On July 26, 2023, the U.S. Securities and Exchange Commission finalized its rule on Cybersecurity Risk Management, Strategy, Governance, and Incident Disclosure by Public Companies (the Final Rule), which will become effective 30 days following publication in the Federal Register. The Final Rule applies to all public companies subject to the reporting requirements of the Securities Exchange Act of 1934, including foreign private issuers, smaller reporting companies, and business development companies, and will require disclosure of material cybersecurity incidents on Form 8-K and Form 20-F and periodic disclosure of cybersecurity risk management, strategy, and governance in annual reports on Form 10-K and Form 20-F.
https://datamatters.sidley.com/wp-content/uploads/sites/2/2022/09/sidleyLogo-e1643922598198.png00Sonia Gupta Barroshttps://datamatters.sidley.com/wp-content/uploads/sites/2/2022/09/sidleyLogo-e1643922598198.pngSonia Gupta Barros2023-07-31 14:32:332026-01-23 12:31:12U.S. SEC Public Company Cybersecurity Disclosure Regulation Finalized With Swift Effective Date
On July 18, 2023, Singapore’s data protection authority published proposed guidelines on the use of personal data in artificial intelligence (AI) systems. The guidelines will be up for public consultation until August 31, 2023, and aim to address how Singapore’s privacy laws will apply to organizations which develop or deploy AI systems. The draft guidelines underscore the significance placed by the privacy regulator on the need to ensure personal data protection, without discouraging organizations from responsibly using AI systems in their businesses. Accordingly, organizations interested in using AI can use the guidelines for insight into what privacy expectations lie in store once the guidelines are finalized.
https://datamatters.sidley.com/wp-content/uploads/sites/2/2022/10/MN-18359_Data-Matters_833x606-13.jpg607834Yuet Ming Thamhttps://datamatters.sidley.com/wp-content/uploads/sites/2/2022/09/sidleyLogo-e1643922598198.pngYuet Ming Tham2023-07-24 09:24:432023-09-06 15:02:00Singapore PDPC Consultation on New Guidance for Use of Personal Data in AI Systems
U.S. SEC Public Company Cybersecurity Disclosure Regulation Finalized With Swift Effective Date
On July 26, 2023, the U.S. Securities and Exchange Commission finalized its rule on Cybersecurity Risk Management, Strategy, Governance, and Incident Disclosure by Public Companies (the Final Rule), which will become effective 30 days following publication in the Federal Register. The Final Rule applies to all public companies subject to the reporting requirements of the Securities Exchange Act of 1934, including foreign private issuers, smaller reporting companies, and business development companies, and will require disclosure of material cybersecurity incidents on Form 8-K and Form 20-F and periodic disclosure of cybersecurity risk management, strategy, and governance in annual reports on Form 10-K and Form 20-F.
(more…)
Sonia Gupta Barros
Washington, D.C.
sbarros@sidley.com
Colleen T. Brown
Washington, D.C.
ctbrown@sidley.com
Paul L. Choi
Chicago
pchoi@sidley.com
Stephen L. Cohen
Washington, D.C., Boston, ...
scohen@sidley.com
John P. Kelsh
Chicago
jkelsh@sidley.com
David Lashway
Washington D.C.
dlashway@sidley.com
Geeta Malhotra
Chicago
gmalhotra@sidley.com
Lara Mehraban
New York
lmehraban@sidley.com
Alan Charles Raul
Washington, D.C., New York
Andrea L. Reed
Chicago
andrea.reed@sidley.com
Michele L. Aronson
Sasha Hondagneu-Messner
New York
shondagneumessner@sidley.com
Singapore PDPC Consultation on New Guidance for Use of Personal Data in AI Systems
On July 18, 2023, Singapore’s data protection authority published proposed guidelines on the use of personal data in artificial intelligence (AI) systems. The guidelines will be up for public consultation until August 31, 2023, and aim to address how Singapore’s privacy laws will apply to organizations which develop or deploy AI systems. The draft guidelines underscore the significance placed by the privacy regulator on the need to ensure personal data protection, without discouraging organizations from responsibly using AI systems in their businesses. Accordingly, organizations interested in using AI can use the guidelines for insight into what privacy expectations lie in store once the guidelines are finalized.
(more…)
Yuet Ming Tham
Singapore, Hong Kong
ytham@sidley.com
Shu Min Ho
Singapore
shumin.ho@sidley.com
Sam Johnson
Margaret Huang
Singapore
margaret.huang@sidley.com
Nicole Ann Lim
Singapore
nicole.lim@sidley.com
Upcoming Events
Resources