The California Consumer Privacy Act of 2018

Size: px
Start display at page:

Download "The California Consumer Privacy Act of 2018"

Transcription

1 The California Consumer Privacy Act of 2018 Kevin Gould SVP & Director State Government Relations California Bankers Association Nancy Thomas Partner Morrison & Foerster LLP

2 The California Consumer Privacy Act Arguably the most significant U.S. privacy development ever Replaced the controversial privacy ballot initiative Fast-tracked from introduction to enactment (plus subsequent amendments passed in August) Attorney General rulemaking to come (and government affairs efforts to continue in 2019) Operative on January 1, 2020, Attorney General enforcement by at least July 1,

3 CCPA Privacy Rights Right to know/access Right to deletion Right to opt out of sale Right to be free from discrimination Right to sue 2

4 How Did We Get Here? Date October 12, 2017 May 2, 2018 June 21, 2018 June 28, 2018 Event Proponents submit request to the Attorney General for title and summary Proponents submit 629,000 signatures to the Secretary of State only 365,880 required by law AB 375 amended to include provisions of the Act AB 375 signed by the governor 3

5 Why Did It Happen That Way? Establishing the ability to withdraw - Senate Bill 1253, Chapter 697, Statutes of 2014 Potential for legislative compromise The 72-hour rule Proposition 54, Article IV, Section 8(b) of the California Constitution Capacity to subsequently amend state law and the commitment to revise 4

6 Loose Ends unprecedented consumer protections Alastair Mactaggart, Chairman of Californians for Consumer Privacy the full implications of the hastily passed AB 375 are far from being fully understood Coalition of Business Interests, including CBA 5

7 Amendments Round 1 SB1121 considered in Committee Legislature in recess from Legislation must pass both Houses by Focus on technical amendments Expanding Gramm-Leach-Bliley Act exception Clarifying and narrowing private right of action Changing AG provisions, including removal of consumer notification requirement, clarifying AG remedies, extending deadline for regulations, and delaying authority to bring enforcement actions SB1121 passed on August 31,

8 What Is on the Horizon? Commitment to a fair legislative process in 2019 Competing interests Opportunity to improve or complicate Right to delete financial information Rulemaking by the Attorney General Potential model state legislation Prompting of a national conversation 7

9 Scope GLBA Exception Strengthened by amendment to remove conflict language (e) This title shall not apply to personal information collected, processed, sold, or disclosed pursuant to the federal Gramm-Leach-Bliley Act (Public Law ), and implementing regulations, if it is in conflict with that law. or the California Financial Information Privacy Act (Division 1.4 (commencing with Section 4050) of the Financial Code). This subdivision shall not apply to Section Customer & Consumer CCPA GLBA Consumer PI PI 8

10 Consumer Broader Than Customer A natural person who is a CA resident A resident includes any individual who is: In CA for other than a temporary or transitory purpose; or Domiciled in CA, but outside of CA for a temporary or transitory purpose No customer-type nexus needed Includes employees, individuals associated with commercial customers, independent contractors, and visitors to corporate facilities Compare with GLBA current, former, or prospective consumer or customer Financial institutions will have to decide if they want to limit the Act s rights to CA residents or expand beyond CA 9

11 Notice Obligations 1. Just-in-time notice? 2. Privacy policies 3. Consumer-specific disclosures upon request 10

12 Just-in-Time Notice? At or before the point of collection, a financial institution must inform a consumer of: The categories of PI to be collected; and The purposes for which the PI will be used May not collect additional categories of PI or use collected PI for additional purposes without providing the consumer with notice 11

13 Privacy Policies Online privacy policies and California-specific description of consumers privacy rights Required content Description of consumer privacy rights Categories of PI collected, sold, and disclosed for a business purpose in the past 12 months Methods for submitting requests Updated at least once every 12 months 12

14 Disclosures Upon Request Two separate rights to request information The collection disclosure The sharing disclosure Consumer-specific disclosures Focused on: What PI was collected, from whom, and for what purpose What PI was sold or disclosed for a business purpose and to whom The specific pieces of PI collected about the consumer 13

15 Providing Access to Specific PI A consumer has a right, twice a year, to request that a financial institution provide the consumer with [t]he specific pieces of personal information collected about the consumer Greatly impacted by the breadth of the definition of PI (e.g., audio and video) Only the PI collected in the past 12 months The disclosure must be provided free of charge and within 45 days of the request in a readily useable format that is also portable 14

16 Right to Deletion A consumer has the right to request that a financial institution delete any PI about the consumer that the financial institution has collected from the consumer A financial institution also must direct its service providers to delete the consumer s PI from the service provider s records Nine exceptions to this right Limited in broad utility, other than fraud prevention Bias towards consumer-facing business Bias towards ongoing relationships with consumers 15

17 When a Sale Isn t a Sale Definition of Sale Disclosing a consumer s PI to another business or third party for monetary or other valuable consideration Right to Opt Out/Opt In For consumers age 16 and older, there is a right to opt out of the sale of PI to a third party Prohibited from selling PI without consumer s express authorization Cannot request authorization of sale for at least 12 months after consumer opts out Affirmative authorization (opt in) required for consumers under the age of 16 16

18 Implications for Vendor Management The Act does not follow a typical vendor oversight model Instead, the service provider concept functions more as an exception and not a business obligation Obligation to direct service providers to delete PI Disclosures to a service provider that are necessary to perform a business purpose are not a sale if: The financial institution has provided notice that information is being used or shared in its terms and conditions; and The service provider does not further collect, sell, or use the PI, except as necessary to perform the business purpose 17

19 Private Rights of Action A consumer can bring a suit if: Nonencrypted or nonredacted personal information (as defined in the CA safeguards law) is subject to an unauthorized access and exfiltration, theft, or disclosure As a result of a violation of the duty to... maintain reasonable security procedures... to protect the personal information Amendment clarifies scope limited to above Available relief includes statutory damages of $100 to $750 per consumer per incident or actual damages, whichever is greater 18

20 Procedural Hurdle for Consumers Pre-suit notice for statutory damages 30 days written notice identifying the specific provisions of this title allegedly violated and opportunity to cure An individual consumer will not be required to provide notice of a violation before initiating an action if the consumer is seeking only actual pecuniary damages Amendments remove obligation for a consumer to provide notice to the AG 19

21 Administrative Enforcement California AG has enforcement authority The AG shall not bring an enforcement action... until six months after the publication of the final regulations... or July 1, 2020, whichever is sooner A financial institution violates the Act if it fails to cure any alleged violation within 30 days after being notified of alleged noncompliance Unclear whether the AG must provide notice and an opportunity to cure Injunction and civil penalties In general, $2,500 for each violation $7,500 for each intentional violation 20

22 Questions? Kevin Gould California Bankers Association (916) Nancy R. Thomas Morrison & Foerster LLP (213)

Overview of the New California Consumer Privacy Law

Overview of the New California Consumer Privacy Law Overview of the New California Consumer Privacy Law In late June, California enacted Assembly Bill 375 (AB 375) as the California Consumer Privacy Act of 2018 (CCPA), a privacy law, unprecedented in the

More information

Calif. Consumer Privacy Act: 6 Considerations For Banks

Calif. Consumer Privacy Act: 6 Considerations For Banks Portfolio Media. Inc. 111 West 19 th Street, 5th Floor New York, NY 10011 www.law360.com Phone: +1 646 783 7100 Fax: +1 646 783 7161 customerservice@law360.com Calif. Consumer Privacy Act: 6 Considerations

More information

Are You Prepared for the California Consumer Privacy Act?

Are You Prepared for the California Consumer Privacy Act? Are You Prepared for the California Consumer Privacy Act? Jeffrey M. Goldman Pepper Hamilton LLP Sharon R. Klein Pepper Hamilton LLP Alex Nisenbaum Pepper Hamilton LLP September 7, 2018 Jeffrey M. Goldman

More information

Preparing for California's New Privacy Law Will Make for a Busy 2019 for Legal, IT and Info Governance Departments

Preparing for California's New Privacy Law Will Make for a Busy 2019 for Legal, IT and Info Governance Departments Preparing for California's New Privacy Law Will Make for a Busy 2019 for Legal, IT and Info Governance Departments Overview of the CCPA BY Alan Friel BakerHostetler California has enacted, effective Jan.

More information

The California Consumer Privacy Act: Overview and Comparison to the EU GDPR

The California Consumer Privacy Act: Overview and Comparison to the EU GDPR The California Consumer Privacy Act: Overview and Comparison to the EU GDPR Introduction During the months preceding the European Union s General Data Protection Regulation (GDPR) go-live, which occurred

More information

California s Groundbreaking Privacy Law: The New Front Line in the U.S. Privacy Debate

California s Groundbreaking Privacy Law: The New Front Line in the U.S. Privacy Debate California s Groundbreaking Privacy Law: The New Front Line in the U.S. Privacy Debate July 13, 2018 On the heels of the European Union s implementation of the General Data Protection Regulation ( GDPR

More information

Data Privacy Alert: California Consumer Privacy Act of 2018 Just Enacted

Data Privacy Alert: California Consumer Privacy Act of 2018 Just Enacted 2018 Data Privacy Alert: California Consumer Privacy Act of 2018 Just Enacted After only a few days of legislative debate, Governor Jerry Brown of California signed a bill enacting the California Consumer

More information

California Consumer Privacy Act of 2018

California Consumer Privacy Act of 2018 New Statute Introduces Privacy Protections for California Consumers and Subjects Businesses to Potential Liability SUMMARY On June 28, 2018, California enacted the California Consumer Privacy Act (the

More information

California Consumer Privacy Act: What you need to know now. July 24, 2018

California Consumer Privacy Act: What you need to know now. July 24, 2018 California Consumer Privacy Act: What you need to know now July 24, 2018 Introductions Mark Brennan Partner, Washington, D.C. Mark Brennan leads an integrated technology practice that spans privacy, communications,

More information

CCPA and GDPR Comparison Chart

CCPA and GDPR Comparison Chart Resource ID: w-016-7418 LAURA JEHL AND ALAN FRIEL, BAKERHOSTETLER LLP, WITH PRACTICAL LAW DATA PRIVACY ADVISOR Search the Resource ID numbers in blue on Westlaw for more. A Chart comparing some of the

More information

California Transparency in Supply Chains Act First 90 Days

California Transparency in Supply Chains Act First 90 Days April 13, 2012 California Transparency in Supply Chains Act First 90 By Remsen Kinne, Edward Sangster and Daniel Fox Introduction Many retail sellers and manufacturers doing business in California are

More information

Sample Privacy Notice for Agencies in States with the 1982 NAIC Privacy Model *

Sample Privacy Notice for Agencies in States with the 1982 NAIC Privacy Model * The Sample Privacy Notice for Agencies in States with the 1982 NAIC Privacy Model * (Policy regarding sharing nonpublic personal information with non-affiliated third parties.) [Insert name of financial

More information

THIS ENDORSEMENT CHANGES THE POLICY. PLEASE READ IT CAREFULLY CRISIS MANAGEMENT COVERAGE The Insurer shall pay on behalf of the Insured: 1) Crisis Management Expenses that are a direct result of a Network

More information

GDPR CCPA LGPD. Protected information

GDPR CCPA LGPD. Protected information Stricter data protection laws are on the rise. While only a couple of years ago, data protection legislations and requirements were frequently marginalized and the position of the data protection officer

More information

Wall Street Reform and Consumer Financial Protection Act of 2010

Wall Street Reform and Consumer Financial Protection Act of 2010 Wall Street Reform and Consumer Financial Protection Act of 2010 Federal Preemption August 6, 2010 Presented By Oliver Ireland and Joseph Gabai 2010 Morrison & Foerster LLP All Rights Reserved mofo.com

More information

An overview of Prevailing Wage Law changes commencing in 2014 affecting Contractor s. Glenn M. Gelman & Associates 12/6/2013

An overview of Prevailing Wage Law changes commencing in 2014 affecting Contractor s. Glenn M. Gelman & Associates 12/6/2013 An overview of Prevailing Wage Law changes commencing in 2014 affecting Contractor s. Glenn M. Gelman & Associates 12/6/2013 Overview AB1336 Extended Statue of Limitations for enforcement of Prevailing

More information

California s Consumer Privacy Act Vs. GDPR

California s Consumer Privacy Act Vs. GDPR Portfolio Media. Inc. 111 West 19 th Street, 5th Floor New York, NY 10011 www.law360.com Phone: +1 646 783 7100 Fax: +1 646 783 7161 customerservice@law360.com California s Consumer Privacy Act Vs. GDPR

More information

Implementing the Obligations of the Gramm-Leach-Bliley Act The NAIC Model for State Privacy Regulation

Implementing the Obligations of the Gramm-Leach-Bliley Act The NAIC Model for State Privacy Regulation Implementing the Obligations of the Gramm-Leach-Bliley Act The NAIC Model for State Privacy Regulation This memorandum provides an analysis of the provisions of the National Association of Insurance Commissioners

More information

HIPAA STUDENT ASSOCIATE AGREEMENT

HIPAA STUDENT ASSOCIATE AGREEMENT HIPAA STUDENT ASSOCIATE AGREEMENT This Agreement dated as of, 20 is made by and between Petaluma Health Center (Hereinafter Covered Entity ) and (Hereinafter Student ). INTRODUCTION This Agreement governs

More information

H 6087 S T A T E O F R H O D E I S L A N D

H 6087 S T A T E O F R H O D E I S L A N D LC00 0 -- H 0 S T A T E O F R H O D E I S L A N D IN GENERAL ASSEMBLY JANUARY SESSION, A.D. 0 A N A C T RELATING TO COMMERCIAL LAW--GENERAL REGULATORY PROVISIONS -- RIGHT- TO-KNOW ACT Introduced By: Representatives

More information

HIPAA and ProAssurance

HIPAA and ProAssurance HIPAA and ProAssurance The ProAssurance Companies, along with our legal counsel, have reviewed the Health Insurance Portability And Accountability Act of 1996, and its implementing regulations (collectively,

More information

Chief Clerk of the Assembly. Secretary of the Senate. Private Secretary of the Governor

Chief Clerk of the Assembly. Secretary of the Senate. Private Secretary of the Governor Assembly Bill No. 2816 Passed the Assembly August 29, 2002 Chief Clerk of the Assembly Passed the Senate August 28, 2002 Secretary of the Senate This bill was received by the Governor this day of, 2002,

More information

IHDE BUSINESS ASSOCIATE AGREEMENT (BAA)

IHDE BUSINESS ASSOCIATE AGREEMENT (BAA) IHDE BUSINESS ASSOCIATE AGREEMENT (BAA) This Business Associate Agreement (BAA) is entered into by and between the Covered Entity aka. Data Provider/User, (please enter name of organization) and the Business

More information

Gramm-Leach-Bliley Act 15 USC, Subchapter I, Sec Disclosure of Nonpublic Personal Information

Gramm-Leach-Bliley Act 15 USC, Subchapter I, Sec Disclosure of Nonpublic Personal Information Gramm-Leach-Bliley Act 15 USC, Subchapter I, Sec. 6801-6809 Disclosure of Nonpublic Personal Information Sec. 6801. Protection of nonpublic personal information. (a) Privacy obligation policy. (b) Financial

More information

2013 HIPAA Omnibus Regulations: New Rules for Healthcare Providers and Collections Partners

2013 HIPAA Omnibus Regulations: New Rules for Healthcare Providers and Collections Partners 2013 HIPAA Omnibus Regulations: New Rules for Healthcare Providers and Collections Partners Providers, and Partners 2 Editor s Foreword What follows are excerpts from the U.S. Department of Health and

More information

HIPAA COMPLIANCE ROADMAP AND CHECKLIST FOR BUSINESS ASSOCIATES

HIPAA COMPLIANCE ROADMAP AND CHECKLIST FOR BUSINESS ASSOCIATES HIPAA COMPLIANCE ROADMAP AND CHECKLIST FOR BUSINESS ASSOCIATES The Health Information Technology for Economic and Clinical Health Act (HITECH Act), enacted as part of the American Recovery and Reinvestment

More information

SENATE, No. 477 STATE OF NEW JERSEY. 212th LEGISLATURE PRE-FILED FOR INTRODUCTION IN THE 2006 SESSION

SENATE, No. 477 STATE OF NEW JERSEY. 212th LEGISLATURE PRE-FILED FOR INTRODUCTION IN THE 2006 SESSION SENATE, No. STATE OF NEW JERSEY th LEGISLATURE PRE-FILED FOR INTRODUCTION IN THE 00 SESSION Sponsored by: Senator STEPHEN M. SWEENEY District (Salem, Cumberland and Gloucester) Senator JOSEPH CONIGLIO

More information

THE IMPACT OF THE CALIFORNIA CONSUMER PRIVACY ACT

THE IMPACT OF THE CALIFORNIA CONSUMER PRIVACY ACT THE IMPACT OF THE CALIFORNIA CONSUMER PRIVACY ACT WHO IS INTRAEDGE? PROVIDING TECH SOLUTIONS FOR DATA PROTECTION IS HEATING UP Source: https://www.dlapiperdataprotection.com/ WHAT IS THE CCPA? California

More information

NATIONAL RECOVERY AGENCY COMPLIANCE INFORMATION GRAMM-LEACH-BLILEY SAFEGUARD RULE

NATIONAL RECOVERY AGENCY COMPLIANCE INFORMATION GRAMM-LEACH-BLILEY SAFEGUARD RULE NATIONAL RECOVERY AGENCY COMPLIANCE INFORMATION GRAMM-LEACH-BLILEY SAFEGUARD RULE As many of you know, Gramm-Leach-Bliley requires "financial institutions" to establish and implement a Safeguard Rule Compliance

More information

Banks and the Privacy of Medical Information

Banks and the Privacy of Medical Information Banks and the Privacy of Medical Information 8 th National HIPAA Summit March 8, 2004 Health Policy Institute Georgetown University 202-687 687-0880 Public Concerns 95% adult Americans do not want banks

More information

Amendments to the California Corporate Disclosure Act of 2002

Amendments to the California Corporate Disclosure Act of 2002 California Corporate Law Roundup for the 2003 2004 Legislative Session Corporate & Securities We are issuing this alert to review a number of significant developments in the area of corporate law during

More information

2017 LAW UPDATE HESSEMARTONE, P.C.

2017 LAW UPDATE HESSEMARTONE, P.C. 2017 LAW UPDATE PRESENTED BY ANDREW J. MARTONE HESSEMARTONE, P.C. OFFICES: ST. LOUIS, MO SPRINGFIELD, IL PHOENIX, A Z SS#2 SB 19 Missouri s New Right to Work Law PRESENTED BY ANDREW J. MARTONE HESSEMARTONE,

More information

Enrolled Copy H.B. 70 HEALTH DISCOUNT PROGRAM CONSUMER PROTECTION ACT. Chief Sponsor: James A. Dunnigan Senate Sponsor: Michael G.

Enrolled Copy H.B. 70 HEALTH DISCOUNT PROGRAM CONSUMER PROTECTION ACT. Chief Sponsor: James A. Dunnigan Senate Sponsor: Michael G. Enrolled Copy H.B. 70 HEALTH DISCOUNT PROGRAM CONSUMER PROTECTION ACT 2005 GENERAL SESSION STATE OF UTAH Chief Sponsor: James A. Dunnigan Senate Sponsor: Michael G. Waddoups LONG TITLE General Description:

More information

Is There Such a Thing as Legal Credit Repair?

Is There Such a Thing as Legal Credit Repair? Is There Such a Thing as Legal Credit Repair? Not only does the legal credit repair process work for errors but can also help remove "unverifiable" negative, yet accurate, information. Credit Laws Fair

More information

THE UNIVERSITY OF NEW MEXICO ("UNM") Purchase Order STANDARD TERMS AND CONDITIONS December 19, 2017

THE UNIVERSITY OF NEW MEXICO (UNM) Purchase Order STANDARD TERMS AND CONDITIONS December 19, 2017 THE UNIVERSITY OF NEW MEXICO ("UNM") Purchase Order STANDARD TERMS AND CONDITIONS December 19, 2017 1. **ACCEPTANCE AND REJECTION. If prior to final acceptance, any goods or services are found to be detective

More information

UNITED STATES CODE TITLE 15. COMMERCE AND TRADE CHAPTER 94--PRIVACY SUBCHAPTER I--DISCLOSURE OF NONPUBLIC PERSONAL INFORMATION

UNITED STATES CODE TITLE 15. COMMERCE AND TRADE CHAPTER 94--PRIVACY SUBCHAPTER I--DISCLOSURE OF NONPUBLIC PERSONAL INFORMATION Privacy (Gramm-Leach-Bliley Act) Privacy (GLBA); Standards Safeguarding Customer Information (FTC) 2/22/2007 4:43:07 PM UNITED STATES CODE TITLE 15. COMMERCE AND TRADE CHAPTER 94--PRIVACY SUBCHAPTER I--DISCLOSURE

More information

Bank Regulatory Practice

Bank Regulatory Practice Bank Regulatory Practice SEPTEMBER 2016 Does the Federal Reserve Board have Authority to Set Incentive Compensation? Earlier this year, the Agencies 1 published a Notice of Proposed Rulemaking (the Proposed

More information

Legal and Privacy Implications of the HIPAA Final Omnibus Rule

Legal and Privacy Implications of the HIPAA Final Omnibus Rule Legal and Privacy Implications of the HIPAA Final Omnibus Rule February 19, 2013 Pillsbury Winthrop Shaw Pittman LLP Faculty Gerry Hinkley Partner Pillsbury Winthrop Shaw Pittman LLP Deven McGraw Director,

More information

HHS, Office for Civil Rights. IAPP October 11, 2012

HHS, Office for Civil Rights. IAPP October 11, 2012 HHS, Office for Civil Rights IAPP October 11, 2012 Enforce federal civil rights laws and the HIPAA Privacy and Security Rules HQ and 10 Regional Offices Region IX has jurisdiction over covered entities

More information

GENERAL ASSEMBLY OF NORTH CAROLINA SESSION 2013 SESSION LAW SENATE BILL 140

GENERAL ASSEMBLY OF NORTH CAROLINA SESSION 2013 SESSION LAW SENATE BILL 140 GENERAL ASSEMBLY OF NORTH CAROLINA SESSION 2013 SESSION LAW 2013-337 SENATE BILL 140 AN ACT TO INCREASE THE RECOGNITION, REPORTING, AND PROSECUTION OF THOSE WHO WOULD DEFRAUD OR FINANCIALLY EXPLOIT DISABLED

More information

MEMORANDUM. Health Care Information Privacy The HIPAA Regulations What Has Changed and What You Need to Know

MEMORANDUM. Health Care Information Privacy The HIPAA Regulations What Has Changed and What You Need to Know 1801 California Street Suite 4900 Denver, CO 80202 303-830-1776 Facsimile 303-894-9239 MEMORANDUM To: Adam Finkel, Assistant Director, Government Relations, NCRA From: Mel Gates Date: December 23, 2013

More information

Management Alert Final HIPAA Regulations Issued

Management Alert Final HIPAA Regulations Issued Management Alert Final HIPAA Regulations Issued After much anticipation, the Department of Health and Human Services (HHS) has issued its omnibus set of final regulations modifying and clarifying the privacy,

More information

2014 California Law Update

2014 California Law Update 2014 California Law Update Kevin Gould Senior Vice President Director of State Government Relations (916) 438-4410 kgould@calbankers.com 2014 Legislative Focus Overall mood in Capitol improving as economy

More information

ARTICLE 1 DEFINITIONS

ARTICLE 1 DEFINITIONS [GPM Note: This Template Data Use Agreement is to be used when a covered entity seeks to disclose a limited set of PHI to another entity for research, public health, and/or health care operations purposes.

More information

LIMITED DATA SET REQUEST AND DATA USE AGREEMENT

LIMITED DATA SET REQUEST AND DATA USE AGREEMENT LIMITED DATA SET REQUEST AND DATA USE AGREEMENT For Facility Use Only: Date Request Received: / / Instructions: Carefully review and complete this Request for a Limited Data Set of PHI and Data Use Agreement.

More information

Business Associate Agreement For Protected Healthcare Information

Business Associate Agreement For Protected Healthcare Information Business Associate Agreement For Protected Healthcare Information This Business Associate Agreement ( Agreement ) is entered into this 24th day of February 2017, between PRACTICE-WEB, Inc., a California

More information

The Florida Senate. Interim Project Report November 2004 DETERRING INSURANCE FRAUD BY EMPLOYMENT AGENCIES SUMMARY

The Florida Senate. Interim Project Report November 2004 DETERRING INSURANCE FRAUD BY EMPLOYMENT AGENCIES SUMMARY The Florida Senate Interim Project Report 2005-107 November 2004 Committee on Banking and Insurance Senator Rudy Garcia, Chairman DETERRING INSURANCE FRAUD BY EMPLOYMENT AGENCIES SUMMARY In recent years,

More information

Interpreters Associates Inc. Division of Intérpretes Brasil

Interpreters Associates Inc. Division of Intérpretes Brasil Interpreters Associates Inc. Division of Intérpretes Brasil Adherence to HIPAA Agreement Exhibit B INDEPENDENT CONTRACTOR PRIVACY AND SECURITY PROTECTIONS RECITALS The purpose of this Agreement is to enable

More information

A Step By Step Guide To Dealership Compliance Team One research and Training /Summit Group

A Step By Step Guide To Dealership Compliance Team One research and Training /Summit Group A Step By Step Guide To Dealership Compliance 2008 Team One research and Training /Summit Group As you probably already know, 2008 has brought the automobile dealer a whole new set of compliance issues

More information

THE PRIVACY PROVISIONS OF THE GRAMM-LEACH-BLILEY ACT AND THEIR IMPACT ON INSURANCE AGENTS & BROKERS PREPARED BY THE OFFICE OF THE GENERAL COUNSEL

THE PRIVACY PROVISIONS OF THE GRAMM-LEACH-BLILEY ACT AND THEIR IMPACT ON INSURANCE AGENTS & BROKERS PREPARED BY THE OFFICE OF THE GENERAL COUNSEL THE PRIVACY PROVISIONS OF THE GRAMM-LEACH-BLILEY ACT AND THEIR IMPACT ON INSURANCE AGENTS & BROKERS This memorandum is not intended to provide specific advice about individual legal, business or other

More information

GOVERNANCE ROUND-UP. October 2018 Issue 7

GOVERNANCE ROUND-UP. October 2018 Issue 7 October 2018 Issue 7 GOVERNANCE ROUND-UP SEC Reports on Investigation of Cyber- Related Frauds Against Public Companies and Related Internal Accounting Controls Requirements On October 16, 2018, the Securities

More information

MAY 12, Referred to Committee on Ways and Means

MAY 12, Referred to Committee on Ways and Means EXEMPT (REPRINTED WITH ADOPTED AMENDMENTS) FIRST REPRINT A.B. ASSEMBLY BILL NO. COMMITTEE ON WAYS AND MEANS MAY, Referred to Committee on Ways and Means SUMMARY Revises provisions governing conversion

More information

Designing Privacy Policies and Identifying Privacy Risks for Financial Institutions. June 2016

Designing Privacy Policies and Identifying Privacy Risks for Financial Institutions. June 2016 Designing Privacy Policies and Identifying Privacy Risks for Financial Institutions June 2016 Program Overview Regulatory Environment Who Needs a Privacy Program and Common Questions Components of a Comprehensive

More information

HIPAA and Lawyers: Your stakes have just been raised

HIPAA and Lawyers: Your stakes have just been raised HIPAA and Lawyers: Your stakes have just been raised October 16, 2013 Presented by: Harry Nelson e: hnelson@fentonnelson.com Claire Marblestone e: cmarblestone@fentonnelson.com AGENDA Statutory & Regulatory

More information

H 7789 S T A T E O F R H O D E I S L A N D

H 7789 S T A T E O F R H O D E I S L A N D ======== LC001 ======== 01 -- H S T A T E O F R H O D E I S L A N D IN GENERAL ASSEMBLY JANUARY SESSION, A.D. 01 A N A C T RELATING TO INSURANCE - INSURANCE DATA SECURITY ACT Introduced By: Representatives

More information

Table of Contents CLICK ANY TITLE TO GO DIRECTLY TO THAT SECTION. SUBTITLE A: Bureau of Consumer Financial Protection

Table of Contents CLICK ANY TITLE TO GO DIRECTLY TO THAT SECTION. SUBTITLE A: Bureau of Consumer Financial Protection Venable CFPB monitor Please contact our attorneys in our CFPB Task Force if you have any questions regarding this information. Table of Contents CLICK ANY TITLE TO GO DIRECTLY TO THAT SECTION Last updated

More information

Accountability Report Card Summary 2013 Hawaii

Accountability Report Card Summary 2013 Hawaii Accountability Report Card Summary 2013 Hawaii Hawaii has a fairly good state whistleblower law: Scoring only 58 out of a possible 100 points; and Ranking 24 th out of 51 (50 states and the District of

More information

Electronic Payments: The Winds of Change, A Call to Action. Will 2011 Be An Eventful Year in the History of Payment Card Security?

Electronic Payments: The Winds of Change, A Call to Action. Will 2011 Be An Eventful Year in the History of Payment Card Security? Electronic Payments: The Winds of Change, A Call to Action Will 2011 Be An Eventful Year in the History of Payment Card Security? 1 Presenter W. Stephen Cannon, Chairman, Constantine Cannon LLP Former

More information

H 7111 S T A T E O F R H O D E I S L A N D

H 7111 S T A T E O F R H O D E I S L A N D LC00 01 -- H 1 S T A T E O F R H O D E I S L A N D IN GENERAL ASSEMBLY JANUARY SESSION, A.D. 01 A N A C T RELATING TO COMMERCIAL LAW--GENERAL REGULATORY PROVISIONS -- RHODE ISLAND RIGHT-TO-KNOW DATA TRANSPARENCY

More information

Cybersecurity Threats: What Retirement Plan Sponsors and Fiduciaries Need to Know and Do

Cybersecurity Threats: What Retirement Plan Sponsors and Fiduciaries Need to Know and Do ARTICLE Cybersecurity Threats: What Retirement Plan Sponsors and Fiduciaries Need to Know and Do By Gene Griggs and Saad Gul This article analyzes cybersecurity issues for retirement plans. Introduction

More information

IACT Medical Trust. June 28, Jim Hamilton (317) HIPAA Privacy Training Bose McKinney & Evans LLP

IACT Medical Trust. June 28, Jim Hamilton (317) HIPAA Privacy Training Bose McKinney & Evans LLP IACT Medical Trust HIPAA Privacy Training June 28, 2012 Jim Hamilton (317) 684-5419 jhamilton@boselaw.com 2009 Bose McKinney & Evans LLP HIPAA Overview 2009 Bose McKinney & Evans LLP The Privacy Rule HIPAA

More information

Privacy for Customer Contact Personnel Privacy for Customer Contact Personnel

Privacy for Customer Contact Personnel Privacy for Customer Contact Personnel Privacy for Customer Contact Personnel 12/2015 American Bankers Association Page 1 Menu Course Introduction Overview of Privacy Related Laws Privacy and the GLBA Benefits of Information Sharing Course

More information

Notice of Proposed Rulemaking Action Title 28, California Code of Regulations

Notice of Proposed Rulemaking Action Title 28, California Code of Regulations Arnold Schwarzenegger, Governor State of California Business, Transportation and Housing Agency Department of Managed Health Care Office of Legal Services 980 Ninth Street, Suite 500 Sacramento, CA 95814-2725

More information

Business Associate Agreement

Business Associate Agreement This Business Associate Agreement Is Related To and a Part of the Following Underlying Agreement: Effective Date of Underlying Agreement: Vendor: Business Associate Agreement This Business Associate Agreement

More information

AS PASSED BY HOUSE AND SENATE H Page 1 of 37 H.764. An act relating to data brokers and consumer protection

AS PASSED BY HOUSE AND SENATE H Page 1 of 37 H.764. An act relating to data brokers and consumer protection 2018 Page 1 of 37 H.764 An act relating to data brokers and consumer protection It is hereby enacted by the General Assembly of the State of Vermont: Sec. 1. FINDINGS AND INTENT (a) The General Assembly

More information

Preparing for a CFPB Examination or Investigation

Preparing for a CFPB Examination or Investigation Preparing for a CFPB Examination or Investigation Association of Credit Counseling Professionals Fall 2013 Conference November 14, 2013, 9:15 am 10:30 am ET Tampa, Florida Jonathan L. Pompan, Esq. Venable

More information

October 22, [these new laws take effect on January 1, unless otherwise noted]

October 22, [these new laws take effect on January 1, unless otherwise noted] The 13 Most Important New Health Insurance Laws From the 2018 California Legislative Session Compiled by Bill Robinson, DCAHU Communications Chair & Past CAHU V-P of Legislation October 22, 2018 - E-Mail:

More information

NPRM: Modifications to the HIPAA Privacy, Security, and Enforcement Rules under HITECH

NPRM: Modifications to the HIPAA Privacy, Security, and Enforcement Rules under HITECH NPRM: Modifications to the HIPAA Privacy, Security, and Enforcement Rules under HITECH Speakers Lisa A. Gallagher, BSEE, CISM, CPHIMS Senior Director, Privacy and Security HIMSS lgallagher@himss.org Amy

More information

Re: Request for Title and Summary for Initiative Constitutional Amendment Citizens Lockbox for Road Repairs and Infrastructure Improvements

Re: Request for Title and Summary for Initiative Constitutional Amendment Citizens Lockbox for Road Repairs and Infrastructure Improvements September 25, 2018 Anabel Renteria Initiative Coordinator Office of the Attorney General 1300 I Street, 17 th Floor Sacramento, CA 95814 Re: Request for Title and Summary for Initiative Constitutional

More information

Health Insurance Portability and Accountability Act (HIPAA) Terms and Conditions For Business Associates

Health Insurance Portability and Accountability Act (HIPAA) Terms and Conditions For Business Associates Health Insurance Portability and Accountability Act (HIPAA) Terms and Conditions For Business Associates I. OVERVIEW/DEFINITIONS The Health Insurance Portability and Accountability Act (HIPAA) is a federal

More information

SATINSKY CONSULTING, LLC FINAL OMNIBUS HIPAA PRIVACY AND SECURITY RULE

SATINSKY CONSULTING, LLC FINAL OMNIBUS HIPAA PRIVACY AND SECURITY RULE SATINSKY CONSULTING, LLC FINAL OMNIBUS HIPAA PRIVACY AND SECURITY RULE This newsletter summarizes the highlights of the Final Omnibus HIPAA Privacy and Security Rule announced by the Department of Health

More information

ASSEMBLY, No STATE OF NEW JERSEY. 212th LEGISLATURE INTRODUCED MAY 11, 2006

ASSEMBLY, No STATE OF NEW JERSEY. 212th LEGISLATURE INTRODUCED MAY 11, 2006 ASSEMBLY, No. STATE OF NEW JERSEY th LEGISLATURE INTRODUCED MAY, 00 Sponsored by: Assemblyman JOHN S. WISNIEWSKI District (Middlesex) Assemblyman THOMAS P. GIBLIN District (Essex and Passaic) Assemblyman

More information

LICENSE AGREEMENT. Security Software Solutions

LICENSE AGREEMENT. Security Software Solutions LICENSE AGREEMENT Security Software Solutions VERIS ACTIVE ID SERVICES AGREEMENT between Timothy J. Rollins DBA Security Software Solutions, having an office at 5215 Sabino Canyon Road and 4340 N Camino

More information

CLIENT UPDATE. HIPAA s Final Rule: The Impact on Covered Entities, Business Associates and Subcontractors

CLIENT UPDATE. HIPAA s Final Rule: The Impact on Covered Entities, Business Associates and Subcontractors CLIENT UPDATE February 20, 2013 HIPAA s Final Rule: The Impact on Covered Entities, Business Associates and Subcontractors On January 25, 2013, the U.S. Department of Health and Human Services ( DHHS )

More information

CHAPTER Committee Substitute for Committee Substitute for Committee Substitute for House Bill No. 1001

CHAPTER Committee Substitute for Committee Substitute for Committee Substitute for House Bill No. 1001 CHAPTER 2012-76 Committee Substitute for Committee Substitute for Committee Substitute for House Bill No. 1001 An act relating to timeshares; amending s. 721.02, F.S.; revising purposes of the chapter

More information

Testimony. Submitted for the Record. American Bankers Association. Financial Institutions and Consumer Credit Subcommittee

Testimony. Submitted for the Record. American Bankers Association. Financial Institutions and Consumer Credit Subcommittee Testimony Submitted for the Record from the American Bankers Association for the Financial Institutions and Consumer Credit Subcommittee of the Committee on Financial Services United States House of Representatives

More information

2017 LEGISLATIVE ISSUES FOR CALIFORNIA EMPLOYERS

2017 LEGISLATIVE ISSUES FOR CALIFORNIA EMPLOYERS 2017 LEGISLATIVE ISSUES FOR CALIFORNIA EMPLOYERS January 2017 *This presentation is offered for informational purposes only, and the content should not be construed as legal advice on any matter. www.dlapiper.com

More information

DATES: Comments must be received on or before January 30, 2004.

DATES: Comments must be received on or before January 30, 2004. FEDERAL RESERVE SYSTEM 12 CFR 202 Regulation B; Docket No. R-1168 Equal Credit Opportunity AGENCY: Board of Governors of the Federal Reserve System. ACTION: Proposed Rule. SUMMARY: The Board is proposing

More information

What You Need to Know About the CFPB s Short-Term, Small- Dollar Lending Examination Procedures

What You Need to Know About the CFPB s Short-Term, Small- Dollar Lending Examination Procedures What You Need to Know About the CFPB s Short-Term, Small- Dollar Lending Examination Procedures Richard P. Eckman Timothy R. McTaggart Pepper Hamilton LLP John C. Soffronoff, Jr. ICS Risk Advisors September

More information

TAX POLICY BACKGROUND

TAX POLICY BACKGROUND TAX POLICY TAX POLICY BACKGROUND The 2001 Session of the Legislature convened with clouds across the economic horizon. Stock values had been dropping, most severely in the high-tech sector, and various

More information

Privacy in the 21 st Century: An Oxymoron?

Privacy in the 21 st Century: An Oxymoron? Privacy in the 21 st Century: An Oxymoron? Impacts and Implications for the Insurance Industry Home Office Life Underwriters Association Orlando, FL May 7, 2001 Download at: http://www.iii.org/media/privacy/index.htm

More information

Long-Awaited HITECH Final Rule: Addressing the Impact on Operations of Covered Entities and Business Associates

Long-Awaited HITECH Final Rule: Addressing the Impact on Operations of Covered Entities and Business Associates Long-Awaited HITECH Final Rule: Addressing the Impact on Operations of Covered Entities and Business Associates November 7, 2013 Brad M. Rostolsky Partner Reed Smith LLP brostolsky@reedsmith.com Nancy

More information

OMNIBUS COMPLIANT BUSINESS ASSOCIATE AGREEMENT RECITALS

OMNIBUS COMPLIANT BUSINESS ASSOCIATE AGREEMENT RECITALS OMNIBUS COMPLIANT BUSINESS ASSOCIATE AGREEMENT Effective Date: September 23, 2013 RECITALS WHEREAS a relationship exists between the Covered Entity and the Business Associate that performs certain functions

More information

LENDERS UPDATETM A COMPLIMENTARY SERVICE TO THE MORTGAGE LENDING INDUSTRY. September 6, 2018 NEW INFORMATION FOR PACE LENDERS

LENDERS UPDATETM A COMPLIMENTARY SERVICE TO THE MORTGAGE LENDING INDUSTRY. September 6, 2018 NEW INFORMATION FOR PACE LENDERS LENDERS UPDATETM A L T & A S S O C I A T E S NEWSLETTER A COMPLIMENTARY SERVICE TO THE MORTGAGE LENDING INDUSTRY David Jerome Alt Main Office: Attorney at Law 2102 BUSINESS CENTER DRIVE David.j.alt@altandassociates.com

More information

Int. No By Council Members Ferreras Copeland, Lander, Williams, Kallos, Rodriguez, Richards, Torres and Rose

Int. No By Council Members Ferreras Copeland, Lander, Williams, Kallos, Rodriguez, Richards, Torres and Rose Int. No. By Council Members Ferreras Copeland, Lander, Williams, Kallos, Rodriguez, Richards, Torres and Rose A Local Law to amend the administrative code of the city of New York in relation to providing

More information

Privacy Notice. HEALTHY PAWS PET INSURANCE, LLC As of August 2017 OUR PRIVACY POLICIES AND PRACTICES

Privacy Notice. HEALTHY PAWS PET INSURANCE, LLC As of August 2017 OUR PRIVACY POLICIES AND PRACTICES Privacy Notice HEALTHY PAWS PET INSURANCE, LLC As of August 2017 OUR PRIVACY POLICIES AND PRACTICES At Healthy Paws Pet Insurance, LLC we are committed to integrity in all our dealings with our customers

More information

GROUP HEALTH INCORPORATED SELLING AGENT AGREEMENT

GROUP HEALTH INCORPORATED SELLING AGENT AGREEMENT GROUP HEALTH INCORPORATED SELLING AGENT AGREEMENT This Agreement, made between Group Health Inc., having its principal office at 55 Water Street, New York, NY 10041 ("GHI"), and, having its principal office

More information

The Harm Trigger. Section 2 (Purpose and Intent) and the Risks to Uniformity

The Harm Trigger. Section 2 (Purpose and Intent) and the Risks to Uniformity Thanks Jennifer. I talked to my folks and the general thought is that they are supportive of version of 2A that you presented on the call last week. In terms of some potential enhancements here is our

More information

SEC PROPOSES AMENDMENTS TO REGULATION S-P TO SAFEGUARD CUSTOMER PRIVACY

SEC PROPOSES AMENDMENTS TO REGULATION S-P TO SAFEGUARD CUSTOMER PRIVACY CLIENT MEMORANDUM SEC PROPOSES AMENDMENTS TO REGULATION S-P TO SAFEGUARD CUSTOMER PRIVACY On March 4, 2008, the Securities and Exchange Commission ( SEC ) proposed for comment amendments to Regulation

More information

UNDERSTANDING HIPAA & THE HITECH ACT. Heather Deixler, Esq. Associate, Morgan, Lewis & Bockius LLP

UNDERSTANDING HIPAA & THE HITECH ACT. Heather Deixler, Esq. Associate, Morgan, Lewis & Bockius LLP UNDERSTANDING HIPAA & THE HITECH ACT Heather Deixler, Esq. Associate, Morgan, Lewis & Bockius LLP 1 Objectives of Presentation Learn what HIPAA is Learn the purpose of HIPAA Understand who HIPAA regulates

More information

June 2010 State Tax Return. Amnesty Programs Continue Taxpayers With Unreported or Underreported Pennsylvania Taxes, Act Quickly!

June 2010 State Tax Return. Amnesty Programs Continue Taxpayers With Unreported or Underreported Pennsylvania Taxes, Act Quickly! June 2010 State Tax Return Volume 17 Number 2 Amnesty Programs Continue Taxpayers With Unreported or Underreported Pennsylvania Taxes, Act Quickly! Karen H. Currie Justin R. Thompson Dallas Dallas 1.214.969.5285

More information

November Private Education Loan Ombudsman ( 1035) 4.2 Private Education Loans and Private Education Lenders

November Private Education Loan Ombudsman ( 1035) 4.2 Private Education Loans and Private Education Lenders This is the fourth in a series of user guides that will be published by Morrison & Foerster. The user guides provide an in depth discussion on specific topics raised by the Dodd-Frank Act. For our Dodd-Frank

More information

Coping with, and Taking Advantage of, HIPAA s New Rules!! Deven McGraw Director, Health Privacy Project April 19, 2013!

Coping with, and Taking Advantage of, HIPAA s New Rules!! Deven McGraw Director, Health Privacy Project April 19, 2013! Coping with, and Taking Advantage of, HIPAA s New Rules!!! Deven McGraw Director, Health Privacy Project April 19, 2013! Status of Federal Privacy Regulations! Omnibus Rule (Data Breach, Enforcement, HITECH,

More information

CRS Report for Congress

CRS Report for Congress Order Code RS21449 Updated August 28, 2003 CRS Report for Congress Received through the CRS Web Summary Fair Credit Reporting Act: Preemption of State Law Angie A. Welborn Legislative Attorney American

More information

The wait is over HHS releases final omnibus HIPAA privacy and security regulations

The wait is over HHS releases final omnibus HIPAA privacy and security regulations The wait is over HHS releases final omnibus HIPAA privacy and security regulations The Department of Health and Human Services (HHS) published long-anticipated (and longoverdue) omnibus regulations under

More information

Covered California Analysis of the Insurance Rate Public Justification & Accountability Act Proposition 45

Covered California Analysis of the Insurance Rate Public Justification & Accountability Act Proposition 45 Covered California Analysis of the Insurance Rate Public Justification & Accountability Act Proposition 45 Presentation by Covered California Executive Director Peter V. Lee Covered California Board Meeting

More information

The General Data Protection Regulation s Impact on M&A

The General Data Protection Regulation s Impact on M&A The General Data Protection Regulation s Impact on M&A PRACTICAL ADVICE ON HOW TO CONTINUE A SMOOTH M&A PROCESS Presented by Avi Gesser, Davis Polk partner, Litigation/Cybersecurity Pritesh P. Shah, Davis

More information

AGREEMENT BETWEEN TENNESSEE TECHNOLOGICAL UNIVERSITY AND

AGREEMENT BETWEEN TENNESSEE TECHNOLOGICAL UNIVERSITY AND AGREEMENT BETWEEN TENNESSEE TECHNOLOGICAL UNIVERSITY AND THIS AGREEMENT is made this day of, 20 by and between TENNESSEE TECHNOLOGICAL UNIVERSITY, hereinafter referred to as "University," and hereinafter

More information

HIPAA Training. HOPE Health Facility Administrators June 2013 Isaac Willett and Jason Schnabel

HIPAA Training. HOPE Health Facility Administrators June 2013 Isaac Willett and Jason Schnabel HIPAA Training HOPE Health Facility Administrators June 2013 Isaac Willett and Jason Schnabel Agenda HIPAA basics HITECH highlights Questions and discussion HIPAA Basics Legal Basics Health Insurance Portability

More information

LEGISLATIVE UPDATE 2011

LEGISLATIVE UPDATE 2011 LEGISLATIVE UPDATE 2011 BRUCE V. GRIFFITHS 1 Assistant Attorney General 2 Consumer Protection & Public Health Division Office of the Attorney General P.O. Box 12548 Austin, Texas 78711 State Bar of Texas

More information