Canadians across the country mark Remembrance Day
Canadians gathered Monday in cities and towns across the country to honour the sacrifice of men and women in uniform who gave their lives in service of the country's values and principles.
The U.S. Securities and Exchange Commission adopted rules Wednesday to require public companies to disclose within four days all cybersecurity breaches that could affect their bottom lines. Delays will be permitted if immediate disclosure poses serious national security or public safety risks.
The new rules, passed by a 3-2 vote along party lines, also require publicly traded companies to annually disclose information on their cybersecurity risk management and executive expertise in the field. The idea is to protect investors.
Breach disclosures can be delayed if the U.S. Attorney General determines they would "pose a substantial risk to national security or public safety" and notifies the SEC in writing. Only under extraordinary circumstances could that delay be extended beyond 60 days.
"Whether a company loses a factory in a fire -- or millions of files in a cybersecurity incident -- it may be material to investors," SEC Chair Gary Gensler said in a statement, noting the current inconsistency in disclosures.
The rules will put "more transparency into an otherwise opaque but growing risk" and may spur improvements in cyber defenses -- though potentially posing a bigger challenge for smaller companies with limited resources, Lesley Ritter, senior VP at Moody's Investors Service, said in a statement.
Technically, the clock doesn't start ticking on the four-day window for reporting until companies have determined a breach is material.
One of the dissenting Republican commissioners, Hester Peirce, complained that the new requirements overstep the SEC's authority and "seem designed to better meet the needs of would-be hackers" - who could benefit from detailed info on how companies manage cyberrisk.
As well, Peirce said in a statement, the temptation for the SEC to "micromanage" company operations will only grow.
A leading figure in cybersecurity, Tenable CEO Amit Yoran, heartily welcomed the new rule.
"For a long time, the largest and most powerful U.S. companies have treated cybersecurity as a nice-to-have, not a must have. Now, it's abundantly clear that corporate leaders must elevate cybersecurity within their organizations," he said in a statement.
The rules were first proposed in March 2022, when the SEC determined that breaches of corporate networks posed an escalating risk as their digitization of operations and remote work increased -- and the cost to investors from cybersecurity incidents rose.
While some critical infrastructure operators and all health care providers must by law report breaches, no federal breach disclosure law exists.
In a new report published by IBM, researchers found organizations now pay an average of US$4.5 million to deal with breaches -- a 15 per cent increase over the past three years. The Ponemon Institute researchers also found that impacted businesses typically pass the costs on to consumers, who may themselves also be victims with personal information stolen in a breach.
The rule's passage also comes amid slow-moving, often cryptic disclosures -- some through SEC filings -- from a major data breach affecting hundreds of organizations caused by the so-called supply chain hack by Russian cybercriminals of a widely used file transfer program, MOVEit. The breach has impacted multiple universities, major pensions funds, U.S. government agencies, more than 9 million motorists in Oregon and Louisiana and companies including the BBC, British Airways, Ernst & Young and PricewaterhouseCoopers.
Many victims of the MOVEit breach were quick to point out that they were failed by a third-party application. The new SEC rule encompasses third-party apps and notes how companies have increasingly relied on outside cloud services for data management and storage.
Canadians gathered Monday in cities and towns across the country to honour the sacrifice of men and women in uniform who gave their lives in service of the country's values and principles.
Canada has announced changes to their visitor visa policies, effectively ending the automatic issuance of 10-year multiple-entry visas, according to new rules outlined by Immigration, Refugees and Citizenship Canada.
U.S. President-elect Donald Trump is naming longtime adviser Stephen Miller, an immigration hard-liner, to be the deputy chief of policy in his new administration.
Toy giant Mattel says it 'deeply' regrets an error on the packaging of its 'Wicked' movie-themed dolls, which mistakenly links toy buyers to a pornographic website.
If Earth's astronomical observatories were to pick up a signal from outer space, it would need an all-hands-on-deck effort to decipher the extraterrestrial message. A father-daughter team of citizen scientists recently deciphered the message. Its meaning, however, remains a mystery.
Business groups are raising concerns about the broad effects of another round of labour disruptions in the transport sector as Canada faces shutdowns at its two biggest ports.
A team of tornado experts is heading to Fergus, Ont. after a storm ripped through the area Sunday night.
Researchers are uncovering deeper insights into how the human brain ages and what factors may be tied to healthier cognitive aging, including exercising, avoiding tobacco, speaking a second language or even playing a musical instrument.
Since the U.S. Supreme Court’s 2022 Dobbs decision eliminated the federal right to abortion, miscarriage management has become trickier and in some cases, deadlier.
A congestion crisis, a traffic nightmare, or unrelenting gridlock -- whatever you call it, most agree that Toronto has a congestion problem. To alleviate some of the gridlock, the Ontario government has announced it plans to remove bike lanes from three major roadways.
For the second year in a row, the ‘Gift-a-Family’ campaign is hoping to make the holidays happier for children and families in need throughout Barrie.
Some of the most prolific photographers behind CTV Skywatch Pics of the Day use the medium for fun, therapy, and connection.
A young family from Codroy Valley, N.L., is happy to be on land and resting with their newborn daughter, Miley, after an overwhelming, yet exciting experience at sea.
As Connor Nijsse prepared to remove some old drywall during his garage renovation, he feared the worst.
A group of women in Chester, N.S., has been busy on the weekends making quilts – not for themselves, but for those in need.
A Vancouver artist whose streetside singing led to a chance encounter with one of the world's biggest musicians is encouraging aspiring performers to try their hand at busking.
Ten-thousand hand-knit poppies were taken from the Sanctuary Arts Centre and displayed on the fence surrounding the Dartmouth Cenotaph on Monday.
A Vancouver man is saying goodbye to his nine-to-five and embarking on a road trip from the Canadian Arctic to Antarctica.