Cravath’s London Office Moves to 100 Cheapside
March 17, 2022
On March 17, 2022, Cravath prepared a memo for its clients entitled “SEC Proposes Rules to Enhance and Standardize Cybersecurity‑Related Disclosure for Public Companies,” which summarizes the agency’s proposed new rules, released on March 9, 2022, for disclosures of cybersecurity incidents, risk management, strategy and governance. The proposed rules include requirements for current disclosure of material cybersecurity incidents and periodic disclosures on certain forms and proxy statements, and apply the same rules to foreign private issuers as proposed for domestic public companies. The memo also analyzes the SEC’s earlier series of issuances of interpretive guidance and the potential effects of the proposed change on companies’ compliance procedures. In sum, the memo concludes that, if adopted as proposed, these rules will create the first cybersecurity-specific disclosure obligations for public companies, and may lead to operational and governance changes for many companies.
Celebrating 200 years of partnership. In 2019, we celebrated our bicentennial. Our history mirrors that of our nation. Integral to our story is our culture.
Attorney Advertising. ©2025 Cravath, Swaine & Moore LLP.