New York Law Journal
  • Home
  • News
  • Decisions
  • Columns
  • Practice Areas
  • My NYLJ
  • Careers
  • Courts
  • Verdicts
  • Public Notices
  • Smart Litigator

Home > Data Loss - And Why It Matters

Font Size: increase font decrease font

Data Loss - And Why It Matters

By Anthony E. Davis Contact All Articles 

New York Law Journal

March 4, 2013

  •    
  •    
  •    
  •      
 
Anthony E. Davis

Anthony E. Davis

The organized, allegedly state-sponsored hacking of confidential data by the Chinese army has been much in the news in recent days. Included in the list of targets described in the latest stories (albeit not for the first time), are law firms. According to the 2012 ABA technology survey, approximately 10 percent of all law firms have experienced a data security breach of some type. Well understood in this context is the fact that law firms' own data is likely not very interesting to the intruders—but their clients' data certainly is.

Numerous ethics opinions in New York and elsewhere emphasize lawyers' duties in connection with their use of technology. The opinions explain that the duty of competent representation includes a requirement that lawyers have an understanding of the technologies that they use, and emphasize the duty to take reasonable care in the selection and use of technology. The most important element of that duty is the responsibility for adequately and appropriately protecting client confidential information in accordance with the obligations set out at Rule of Professional Conduct 1.6. This article addresses the subject of technology in law practice from two very different perspectives: What are some of the consequences if confidential client data is lost, whether through hacking or otherwise (a "data breach"); and what help can lawyers expect from their insurance carriers when these events occur.

Potential Risks

Let's begin with some questions:

• Has your firm's network ever been successfully hacked? (If you answered "no," how do you know?)

• Has anyone in your firm ever lost a laptop, a BlackBerry, iPhone, Android (or any other PDA), or a flash drive?

• Did the lost device contain client-specific and confidential information?

• Was the device password protected? Was all data contained therein encrypted?

• Has anyone in your firm accessed the firm's network or transferred sensitive data from an unsecured Wi-Fi connection?

• Does your firm have a "Bring Your Own Device" culture? If you answered "yes," how can you be sure each mobile user has adhered to practices within the IT department's control and security in every aspect of their use of the device?

• Does your firm use an open document or knowledge management system? If you answered "yes," how do you control access to confidential data? Do you track what has been accessed or removed?

Even before the most recent spate of media coverage, in an article on Bloomberg's website in January 2012, "China-Based Hackers Target Law Firms to Get Secret Deal Data," reporters Michael A. Riley and Sophia Pearson quoted Mary Galligan, head of the cyber division in the New York City office of the U.S. Federal Bureau of Investigation, as saying that "As financial institutions in New York City and the world become stronger, a hacker can hit a law firm and it's a much, much easier quarry." According to the story, Galligan's unit convened a meeting with the top 200 law firms in New York City in November 2011 to deal with the rising number of law firm intrusions and issued a warning: Hackers indeed see attorneys as a back door to the valuable data of their corporate clients. Back then, before its most recent report grabbed the headlines, Mandiant, a consulting firm based in Alexandria, Virginia, estimated that 80 major U.S. law firms were hacked in 2011.

A browser or device that allows javascript is required to view this content.

Continue reading

  • 1
  • 2
  • 3

Next



Subscribe to New York Law Journal

You must be signed in to comment on an article

Find similar content

Firms mentioned

    
  • Hinshaw & Culberston

Companies, agencies mentioned

    
  • Get Secret Deal Data
  • Paragon International Insurance Brokers
  • Paragon Risk Management Services
  • Association of Professional Responsibility Lawyers
  • Hinshaw & Culbertson
  • Insurance Implications
  • U.S. Federal Bureau of Investigation
  • Bloomberg LP
  • National Public Radio Inc.

Key categories

    
  • Information Security
  • Knowledge Management
  • Networking, Storage, Content
  • Law Firm Management
  • Law Firm Partners

Most viewed stories

    
  1. Legal Services NYC Employees Strike; Lower Intake Expected
    •      
  2. Stop-and-Frisk Judge Relishes Her Independence
    •      
  3. Trial Founders on 'Personality Issues' Between Judge, Counsel
    •      
  4. Circuit Reverses Intentional Bias Finding in City Firefighter Hiring
    •      
  5. Donovan Criticizes Secret Payoff to Lopez Victims
    •      
lawjobs.com

TOP JOBS

MORE JOBS

POST A JOB

From the Law.com Network

Three Strategies for Reducing Class Action Costs

Managing Relationships With Legal Project Management

News Corp. Hires Ex-Skadden Communications Chief Bush

Law Firm Leaders' Confidence Slipping, Says Survey

Contrite Companies Can Win Forgiveness in Bribery Cases
  •      
    • Subscription Required

Plaintiffs Want to See Toyota's 'Crown Jewels'
  •      
    • Subscription Required

Tech Circuit: LegalTech West Coast Edition

Silicon Startups

Prolific ADA Plaintiff Faces Nemesis in Harassment Suit

Ullyot Exit Closes Chapter for Facebook
  •      
    • Subscription Required

Rothstein Bankruptcy Trustee Files New Reorganization Plan
  •      
    • Subscription Required

Fla. Bar Wants Disbarment for Former Judge
  •      
    • Subscription Required

Bar Candidate Quits N.Y. Job To Satisfy N.J. Practice Bylaw

Pro Bono Work Proposed as Condition for Bar Admission
  •      
    • Subscription Required

The Affordable State-Specific Practice Solution
Available in NY, NJ, PA and CT editions - research, draft and prepare even the most complex cases with ease.

Judge in Stop-and-Frisk Case Relishes Her Independence

Ground Is Shifting in 14-Year Litigation

High Court Names Evers as the FJD's Court Administrator
  •      
    • Subscription Required

Third Circuit Rules Against Citgo in Case Over Oil Spill

Law Schools Are Looking Beyond LSATs, Says Mich. Dean

Is Freezing Your Eggs the Solution?

Water Warriors: Local Governments Bring Pollution Suits
  •      
    • Subscription Required

Sanction Reversed; Filing of Sexually Explicit Chat OKd
  •      
    • Subscription Required

DeKalb Judge Dismisses, Then Recuses

Jury Finds For Attorney In Legal-Mal Case
  •      
    • Subscription Required

Corporate Bribery Case Part Of National Trend
  •      
    • Subscription Required

Court Continues To Grant Lawyers Fraud Immunity
  •      
    • Subscription Required

  • Books
  • Advertise
  • Contact NYLJ
  • About NYLJ
  • RSS
  • Subscribe
  • About |
  • ALM Properties |
  • ALM Reprints |
  • Customer Support |
  • Privacy Policy |
  • Terms & Conditions |
  • ALM User License Agreement
ALM Media