Data breaches are all about reputational risk, says Hunton & Williams Managing Partner Lisa Sotto in this BankInfoSecurity podcast. Attorneys play increasingly integral roles in data breach responses, Sotto says, including deciding what steps must be taken beyond a jurisdiction's data breach notification mandates. "The law only requires that an entity notify those who had sensitive information compromised, like Social Security numbers. But now we know other things, like e-mail addresses, can lead to compromise through social engineering and phishing," Sotto says.
If you want to comment on this post, you need to login.