

SHROOK SECURITY HOW TO
Our attorneys have the expertise to help companies identify which law(s) apply to them and how to best comply. Shook counsels clients to help them build proactive privacy programs that comply with privacy regimes like the CCPA/CPRA, GDPR, LGPD, HIPAA, and a mix of other statutes and regulatory guidance. Privacy Compliance | The law governing the collection, processing, storage and disposal of personal information is constantly changing.We also draw from our litigation experience to prepare data security provisions that maximize the protection of sensitive information shared with vendors. We draft policies and procedures to maximize compliance with data security laws. We train our clients’ boards, management, officers, and employees to ensure they are aware of the latest threats and ways to mitigate them. We draft incident response plans that our clients use as a blueprint in responding to a cyberattack. Incident Response Preparedness | We draw from our deep incident response experience to provide proactive preparedness services that help our clients avoid or mitigate the risk of a cyberattack.These services include tabletop exercises where we simulate the phases of a data incident.

We are incident response panel counsel for several insurance carriers, and we regularly partner with the best forensic firms, threat actor negotiators, data review firms, and public relations firms to ensure our clients are well-equipped to respond to any data incident. Our team members have been quoted by The Wall Street Journal, France 24, Law360, and many other news outlets for their leadership relating to ransomware. Shook has handled over 100 ransomware matters and represented companies in regulatory inquiries following those incidents. We have directed more than 1,500 incidents in over 150 countries involving millions of affected individuals. We advise clients on applicable breach notification laws, directing legal hold obligations and preserving contribution rights against third parties, as well as help clients respond to regulatory, media and customer inquiries. Incident Response | When a company suspects it has suffered a data breach, our team directs the response efforts to minimize the clients’ legal risks and operational losses.With additional scores of data breach and privacy class action lawsuits relating to the CCPA, CMIA, state wiretap laws, the TCPA, and many other privacy laws, Shook is one of the top privacy and data security litigation firms in the United States. Privacy and Cybersecurity Litigation | With nearly 150 active BIPA class action lawsuits, Shook is the leading biometric privacy law firm in the country.With a client list spanning all industries and sizes-from start-ups to 75 of the Fortune 100 companies-we help companies navigate the ever-growing challenges of collecting, storing and utilizing sensitive information. Shook, Hardy & Bacon’s Privacy and Data Security practice has been acclaimed by Chambers and Legal 500 for their achievements and thought leadership in privacy and data security law.
