The new SEC Cybersecurity Risk Management, Strategy, Governance and Incident Disclosure Rules have dramatically expanded public company disclosure obligations. Recent SEC enforcement actions make clear that cybersecurity disclosures—those related to incidents and those required by periodic reports—are a current regulatory priority. With reporting deadlines imminent, are you confident you know what risks, vulnerabilities and processes you’ll need to disclose? Join us as legal and operations experts from SideChannel and Frankfurt Kurnit provide a complimentary, high-level briefing on the new rules and enforcement actions—and what boards, CFOs, and GCs need to do to get into compliance. Topics include:
How to think about cybersecurity disclosure governance, policies and procedures.
Expanding Cyber compliance—a brief review of recent enforcement actions.
Where cybersecurity controls and financial controls overlap.
“Security statements,” internal e-mails, and other regulatory red flags.
Bridging internal information gaps between technical professionals and senior management.
Determining when public disclosures are necessary—and to whom.
10-Ks, 10-Qs, and 8Ks—anticipating and plugging gaps.
And much more.
Let us help you bridge the gaps between cybersecurity program development and operation, governance, incident response and legally compliant disclosures.