Partner Matt Van Hise commented on working with state regulators after cybersecurity incidents in part two of a three-part series in Cybersecurity and AI Law Report titled “State Cybersecurity Laws: Steps to Address Regulators’ Priorities.” Published July 29, 2026, the article discussed how state regulators are digging deeper into cybersecurity breaches and provides practical advice on responding to their initial questions, from improving notification processes before a breach occurs to planning for third-party failures.
Van Hise also contributed to the third part of the series, which was titled “How to Meet the Rising Standard for Reasonable Security” and published Aug. 5, 2026. The article focused on how companies can address and prepare for questions from regulators about their monitoring and detection capabilities, including how the alerts and risk assessments were adjusted based on prior findings. They should also be able to demonstrate cyber audits and testing to assure that the controls actually work consistently.
Read Part 2 article. (subscription required)
Read Part 3 article. (subscription required)




