Privacy and Information Security Law

Data privacy and information security is a key concern for clients that operate in today’s business environment. Information technology is susceptible to unlawful intrusion by third parties, and appropriate safeguards of customer and employee data, as well as of a business’s trade secrets and operations are of vital importance. Navigating the legal terrain is challenging, since the data privacy laws vary depending on the industry.

The Privacy and Information Security Law group is an interdisciplinary group of corporate and litigation attorneys who are knowledgeable in both U.S. and international data privacy laws. The group draws upon its collective experience to solve legal issues arising in connection with the fast-growing and dynamic area of law.

The Privacy and Information Security group regularly assists clients with formulating and implementing privacy policies and practices, including those required by the Gramm-Leach-Bliley Act, USA Patriot Act, Health Insurance Portability and Accountability Act (HIPAA), the Children’s Online Privacy Protection Act. . In addition, the Group’s attorneys assist with the following:

  • the development and formulation of website security and privacy statements and disclosures
  • advertising and marketing issues, including those raised by targeted behavioral advertising
  • issues concerning identity theft, including medical identity theft
  • issues raised by federal computer security and trade secret statutes
  • record retention policies and practices
  • formulating Identity Theft Red Flag Programs and procedures;
  • employment information confidentiality issues
  • education information privacy
  • reviewing and drafting third party service provider confidentiality agreements
  • planning for and responding to data security breaches throughout the country

For clients who have multi-national operations, our attorneys provide assistance with international data privacy issues, whether assisting with the European Union Data Privacy Directive requirements or the US Department of Commerce Safe Harbor self-certification, or obtaining legal assistance in other countries through the firm’s membership in Multilaw.

Our clients include major utilities, telecoms, financial institutions, health care providers, insurance companies, securities firms, retailers, and employers in multiple economic sectors, as well as companies (both large and small) who require assistance with their legal and risk management obligations to protect the confidentiality of the personal information of their employees, clients and customers.

Service Area Contact(s)

  • Jane Hils Shea

    513.651.6961