Posts tagged Public Policy

4 min Public Policy

Thawing Out the Chilling Effect Of DMCA Section 1201

The Copyright Office issued the latest rules on security research under DMCA Section 1201. Good news: researchers' legal protections have been strengthened with the removal of the "all other laws" requirement.

4 min Public Policy

Update to GLBA Security Requirements for Financial Institutions

The FTC updated cybersecurity requirements for financial institutions under GLBA. This includes access controls, regular penetration testing and vulnerability scanning, and incident response, among other things. Here we'll detail the changes in comparison to the previous rule.

10 min Ransomware

Ransomware: Is Critical Infrastructure in the Clear?

Is critical infrastructure in the clear, is it a specific target of ransomware attackers, or is it simply on the same footing as any other organization?

2 min Cybersecurity

Rapid7 Statement on the New Standard Contractual Clauses for International Transfers of Personal Data

Rapid7 is committed to upholding high standards of privacy and security for our customers, and we are pleased to be able to offer the New SCCs.

4 min Public Policy

Cybersecurity in the Infrastructure Bill

This post provides highlights on cybersecurity in recent infrastructure legislation. Cybersecurity is essential to ensure modern infrastructure is safe, and Rapid7 commends Congress and the Administration for including cybersecurity in the Infrastructure Investment and Jobs Act.

10 min Cybersecurity

Reforming the UK’s Computer Misuse Act

The CMA is the UK’s anti-hacking law, and we've ​provided feedback on the issues we see with the legislation.

11 min Public Policy

Hack Back Is Still Wack

The appeal of hack back is easy to understand, but that doesn't make the idea workable. Here, we outline why Rapid7 is against the authorization of private-sector hack back.

3 min Public Policy

Rapid7 Joins Statement On DMCA Lawsuits Against Security Tools

Rapid7 joined a statement from cybersecurity community members urging against suppression of security tools and technologies using Section 1201 of the DMCA.

9 min Public Policy

Proposed security researcher protection under CFAA

Rapid7 views independent cybersecurity research and the security community as important drivers for advancing cybersecurity for all, a core value for Rapid7. One way we take action on this value is by supporting protection for security researchers acting in good faith.

2 min Public Policy

Supreme Court narrows CFAA

The Supreme Court interprets the CFAA narrowly. This avoids over-criminalizing cybersecurity research and commonplace internet activity, though may raise concerns about insider threats.

6 min Public Policy

How the Biden Administration's cybersecurity order will affect companies

The Biden Administration's Executive Order will create new software security and cyber incident reporting requirements for federal contractors.

3 min Cloud Infrastructure

Reducing Risk With Identity Access Management (IAM)

As your supply chain grows, so does your attack surface. As business scales up and cloud providers release new services and resources to support, it becomes exponentially more challenging for security teams to manage access.

7 min Public Policy

Calling for cybersecurity in infrastructure modernization

Rapid7 issued a group letter urging the Biden Administration and Congress to work together to integrate cybersecurity into infrastructure legislation.

6 min Public Policy

Overview of the EU’s draft NIS 2 Directive

The EU Commission proposed revisions to its NIS Directive that would enhance cybersecurity requirements on critical infrastructure-like organizations in the EU. This post provides an overview of the proposed revisions.

4 min Public Policy

Principles for personal information security legislation

Rapid7's principles for laws to protect personal information: 1) Strong but flexible security requirements; 2) Security exemptions from privacy restrictions; 3) State preemption without undermining cybersecurity.