1. Home
  2. |Insights
  3. |Standardizing Federal PII Breach Response: OMB Updates Guidance for Agencies, Contractors, and Grant Recipients

Standardizing Federal PII Breach Response: OMB Updates Guidance for Agencies, Contractors, and Grant Recipients

Client Alert | 1 min read | 01.11.17

On January 3, 2017, the Office of Management and Budget (OMB) issued M-17-12, which updates and supersedes 2006 and 2007 OMB memoranda on preparing for and responding to breaches of personally identifiable information (PII) by imposing minimum standards on agencies for incident response programs, training and awareness, reporting, and documentation, coupled with requiring use of a flexible framework to assess and mitigate the risk of harm to individuals potentially affected by a PII breach. While making clear that a PII breach does not necessarily indicate an absence of adequate safeguards, the updated guidance also requires agencies to impose specific requirements, such as encryption, training, and incident-response obligations, on all contractors and subcontractors (at any tier); identifies PII-related requirements for federal grant recipients; and directs the FAR Council to “promptly… create appropriate contract clauses and regulatory coverage.”

Contacts

Insights

Client Alert | 7 min read | 01.05.26

Consideration of Artificial Intelligence in Arbitration Terms of Reference

As artificial intelligence (AI) continues to evolve and integrate into various aspects of legal practice, counsel and arbitral tribunals drawing up their Terms of Reference (TOR) establishing the terms of the dispute being referred to arbitration and also formulating their procedural orders should consider the implications of AI. This client alert highlights the importance of addressing AI in TOR negotiations and provides an overview of likely topics international arbitration practitioners can expect to treat in TORs and procedural orders....