Skip to main content

New York Strengthens Data Privacy and Security Protections: Employers Must Adopt Safeguards (US)

Joining the growing list of states enacting privacy and data security laws, on July 25, 2019, New York’s governor signed into law the “Stop Hacks and Improve Electronic Data Security” Act (the “SHIELD Act”), amending the state’s data breach notification and cybersecurity law. The SHIELD Act applies to “any person or business that owns … computerized data which includes private information,” regardless of corporate structure, revenues or location. As such, the SHIELD Act will apply to not only businesses and employers in New York, but may also apply to businesses and employers with no physical presence in New York.


The SHIELD Act imposes more expansive data security and data breach notification requirements on companies by:


  • Broadening the scope of “private information” covered under the notification law to include personal information (such as a social security number or driver’s license number), biometric information and email addresses with their corresponding passwords or security questions and answers;

  • Expanding the definition of “breach” of the security of the system to include unauthorized access of computerized data that compromises the security, confidentiality, or integrity of private information;

  • Expanding the territorial scope of the breach notification requirement to any person or entity with private information of a New York resident, not just to those who conduct business in New York;

  • Updating the notification requirements and procedures that companies and state entities must follow when there has been a breach of private information; and.

  • Creating requirements for companies to implement reasonable safeguards to protect the security, confidentiality and integrity of private information.

The SHIELD Act, however, affords certain exceptions. Under the new amendments, a company may be exempt from the breach notification requirements if “exposure of Private Information was an inadvertent disclosure and the individual or business reasonably determines such exposure will not likely result in misuse of such information, or financial harm to the affected persons or emotional harm in the case of unknown disclosure of online credentials.” The amendments further clarify that businesses will be deemed compliant with the SHIELD Act if the business complies with other laws requiring information security, such as the Health Insurance Portability and Accountability Act Security Rule (“HIPAA”), the Gramm-Leach-Bliley Act (“GLBA”), or the New York State Department of Financial Services’ Cybersecurity Requirements for Financial Services Companies. Such covered entities are not required to notify affected New York residents regarding such breaches under New York’s breach notification law; however, companies must still notify the New York Attorney General, the Department of State Division of Consumer Protection, and the Division of the State Police regarding the breach.


Additionally, the SHIELD Act does not authorize a private right of action or class action litigation. However, the Attorney General is authorized to bring enforcement actions, and violations may result in civil penalties.


The SHIELD Act’s breach notification amendments take effect October 23, 2019, while the new data security requirements will take effect beginning March 21, 2020.


Employers located in New York or that otherwise possess private information of New York residents should review and update their data security programs to comply with these new amendments.

Comments

Popular posts from this blog

Gujarat Forestry Research Foundation (GFRF) Recruitment for Scientist Post 2019 apply

Gujarat Forestry Research Foundation (GFRF) has published an Advertisement for below mentioned Posts 2019. Other details like age limit, educational qualification, selection process, application fee and how to apply are given below. Posts  : Scientist (on contract) Total No. of Posts  : 01 Educational Qualification  : Please read Official Notification for Educational Qualification details. Age Limit  : 35 years as on 20-09-2019 Application Fee : Candidates have to pay Rs. 200/- + Rs. /- (Postal Charges)  through challan at the computer-based post office.  How to Apply :  Interested Candidates may Apply Online Through official Website. Notification : Click Here   Apply Online : Click Here     Important Dates : Starting Date of Online Application : 04-09-2019 Last Date to Apply Online : 20-09-2019 Last Date to Pay Fees in Post Office : 23-09-2019 maru gujarat rojgarjobnews Kapu meniya

Indian Army Recruitment Rally at Jamnagar for Soldier (GD) & Other Posts 2019

Indian Army has published an Advertisement for below mentioned Posts 2019. Other details like age limit, educational qualification, selection process, application fee and how to apply are given below in the advertisement. Posts : Soldier General Duty Soldier Technical Soldier Nursing Assistant/Nursing Assistant Veterinary Soldier Clerk/Store Keeper Technical/Inventory Management Soldier Tradesman (10th Pass) Soldier Tradesman (8th Pass) Soldier Pharma Educational Qualification : Soldier General Duty:  Class 10th/Matric pass with 45% marks in aggregate and 33% in each subject. For boards following grading system minimum of ‘D’ grade (33-40) in individual subjects OR grade which contains 33% and overall aggregate of C2 grade. Soldier Technical: 10+2/Intermediate Exam Pass in Science with Physics, Chemistry, Maths and English with 50% marks in aggregate and 40% in each subject Soldier Nursing Assistant/Nursing Assistant Veterinary: 10+2/Intermediate...

GPSC Recruitment For Account Officer, Project Manager, Law Officer, Horticulture Officer & Lecturer Posts 2019 Apply

Gujarat Public Service Commission has published an Advertisement for below mentioned Posts 2019. Other details like age limit, educational qualification, selection process, application fee and how to apply are given below. Posts : Law Officer: 02 Posts Vaidy Panchkarm:  15 Posts Lecturer (Homeopathy - Surgery): 01 Post Lecturer (Homeopathy - obstetrics-gynaecology): 01 Post Account Officer (Class-2): 40 Posts Horticulture Officer: 61 Posts Project Manager: 04 Posts Total No. of Posts: 124 Educational Qualification : Please read Official Notification for Educational Qualification details.  How to Apply : Interested Candidates may Apply Online Through official Website https://gpsc-ojas.gujarat.gov.in Advertisement :  Click Here     Notification :    Click Here     Apply Online :   Click Here Important Dates : Starting Date of Online Application : 24-09-2019 Last Date to Apply Online : 09-10-2019 Last Da...

IIT Gandhinagar Recruitment for Project Director & Project Manager Posts 2019

IIT Gandhinagar has published an Advertisement for below mentioned Posts 2019. Other details like age limit, educational qualification, selection process, application fee and how to apply are given below in the advertisement. Posts : Project Director Project Manager Educational Qualification : Please read Official Notification for Educational Qualification details. Selection Process:  Candidates will be selected based on an interview. How to Apply:  Interested Candidates may Apply Online Through official Website. Project Manager : Click Here Apply Online : Click Hare Important Dates: Last Date to Apply Online: Until the position is filled

NABARD Recruitment for Development Assistant Posts 2019 apply

National Agriculture & Rural Development Bank has published an Advertisement for below mentioned Posts 2019. Other details like age limit, educational qualification, selection process, application fee and how to apply are given below in the advertisement. Posts : Development Assistant (Group B’ Posts)-82 Posts Development Assistant (Hindi) (Group’B’ Posts)-09 Posts Total No. of Posts : 91 Educational Qualification : Development Assistant – Candidates having Graduation Degree in any stream with minimum 50% marks in aggregate (Gen/OBC), 33% marks in aggregate(SC/ST/PH/Ex –Service men) will be considered for this post. Development Assistant – Candidates having Graduation Degree in Hindi/English Medium with Hindi or English or any other optional subject with minimum 50% marks in aggregate(Gen/OBC) & 33% marks (SC/ST/PH/Ex-Servicemen) will be considered for this post. Please read Official Notification for More Educational Qualification details. Pay Scale ...