• About
  • Offices
  • Careers
  • News
  • Students
  • Alumni
  • Payments
  • EN | FR
Background Image
Bennett Jones Logo
  • People
  • Expertise
  • Knowledge
  • Search
  • FR Menu
  • Search Mobile
A B C D E F G H I J K L M N O P Q R S T U V W X Y Z
View all
Practices
Corporate Litigation Regulatory Tax View all
Industries
Energy Infrastructure Mining Private Equity & Investment Funds View all
Advisory
Crisis & Risk Management Public Policy
View Client Work
International Experience
Insights News Events Subscribe
Arbitration Angle Artificial Intelligence Insights Business Law Talks Podcast Class Actions: Looking Forward Class Action Quick Takes
Economic Outlook New Energy Economy Series Quarterly Fintech Insights Quarterly M&A Insights Sustainability & the CIO
People
Offices
About
Practices
Industries
Advisory Services
Client Work
Insights
News
Events
Careers
Law Students
Alumni
Payments
Search
Subscribe

Stay informed on the latest business and legal insights and events.

LinkedIn LinkedIn Twitter Twitter Vimeo Vimeo
 

Data Governance Protection & Cybersecurity

  • Download PDF
  • Key Contacts
  • Select Experience
  • Recent Recognition
  • Insights, News & Events
  • Related Services
  • Download PDF
  • Select Experience
  • Recent Recognition
  • Insights, News & Events
  • Related Services

Cybersecurity attacks have become an inevitable business risk for companies, large and small. Companies must now develop, and continually update, plans to protect personal data, design an incident response plan should it be attacked, and address the scope of litigation risks and regulatory obligations upon an incident.

As part of our ongoing cybersecurity efforts to ensure safe and reliable service to our clients, we recently became ISO 27001 certified. The work undertaken to achieve and retain this certification gives us unique insight into clients’ challenges in minimizing exposure and maintaining compliance in this increasingly complex and threatening area.


Clients work with us for our practical approach to addressing cybersecurity:

Strategic Risk Management

  • Cybersecurity preparedness including implementing data protection plans meant to reduce reputational, business continuity and regulatory risk.
  • Guidance for boards of directors and senior management on data protection obligations.
  • Development of data breach policies, playbooks and scenario plans.
  • M&A due diligence involving data protection, privacy and security.
  • Review of data protection insurance coverage.
  • Health information privacy, including security policies and governance.

Thorough and Organized Incident Response

  • Executing efficient response plans, either as managers or supporting team members.
  • Data breach investigation, including addressing employee misconduct.
  • Liaison with regulatory, law enforcement authorities and Privacy Commissioners.
  • Seamless coordination with public/government relations service providers.

Vigorous Advocacy and Defence

  • Defending against litigation or class action proceedings relating to data breach or privacy incidents.
  • Defending against regulatory proceedings and negotiating with regulatory agencies.

Key Contact

  • Ruth E. Promislow Ruth E. Promislow, Partner
  • Related Lawyers

Select Experience

Canadian Utilities Limited, an ATCO company, in the sale of its entire Canadian fossil fuel-based electricity generation portfolio for approximately $835 million, which was completed in three stages, through the sale of its interest in the Cory project in Saskatchewan to SaskPower International Inc., a sale of its interest in the Brighton Beach project in Ontario to Ontario Power Generation Inc., and a sale of the balance of the applicable generation assets through a sale of its equity interest in ATCO Power Canada Ltd. to Heartland Generation Ltd., an affiliate of Energy Capital Partners.
A large financial institution, addressing a cyberattack. We participated as members of the incident response team and worked closely with senior management of the client to identify the risks, review remedial action taken, understand the client's reporting and notification responsibilities, to engage specialized IT, forensic, public relations and other resources and to craft notifications for different classes of individuals potentially affected by the breach and to address and help mitigate potential liability associated with the incident
Numerous clients and review and drafting of existing policies (IT, Privacy, CASL)
Numerous clients with litigation risks arising from cyberattacks

Recent Recognition

Who's Who Legal: Data
Bennett Jones lawyers recognized globally for data information technology
Worldwide Financial Advisor Awards Magazine
Recognized as ecommerce law firm of the year - Canada

Insights, News & Events

Podcast

Beyond Succession: Protecting Family Enterprises Through Collaborative Family Law

April 16, 2025
       

Blog

Don’t Be the Next Victim of a BEC Scam

April 07, 2025
       

Blog

10 Key Questions to Guide Cyber Risk Management

April 04, 2025
       

Related Services

Anti-Spam Law
Corporate Governance
Health Law
IT & Business Services
Mergers & Acquisitions
Payment Solutions
Privacy & Data Protection
Technology, Media & Entertainment
Bennett Jones Centennial Footer
Bennett Jones Centennial Footer
About
  • Leadership
  • Diversity
  • Community
  • Innovation
  • Security
Offices
  • Calgary
  • Edmonton
  • Montréal
  • Ottawa
  • Toronto
  • Vancouver
  • New York
Connect
  • Insights
  • News
  • Events
  • Careers
  • Students
  • Alumni
Subscribe

Stay informed on the latest business and legal insights and events.

LinkedIn LinkedIn Twitter Twitter Vimeo Vimeo
© Bennett Jones LLP 2025. All rights reserved.
  • Privacy Policy
  • Disclaimer
  • Terms of Use
Logo Bennett Jones