settle, farm and improve the lands. Settlers quickly encountered a major problem. The … Continue Reading

Drone Delivery Canada’s Newest UAS to Carry 400 Pounds

Drone Delivery Canada (DDC) began development of its newest drone, the Condor, last week, which is being engineered to provide payload capacities of up to 400 pounds. The Condor will be able to accept pallet-sized payload shipments (for transporting bulk cargo—both in Canada and abroad) and fly approximately 93 miles. Most important, the Condor will … Continue Reading

Northwell Health Seeks to Use Drones and Telehealth for Emergency Care

Northwell Health, a New York-based health system, is seeking to use a fleet of emergency drones, in combination with telehealth technology, to respond to accidents more quickly, treat opioid overdoses and even provide medical attention needed due to terrorists attacks. However, there are still a lot of barriers to burst through before Northwell Health can … Continue Reading

New York Department of Financial Services Updates Cybersecurity Guidance: Coverage of Cybersecurity Requirements Addressed in 4 New FAQs

On March 1, 2018, the New York Department of Financial Services (NYDFS) “cybersecurity regulations” (23 NYCRR Part 500) took effect, placing a number of cybersecurity requirements on banks, insurance companies, and other financial services institutions and licensees regulated by the NYDFS (“Covered Entities”). To aid in compliance with the regulation, the NYDFS recently added new … Continue Reading

New York Financial Services Cybersecurity Regulations Deadline Looming This Week

On March 1, 2018, the one year transition period within which banks, insurance companies, and other financial services institutions and licensees regulated by the New York Department of Financial Services (“Covered Entities”)  must have implemented a cybersecurity program ends. By March 1, the Covered Entities must be in compliance with the following requirements: 23 NYCRR … Continue Reading

New York’s Landmark Cybersecurity Regulation Compliance Deadlines Looming

On February 15, 2018—that is, today—banks, insurance companies and other financial services institutions and licensees regulated by the New York Department of Financial Services (DFS) are required to file their first certification of compliance with DFS’s far reaching cybersecurity regulation (23 NYCRR Part 500) (the “Regulation”). The Regulation, which became effective on March 1, 2017, … Continue Reading

New York Governor Announces Drone Fleet for its State Police

Last week, Governor of New York, Andrew Cuomo, announced the launch of a new State Police Unmanned Aerial System (UAS) program, which will be used for law enforcement missions, including, but not limited to, disaster response, traffic safety and crime scene investigation. To start, the program will launch four state police drones—Troop A, which will … Continue Reading

Initial Coin Offerings and Cryptocurrencies Will be a Priority for FINRA in 2018

In a ten page letter that previews the Financial Industry Regulatory Authority’s (FINRA) priorities for 2018, initial coin offerings (ICOs) and transactions involving cryptocurrencies. This follows previous warnings by both the Securities and Exchange Commission (SEC) and FINRA about the risks associated with investing in ICOs and virtual currencies, including Bitcoin. SEC Chairman Jay Clayton … Continue Reading

Hilton Settles Data Breach Investigations with NY and VT AGs

Hilton Domestic Operating Co., Inc. (Hilton) has agreed to pay the New York and Vermont Attorneys General $700,000 to settle allegations that they violated those state consumer protection and data breach notification laws when it failed to implement reasonable security measures to protect consumer data and for waiting nine months to notify consumers of a … Continue Reading

SEC Brings Fraud Action Against ICO Creator

In its first lawsuit targeting Initial Coin Offerings (ICOs), the Securities and Exchange Commission (SEC) has filed fraud charges against the creator of the ICOs marketed as “REcoin” and “DRC.” The action, filed in the United States District Court for the Eastern District of New York on September 29, 2017, alleges that Maksim Zaslavskiy, operating … Continue Reading

Privacy Tip #106 – Online Romance Scams

I haven’t been in the dating scene for decades but I know it sure has changed. Millions of people participate in online dating, and I even know several couples who have found their significant other using online dating platforms. That’s the good news. The bad news is that the Internet is used for bad intentions, … Continue Reading

CoPilot Provider Support Services Settles with NYAG for $130,000 for Late Breach Notification

CoPilot Provider Support Services, Inc. (CoPilot), which provides health care companies with billing and insurance support services, has settled allegations by the New York Attorney General of failing to notify individuals of a data breach in a reasonable time for $130,000. CoPilot began investigating an unauthorized access to, and downloading of its reimbursement records through … Continue Reading

Misconfigured Backup Server Exposes 7,000+ Medical Records

A misconfigured backup server hosted by medical records technology vendor iHealth Solutions resulted in exposure of over 7,000 medical records, some containing sensitive information. The records, involving patients seen at Bronx-Lebanon Hospital Center in New York, New York, between 2014 – 2017, include patients’ names, addresses, HIV status, mental health diagnoses and addiction histories, as … Continue Reading

State of Colorado Proposes Financial Services Cybersecurity Requirements

Following in the footsteps of the State of New York, the Colorado Department of Regulatory Agencies has proposed amendments to the Colorado Securities Act to require investment advisers and broker-dealers to implement new cybersecurity requirements to ensure security of the information in their possession. As we have predicted before, this is probably just the beginning … Continue Reading
LexBlog