KANSAS | MISSOURI
Best Practices to Mitigate Cyber Security and Employee Security Threats
An Overview of Legal and Regulatory Guidelines
Introduction
Legal Framework in Missouri
Key Statutes Regarding Privacy and Security:
Legal Framework in Missouri
Key Statutes Regarding Privacy and Security:
Legal Framework in Missouri
Key Potential Federal Statutes Regarding Privacy and Security:
610.011. Liberal construction of law to be public policy.
The Cyber Incident Reporting for Critical Infrastructure Act of 2022 (CIRCIA) 6 USC 681 – 681G
Common Cyber Threats
Phishing Attacks
Phishing Attacks (cont.)�Chris Hemsworth Thor Virus
Phishing Attacks (cont.)
Phishing Attacks (cont.)
Training:
Phishing Attacks (cont.)
Training:
Ransomware – Malware that locks systems and demands ransom.
On October 3, 2024, American Water detected a cyberattack on its computer systems, including its customer billing platform. The attack temporarily disrupted the company's ability to process payments and send bills. However, it did not impact water and wastewater services.
Timeline of the attack
Detected unauthorized activity on October 3
Activated incident response protocols, engaged cybersecurity experts, and notified law enforcement
Publicly disclosed the cyberattack on October 7
Paused billing operations and disconnected key
systems Began investigating and reconnecting systems
Ransomware – Malware that locks systems and demands ransom (cont.)
Ransomware – Malware that locks systems and demands ransom (cont.)
Insider Threats – Employees misusing access to compromise security.
Best Practices for Employee Security
Best Practices for Cybersecurity
Regulatory Considerations
Incident Response Plan
Conclusion
Doug Silvius: ddsilvius@martinpringle.com