• Home
  • Incident Response 40 for 2022
  • About
  • Webcasts
  • Contact
Cybersecurity Docket
  • Data Breach
  • Global
  • People
  • Regulatory
  • Risk Mgmt
  • Subscribe by email
  • Subscribe
Browse: Home / 2020 / June / 14 / Here’s what that Capital One court decision means for corporate cybersecurity

Here’s what that Capital One court decision means for corporate cybersecurity

By Securities Docket on June 14, 2020, 7:04 am

The judge’s ruling essentially functions as a reprimand of the way many incident response firms now interact with their clients, according to Edward McNicholas, co-leader of the privacy and cybersecurity practice at Ropes & Gray. If a security company consistently is selling a client other services while working on retainer, and the differences aren’t clear in contractual language, McNicholas said, there is a risk of losing legal protection in the event of a data breach.

“This is a fascinating decision in part because it pokes at the business model in that it tees off on the idea that they had a pre-existing statement of work,” he said. “This judge just said, ‘This business relationship has grown far beyond what we normally see in this context.’”

via Here’s what that Capital One court decision means for corporate cybersecurity.

Posted in Industry, Top | Tagged Incid. Resp.

« Previous Next »

Now Available!

johnreedstark cover 230

Join Us On LinkedIn

Join the Cybersecurity and Incident Response Group on LinkedIn

Copyright © 2023 Cybersecurity Docket.

Powered by WordPress and Hybrid.