Christopher D. Taylor

Associate

Christopher D. Taylor

Associate

Chris Taylor, CIPP/US, leverages his legal, policy, and political decision-making experience to assist clients in navigating fast-evolving cybersecurity, privacy, and data asset management issues.

Chris advises on data protection, incident response and recovery, data monetization initiatives, and other emerging issues involving data asset management. He also assists clients in complying with federal and state-level privacy regulations, capitalizing on interoperability regulations for growth opportunities, and establishing governance mechanisms to manage the risk of leveraging artificial intelligence. Chris collaborates with companies at every stage of their development — from emerging growth companies to established multinational corporations — tailoring guidance and counsel to their unique circumstances and needs. He is a member of the firm’s Transactions, Cybersecurity, and Privacy Practice Group.

Before joining Foley, Chris practiced at a national law firm where he advised health care and health IT clients on cybersecurity and privacy-related issues, including conducting internal investigations and HIPAA breach risk assessments to assist clients in meeting their data breach notification obligations. He previously served in the U.S. House of Representatives as the legislative director for a member of the U.S. House Energy and Commerce Committee, managing a team of legislative and communications staff to implement the Congressman’s legislative policies and priorities.

Presentations and Publications*

  • Co-author, “NIST Publishes Final ‘Cybersecurity Resource Guide’ on Implementing the HIPAA Security Rule” (February 21, 2024)
  • Co-author, “2023 Telemental Health Regulations Chart New Course in Post-PHE World” (November 9, 2023)
  • Co-author, “European Commission Adopts an Adequacy Decision for a New EU-U.S. Data Privacy Framework” (July 12, 2023)
  • Co-author, “Nevada Joins Washington and Connecticut to Protect Consumer Health Data Privacy” (July 11, 2023)
  • Co-author, “Patchwork of State Data Privacy Laws Adds Three New Patches” (May 25, 2023)
  • Co-author, “2022 Telemental Health Regulations Unlock Access and Evolve Compliance Practices” (November 15, 2022)
  • Co-author, “No More Exceptions: What to Do When the California Privacy Exemptions for Employee, Applicant and B2B Data Expire on January 1, 2023” (September 8, 2022)
  • Co-author, “No More Exceptions: What to Do When the California Privacy Exemptions for Employee, Applicant, and B2B Data Expire” (September 7, 2022)
  • Co-author, “USA: Employee Monitoring and Regulatory Frameworks for Keylogging Technology” (July 12, 2022)
  • Co-author, “Hacking Healthcare: Cyberattack Contingency Planning and Response” (May 19, 2022)
  • Co-author, “USA: Security Considerations for VPNs” (March 9, 2022)

Credentials

  • Certified Information Privacy Professional – United States (CIPP/US)

*Prior to joining Foley

19 September 2024 Manufacturing Industry Advisor

Cybersecurity in the Age of Industry 4.0 - Part 2

This is the second article in our two-part series on Cybersecurity in the Age of Industry 4.0, focusing on the legal implications and potential liabilities manufacturers face from cyberattacks, as well as practical recommendations to mitigate these risks.
12 September 2024 Manufacturing Industry Advisor

Cybersecurity in the Age of Industry 4.0 - Part 1

As the manufacturing sector continues to embrace the hyper-connected era of Smart Manufacturing, known as Industry 4.0, more and more organizations are integrating advanced automation, artificial intelligence, the Internet of Things, and other cutting-edge innovations into their operations.
Cybersecurity
13 June 2024 Innovative Technology Insights

SEC Tightens Cybersecurity Requirements with Regulation S-P Amendments

For covered institutions the amended regulation not only ushers in a mandatory data breach reporting requirement but also imposes additional cybersecurity requirements.
21 February 2024 Health Care Law Today

NIST Publishes Final “Cybersecurity Resource Guide” on Implementing the HIPAA Security Rule

In an important development for HIPAA-regulated entities looking for practical assistance in understanding, implementing, and enhancing compliance with the HIPAA Security Rule, the National Institute of Standards and Technology has finalized its comprehensive guidance.
15 February 2024 Innovative Technology Insights

California Appellate Court Empowers Privacy Agency to Immediately Enforce CPRA Regulations

On February 9, a California appellate court issued a decisive ruling in favor of the California Privacy Protection Agency, allowing the state to immediately begin enforcement of its new regulations, effectively overturning a prior decision that had delayed the enforcement of regulations created under the California Consumer Privacy Act until March 29, 2024.