- Posts by Tryphena Liu
Associate“I defend employers in court, but I’d rather help them build the policies that prevent disputes in the first place.” —Tryphena Liu
Employers facing workplace litigation and compliance challenges turn to Tryphena Liu for ...
On July 26, 2023, the Securities and Exchange Commission (“SEC”) adopted its long-anticipated cybersecurity reporting rule (the “Final Rule”). The Final Rule applies to public companies subject to the reporting requirements of the Securities Exchange Act of 1934 and, in some cases, to foreign private issuers. As quoted in the SEC’s press release, SEC Commissioner Gary Gensler noted that many public companies already make cybersecurity disclosures to investors, and the Final Rule provides uniformity and structure for these future disclosures. The Final Rule also imposes a tight timeline for cybersecurity incident reporting and may include disclosure of an ongoing cybersecurity incident, as well as requiring periodic disclosures concerning organizational cybersecurity risk management processes and governance.
Recent Updates
- Congressional Action on Health Care Cybersecurity: HISAA is Re-Introduced and the Health Care Cybersecurity and Resiliency Act Moves Forward
- DOJ Corporate Fraud Enforcement Memo: What Health Care Companies Need to Know Now
- Attorneys General of Three States File Two Sweeping Lawsuits Targeting Telehealth Abortion Providers and State Shield Laws
- RFI Seeks Input on Medicare Part D’s Pharmacy Contract Standards
- Proposed H.R. 10336 Would Balance Innovation, Access to Dietary Supplements—Yet Change the Definition