CyberTalk

US SEC updates companies on how and when to disclose cyberattacks

SEC Guidelines

EXECUTIVE SUMMARY:

In 2011, the US Securities and Exchange Commission (SEC) issued guidance to public companies regarding cyberattack disclosures. Given that major data breaches have occurred since then–not to mention at the SEC itself–the commission has now updated its guidance.

Two of the five commission members feel that the updates are insufficient, according to Reuters: “Commissioner Robert Jackson said the new document ‘essentially reiterates years-old staff-level views on this issue. ‘And Commissioner Kara Stein said the new effort ‘does not sufficiently advance the ball.’”

Key takeaways from the SEC updates, according to The Hill:

Read the full story at The Hill.

Exit mobile version