CISOs and Their Companies Struggle to Comply With SEC Disclosure Rules
ID: cb2a4d60-6a68-5cdb-9d55-30dfae60ec2e
STIX ID: report--cb2a4d60-6a68-5cdb-9d55-30dfae60ec2e
Feed Name: Dark Reading
This article examines how the SEC's new cybersecurity incident disclosure rule is driving public companies to demand greater control over third-party incident response and to require rapid materiality determinations, placing significant legal and operational pressure on CISOs and smaller vendors; it highlights preparedness gaps, fear-driven underreporting, examples of preemptive disclosures, and recommends coordinated processes (legal, IT, security, business), evidence preservation, and tabletop exercises to meet tight disclosure timelines.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
