Skip to content

menu

Open Legal Blog Archive logo
HomeAboutBlogsFAQsSubmit

FTC Issues Data Breach Response Guidance

By Linn Foster Freedman on October 27, 2016

The Federal Trade Commission (FTC) this week issued the publication, Data Breach Response: A Guide for Business, that outlines steps it recommends that businesses take when it believes it may have suffered a data breach.

According to the guidance, “immediate steps” to take include:

  • Securing physical areas that may be related to the incident, including changing codes
  • Stop additional data loss
  • Remove improperly posted information from the web, if applicable, and search to make sure other sites haven’t posted the information
  • Make sure any service providers who were involved have remedied all vulnerabilities
  • Change service providers’ access rights, as applicable
  • Determine if you have a reportable data breach under state or federal law
  • Contact law enforcement, if applicable
  • Notify any other businesses potentially affected by the incident
  • Notify individuals if required by law

The guidance also provides a model state breach notification letter, although businesses would do well to check the applicable state laws for compliance and customize any letters sent to individuals.

The guidance includes a video and reminds businesses to prevent breaches by protecting information first.

  • Posted in:
    Intellectual Property
  • Blog:
    Data Privacy + Cybersecurity Insider
  • Organization:
    Robinson & Cole LLP
  • Article: View Original Source

Open Legal Blog Archive, Inc. logo
Seattle, Washington
Copyright © 2026, Open Legal Blog Archive, Inc. All Rights Reserved.
Law blog design & platform by LexBlog LexBlog Logo