<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The Harvard Law School Forum on Corporate Governance</title>
	<atom:link href="https://corpgov.law.harvard.edu/contributor/jeremy-feigelson/feed/" rel="self" type="application/rss+xml" />
	<link>https://corpgov.law.harvard.edu</link>
	<description>The leading online blog in the fields of corporate governance and financial regulation.</description>
	<lastBuildDate>Thu, 29 Jul 2021 13:10:23 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>https://wordpress.org/?v=5.7.2</generator>
	<item>
		<title>How to Disclose a Cybersecurity Event: Recent Fortune 100 Experience</title>
		<link>https://corpgov.law.harvard.edu/2016/09/26/how-to-disclose-a-cybersecurity-event-recent-fortune-100-experience/</link>
		<comments>https://corpgov.law.harvard.edu/2016/09/26/how-to-disclose-a-cybersecurity-event-recent-fortune-100-experience/#respond</comments>
		<pubDate>Mon, 26 Sep 2016 13:13:04 +0000</pubDate>
<!-- 		<dc:creator><![CDATA[]]></dc:creator> -->
				<category><![CDATA[Accounting & Disclosure]]></category>
		<category><![CDATA[Practitioner Publications]]></category>
		<category><![CDATA[Securities Regulation]]></category>
		<category><![CDATA[Accountability]]></category>
		<category><![CDATA[Cybersecurity]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Filings]]></category>
		<category><![CDATA[Financial reporting]]></category>
		<category><![CDATA[Form 8-K]]></category>
		<category><![CDATA[Regulation FD]]></category>
		<category><![CDATA[Risk disclosure]]></category>
		<category><![CDATA[Risk management]]></category>
		<category><![CDATA[SEC]]></category>
		<category><![CDATA[Shareholder communications]]></category>

		<guid isPermaLink="false">http://corpgov.law.harvard.edu/?p=73800?d=20160926091304EDT</guid>
		<description><![CDATA[Cybersecurity threats pose real challenges for any company, including the theft of valuable intellectual property and the reputational harm caused by losses of customer information. Attendant to the operational and financial challenges associated with cybersecurity threats, SEC reporting companies must also consider their disclosure obligations resulting from the risk or occurrence of data breaches or [&#8230;]]]></description>
				<content:encoded><![CDATA[<hgroup><em>Posted by Luke Dembosky and Jeremy Feigelson, Debevoise & Plimpton LLP, on Monday, September 26, 2016 </em><div style="background:#F8F8F8;padding:10px;margin-top:5px;margin-bottom:10px"><strong>Editor's Note: </strong> <a href="http://www.debevoise.com/lukedembosky">Luke Dembosky</a> and <a href="http://www.debevoise.com/jeremyfeigelson">Jeremy Feigelson</a> are partners at Debevoise &amp; Plimpton LLP. This post is based on a Debevoise &amp; Plimpton publication by Mr. Dembosky, Mr. Feigelson, <a href="http://www.debevoise.com/jimpastore">Jim Pastore</a>, <a href="http://www.debevoise.com/paulrodel">Paul M. Rodel</a>, <a href="http://www.debevoise.com/davidbecker">David M. Becker</a>, <a href="http://www.debevoise.com/brettnovick">Brett M. Novick</a>, and <a href="http://www.debevoise.com/benjaminpedersen">Benjamin R. Pedersen</a>.
</div></hgroup><p>Cybersecurity threats pose real challenges for any company, including the theft of valuable intellectual property and the reputational harm caused by losses of customer information. Attendant to the operational and financial challenges associated with cybersecurity threats, SEC reporting companies must also consider their disclosure obligations resulting from the risk or occurrence of data breaches or other cybersecurity events.</p>
<p>During the period from January 2013 through the third quarter 2015, there were 20 reported incidents of major data breaches or cybersecurity events at Fortune 100 companies. While this number is without doubt a fraction of the total cybersecurity events experienced at these and similar companies during that time, a survey of these cybersecurity events, and the manner in which each of the 18 affected companies responded in their SEC filings, is instructive. We have compiled a detailed database, comparing disclosure responses of these companies across a number of vectors in order to guide this complex process.</p>
<p> <a href="https://corpgov.law.harvard.edu/2016/09/26/how-to-disclose-a-cybersecurity-event-recent-fortune-100-experience/#more-73800" class="more-link"><span aria-label="Continue reading How to Disclose a Cybersecurity Event: Recent Fortune 100 Experience">(more&hellip;)</span></a></p>
]]></content:encoded>
			<wfw:commentRss>https://corpgov.law.harvard.edu/2016/09/26/how-to-disclose-a-cybersecurity-event-recent-fortune-100-experience/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
