Data Security & Privacy

Byrne Law assists clients navigate the often-complex requirements of privacy and data security laws. We advise companies on a wide range of privacy measures, assisting clients in ensuring that their data collection and processing practices, data transfer procedures, privacy policies, and marketing activities are compliant with the relevant domestic and international privacy regimes, regulations and laws.

Data privacy cannot exist without also ensuring that the company’s data is secure. Safeguarding data has become mission-critical in the digital age. Adequate security measures are necessary to protect the authenticity, confidentiality and integrity of trade secrets and customer data, and are now routinely a key area of inquiry for companies as they consider and select vendors and strategic partners. In addition, an increasing number of countries are adopting privacy and security breach disclosure laws that affect how customer data can be used, who can access it, require entities to notify government agencies and the affected individuals when a breach of security has resulted in the unauthorized access, disclosure, or theft of sensitive or personal data.

Byrne Law assists clients assess physical, technical, and administrative vulnerabilities, design policies, procedures and playbooks that outline how data is to be protected, perform tabletop exercises designed to help staff understand their roles, and help implement appropriate security safeguards. We also help clients understand their reporting obligations in the event of a breach, and lead incident response teams that coordinate investigations into how the breach occurred, what data may have been compromised, and what the company’s legal and regulatory obligations are. We actively work with law enforcement, insurers, IT professionals, and public relations professionals to contain and minimize legal and financial exposure and minimize reputational risks.

Areas of Focus

  • Compliance training, policies and procedures
  • Cross-border data transfer and protection
  • Data archive transfer
  • Data breach investigation, incident response and remediation
  • Data breach class action defense
  • Data Privacy and Security policy drafting, implementation and review
  • Defensible disposition of legacy data and ROT assessment and protocol development
  • GDPR compliance
  • HIPAA Privacy and Security policy drafting, implementation and review
  • Litigation and Regulatory enforcement
  • M&A due diligence
  • PCI Compliance
  • Privacy and Security assessment and preparedness
  • Post-merger data integration

Related Capabilities

  • Disputes, Litigation & Investigations
  • Electronic Discovery & Data Analytics

You Have a Vision. We Know How to Get You There. Our approach to legal services is unique. See how we can help.