Copy
Employer Handbook Posts for 09/15/2022
View this email in your browser
The Employer Handbook by Eric B. Meyer

If a cyber-attack at work creates imminent risk of identity theft or fraud, your employees can sue you!

Computer Use, Pennsylvania, Third Circuit Employment Law 101
Share
Share
Tweet

noun-hacker-870666

Think of all the personal, sensitive information that an individual shares with you just to have the opportunity to earn a living as an employee of your company.

As part of onboarding, new employees provide their home address, social security number, bank and financial account numbers for direct deposit, insurance and tax information, a passport, and possibly information relating to a spouse and child for tax purposes.

I read a Third Circuit opinion last night about a giant biopharmaceutical company employee who provided this information shortly after she was hired. After leaving the company, she claims that a well-known hacking group accessed her former employer’s servers and stole her personal information (and the personal information of many other employees). The hackers eventually posted it on the Dark Web, an underground black market where individuals buy and sell this type of information.

So, she sued her employer for negligence, among other things. The theory was that the company had a duty to protect her private information, but it didn’t, and she suffered harm or imminent future harm.

The employer responded with a motion to dismiss, which the lower court granted. It reasoned that the plaintiff’s risk of future harm was too speculative since she did not allege that anyone had done anything nefarious with her personal information — apart from posting it on the Dark Web.

The Third Circuit Court of Appeals disagreed.

It concluded that the plaintiff’s injury was sufficiently imminent to give her standing to sue. For example, the plaintiff’s knowledge of the substantial identity theft risk caused her to spend money on mitigation measures like credit monitoring services. That, plus the emotional distress of being hacked, were enough to allege a concrete injury.

Yes, companies have a duty to safeguard not only private customer information but also sensitive employee data. Here’s more from the Third Circuit:

In an increasingly digitalized world, an employer’s duty to protect its employees’ sensitive information has significantly broadened. Information security is no longer a matter of keeping a small universe of sensitive, hard-copy paperwork under lock and key. Now, employers maintain massive datasets on digital networks. In order to protect the data, they must implement appropriate security measures and ensure that those measures continue to comply with ever-changing industry standards.

Failure to satisfy this duty could leave employer networks vulnerable to data breach, subjecting data breach victims to a unique kind of harm: the perpetual risk of identity theft or fraud, necessitating the investment of time and money to hopefully mitigate that risk. With rare exception, where multiple pieces of personally identifying information about a given consumer are stolen and then publicized, one can draw a reasonable inference that the victims of the data breach face an imminent risk of identity theft or fraud. 

I’m fortunate to work with a team of cyber-risk, privacy, and data security attorneys who know how to mitigate the risk of a hacking event and respond in the event of a data breach, where time is of the essence.

Now that Summer is over, I’m bringing back The Employer Handbook Zoom Happy Hour. Please email me if you’d like to have “cybersecurity and employment” as one of the topics.


Want to be my law partner?

FisherBroyles is hiring!


Are you pondering a lateral move? I'll give you four reasons why you should consider my law firm, FisherBroyles, LLP
  1. FisherBroyles lawyers keep up to 80% of what they bill compared to the 33% or 35% of what you probably make in your current law firm role. At FisherBroyles, if your client pays a $10,000 invoice on work you perform, you get $8,000. It's as simple as that.
  2. It pays to collaborate. I work with dozens of my fabulous law partners. When we collaborate, the 80% is split between the person doing the work and the person who generated the client. That split is 48% to 32%. For example, I make $3,200 on every $10,000 invoice my client pays for work my partner performs. (My partner makes $4,800.)
  3. No billable-hour requirements, and you set your billing rates. If you want to continue to bill 2,000 hours, as you do currently, go for it! Me? I bill hundreds of hours less annually than I did at my previous firm, and I've more than doubled my income. Plus, the firm will not force you to raise your rates for clients. That's up to you.
  4. You'll be part of one of the fastest-growing law firms in the AmLaw 200. After joining the AmLaw 200 in 2020, FisherBroyles climbed the rankings in 2021, posting revenue growth of 29.3%, with consolidated fee revenue for 2021, of $136 million. The firm also increased its headcount by 18.5%. We have approximately 300 partners worldwide.
Does any of this sound good to you? We should talk. Perhaps, you are part of a team of attorneys exploring lateral options. We should talk. Please feel free to reach me confidentially. 
Call, text, or Signal: (202) 441-1424.
The Employer Handbook has a YouTube Channel. If you've missed any of the recent Zoom Office Hours, watch them on YouTube here. While you're there, be sure to subscribe to the channel. That way, you won't miss any updates.

How long has it been since your business has dusted off and updated its employee handbook?
With everything that's gone on recently, plus new legal changes in store for 2022, there is no better time to update it. My team and I can be of service.


If you'd like our help, please email me for more information.
Looking for a compliance trainer or a speaker for your next HR event? I come in two varieties, clean-shaven or Duck Dynasty. Click here for booking details.

Here's what you may have missed recently...

Copyright © 2022 The Employer Handbook, All rights reserved.


Unsubscribe | Update subscription | Preferences | Disclaimer | Privacy Policy | Attorney Advertising

Email Marketing Powered by Mailchimp
Like
Link
Lurk