Tantleff Comments on Popularity of Government-Created Cybersecurity Framework
February 19, 2019
Law360
Partner Aaron Tantleff was quoted in a Law360 article, “NIST Cybersecurity Framework Still Going Strong 5 Years On,” about the fifth anniversary of a government-created cybersecurity framework that provides companies with assessment tools that help them evaluate and strengthen their approach to managing cybersecurity risk.
Tantleff said the widespread adoption of the framework has not only enabled companies to substantially improve their cybersecurity posture by giving them concrete benchmarks by which to better judge the effectiveness of their programs, but also has handed them a new defense against third-party complaints such as class actions and regulatory probes. “By adopting the cybersecurity framework, companies are able to refute a claim that their cybersecurity practices were deficient, lacking, or otherwise not appropriate,” he said. “While we all recognize that the adoption of the cybersecurity framework – or another standard – cannot and won’t prevent a security incident, the adoption and compliance with the standard will help elevate the security posture of the environment and lessen the likelihood and severity of a cyber-incident, and will also help an organization become more resilient.”
Tantleff said the widespread adoption of the framework has not only enabled companies to substantially improve their cybersecurity posture by giving them concrete benchmarks by which to better judge the effectiveness of their programs, but also has handed them a new defense against third-party complaints such as class actions and regulatory probes. “By adopting the cybersecurity framework, companies are able to refute a claim that their cybersecurity practices were deficient, lacking, or otherwise not appropriate,” he said. “While we all recognize that the adoption of the cybersecurity framework – or another standard – cannot and won’t prevent a security incident, the adoption and compliance with the standard will help elevate the security posture of the environment and lessen the likelihood and severity of a cyber-incident, and will also help an organization become more resilient.”
People
Related News
August 21, 2026
In the News
Betsy Stone Discusses Federal EPR Challenges and Producer Implications
Foley & Lardner LLP senior counsel Betsy Stone shared insights in the Packaging Dive article, “California EPR lawsuit escalates as forthcoming Oregon ruling looms,” analyzing ongoing federal court challenges to extended producer responsibility (EPR) laws.
August 18, 2026
In the News
Lynn Gandhi Shares Insights on Recent State Tax Developments
Foley & Lardner LLP partner Lynn Gandhi was featured in a recent Law360 article analyzing a Massachusetts Appellate Tax Board decision upholding Interstate Income Act (P.L. 86-272) protections for certain entities in a combined reporting group.
August 17, 2026
In the News
Louis Lehot Weighs in on Acceleration of Software Industry M&A
Foley & Lardner LLP partner Louis Lehot shared perspective on the acceleration of software industry consolidation in the Law360 article, "$1.3B Airtable Deal Highlights Software M&A Revival."