Legal Cyber Academy

Managing Technical and Regulatory Cybersecurity Risks

Taught by Daniel B. Garrie

CISO & CTOLevel: Intermediate1h 4m

Free preview of this course

A 5-minute excerpt from this course. The full course continues from where this leaves off.

Overview of Managing Technical and Regulatory Cybersecurity Risks

Panelists give an overview of cybersecurity and the current threat landscape, reviewing how criminals infiltrate systems and what they target. They outline the 2023 SEC cybersecurity rules and their requirements, discuss the challenges non-public corporations face, highlight the impact of breaches on law firms with case examples, and recommend regular cyber risk assessments through tabletop exercises.

What you’ll learn in Managing Technical and Regulatory Cybersecurity Risks

  • Understand cybersecurity basics and today's threat landscape
  • Explain the 2023 SEC cybersecurity rules and requirements
  • Manage challenges faced by non-public corporations
  • Apply cyber risk assessments and tabletop exercises

Audience and prerequisites

Who should take this courseManaging Technical and Regulatory Cybersecurity Risks

Attorneys advising companies and law firms on technical and regulatory cyber risk.

Curriculum

  1. 1. Cybersecurity Basics and Today's Threat Landscape

    How cybercriminals infiltrate systems and what they target.

    Locked
  2. 2. SEC Rules on Cybersecurity Risk Management and Disclosure

    The 2023 SEC rules, their significance, and requirements.

    Video coming soon
  3. 3. Managing Challenges Faced by Non-Public Corporations

    Regulatory and security challenges outside public company rules.

    Video coming soon
  4. 4. How Data Breaches Are Affecting Law Firms

    Prior cases of breaches experienced by top law firms.

    Video coming soon
  5. 5. Why You Should Perform a Cyber Risk Assessment

    Regular assessments in the form of tabletop exercises.

    Video coming soon

Your instructors

Portrait of Daniel B. Garrie

Daniel B. Garrie

Founder, Law & Forensics; Neutral at JAMS; Faculty at Harvard

Law & Forensics LLC · JAMS · Harvard · Rutgers Law School · Journal of Law & Cyber Warfare

Daniel B. Garrie is the founder and executive managing partner of Law & Forensics LLC, a boutique cybersecurity and forensic engineering firm he co-founded in 2008. He serves as a neutral, arbitrator, and forensic special master at JAMS, focusing on cybersecurity, cryptocurrency, and complex technology disputes, and holds faculty appointments at Harvard and Rutgers Law School. A patented software inventor and prolific author, he is editor-in-chief of the Journal of Law & Cyber Warfare and a widely cited authority on computer forensics, eDiscovery, and cyber litigation.

Portrait of Nishat Ruiter

Nishat Ruiter

General Counsel and Secretary, TED Conferences

TED Conferences

Nishat Ruiter is General Counsel and Secretary of TED Conferences, where she manages legal strategy across the organization, including trademark, privacy, AI risk management and compliance policies, and corporate matters for the TED Foundation. Her work covers licensing of TED content worldwide across all forms of media, acquisitions, partnerships, marketing and code of conduct matters. She has more than 17 years of experience as in-house counsel and in private practice, and before TED was Associate General Counsel at CA Technologies, where she headed the North American sales legal department. TED Conferences runs TEDLaw, a learning program for the legal profession launched in partnership with the ACC Foundation. She holds a J.D. from Widener Law School and a B.A. from Rutgers. At Legal Cyber Academy she teaches on GDPR liability and managing cybersecurity risk.

Portrait of Justin Herring

Justin Herring

Partner, Mayer Brown

Mayer Brown

Justin Herring is a partner at Mayer Brown, practicing in the firm's Cybersecurity & Data Privacy, Financial Services Regulatory & Enforcement, and Global Investigations & White Collar Defense groups. He advises on global incident response, regulatory enforcement and related litigation, including for crypto and fintech clients. He was Executive Deputy Superintendent of the Cybersecurity Division at the New York State Department of Financial Services, the first leader of that division, and previously spent nine years as an Assistant U.S. Attorney, serving as inaugural chief of the Cybercrimes Unit in the District of New Jersey. He holds a J.D. from the University of Chicago Law School. At Legal Cyber Academy he teaches on the New York DFS cybersecurity regulations, blockchain and cryptocurrency, and managing cybersecurity risk.

Portrait of Elizabeth Atlee

Elizabeth Atlee

SVP / Chief Ethics & Compliance Officer

CBRE

Elizabeth Atlee is SVP and Chief Ethics & Compliance Officer at CBRE, and former Deputy General Counsel of the company. She leads CBRE's global ethics, compliance, and operations as part of the company's senior risk, compliance, and legal leadership team, overseeing a large organization spanning dozens of countries. She has built compliance programs across data privacy, cybersecurity, and ESG reporting, and advises on risk, legal, technology, cyber/information security, data protection, and employment matters, including as a founding member of CBRE's Data Use & Data Privacy steering committee.

Portrait of Sean Zadig

Sean Zadig

SVP, Chief Information Security Officer

Yahoo

Sean Zadig is Senior Vice President and Chief Information Security Officer (CISO) at Yahoo, where he is responsible for protecting the company's more than one billion users along with its employees and systems. He previously served as Yahoo's VP of Cyber Defense, leading security operations and threat management and building teams that disrupted cybercriminal networks and government-backed attackers. Before Yahoo he worked on cybercrime matters at Google and NASA, where he served as a Special Agent in the Office of Inspector General's Computer Crimes Division. He holds a B.S. in Computer Science, a Master's in Criminal Justice, and a Ph.D. in Information Systems, and is a CISSP.

Learning track

Part of a learning trackThe CISO's Legal PlaybookCourse 6 of 8 — see the full path