Miriam Wugmeister spoke with Lexology about the U.S. Department of Justice’s (DOJ) proposed rule on bulk U.S. sensitive personal data that may require companies to reassess employee agreements and either transfer employees or implement new compliance requirements. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) proposed and requested public input on the security requirements concurrently with the DOJ proposed rules.
Miriam stated that the CISA security requirements, which are incorporated by reference into the DOJ proposed regulations, would set new – and more prescriptive – U.S. government-issued cybersecurity requirements if finalized.
Read the full article (subscription required).