New SEC Rule on Cybersecurity Intensifies Reporting Obligations for Public Companies
In a marked move, the U.S. Securities and Exchange Commission (SEC) adopted a noteworthy new rule last week, a move that notably increased reporting obligations for public companies. The adopted Cybersecurity Risk Management, Strategy, Governance, and Incident Disclosure Rule (the “Rule”) demands, among various other things, the reporting of “cybersecurity incidents” within merely four business…