Skip to main content
Have a personal or library account? Click to login
From Securities to Cybersecurity: The SEC Zeroes in on Cybersecurity Cover

From Securities to Cybersecurity: The SEC Zeroes in on Cybersecurity

Open Access
|Apr 2020

Abstract

Cybersecurity is one of the gravest threats facing public companies, the markets, and the economy at large today. Because of this pressing threat, the SEC has increased its attention to cybersecurity. In 2018 interpretive guidance, consistent with the mandatory disclosure regime established by federal securities regulation, the SEC stipulated that public companies have a duty to disclose those cybersecurity risks and incidents that are material to investors. The 2018 guidance added little, however, and instead parroted earlier guidance from the SEC’s Division of Corporation Finance. Moreover, the SEC itself has been plagued by cybersecurity problems. This Note asserts that to regulate cybersecu-rity effectively, the SEC must both strengthen its own cybersecurity and further expand upon, rather than simply repeat, the obligation of public companies to disclose cybersecurity risks and incidents.

Journal eISSN: 1930-661X
Language: English
Page range: 1535 - 1576
Published on: Apr 30, 2020
Published by: Boston College Law School
In partnership with: Paradigm Publishing Services

© 2020 Rebecca Rabinowitz, published by Boston College Law School
This work is licensed under the Creative Commons License.