Recently we discussed the principle of materiality in the context of Valeant Pharmaceuticals and its Variable Interest Entity (VIE), Philidor. In that post we examined two key concepts in assessing materiality, namely quantitative and qualitative. It is possible for something to be quantitatively immaterial, … Continue reading
Category Archives: Cybersecurity
Exploring the Disclosure of Cybersecurity
The SEC has been concerned with cybersecurity disclosures for many years. In 2011, guidance was issued to clarify public companies’ responsibility to disclose cybersecurity issues. The guidance requires public companies to disclose cybersecurity as a Risk Factor for companies that … Continue reading
Taking Responsibility for Cybersecurity
As recently illustrated by the hack of Sony, ineffective cybersecurity measures can pose significant risks to a company. Many companies don’t have the technical skills to prepare for cyber-attacks; and even if they do, they are at an inherent disadvantage. Cyber-criminals … Continue reading
Cybersecurity and the Fifth of November
As October comes to an end, many in Great Britain prepare to celebrate Guy Fawkes Day, memorializing the failed revolutionary Gunpowder Plot. A modern twist on the holiday, popularized by an anarchist movie, has the cyber world preparing as well – … Continue reading
Cybersecurity and Personal Information Held By Public Companies
In the wake of massive data breaches of customer information at Target and Ebay, cybersecurity has jumped to the forefront of corporate risk discussions. The stakes are high. Identity theft, credit card fraud, and monetary loss are some of the … Continue reading