How to Draft and Enforce a Cybersecurity Addendum in Vendor Contracts Under the New SEC Cyber Disclosure Rules (2026)

How to Draft and Enforce a Cybersecurity Addendum in Vendor Contracts Under the New SEC Cyber Disclosure Rules (2026)

New SEC cybersecurity disclosure rules require public companies to report “material” incidents within 4 business days—making vendor-caused breaches a board-level timing risk. Most incidents start with third parties, so contracts now function as your compliance clock and evidence file. This article shows how to draft, negotiate, and enforce a cybersecurity addendum that supports SEC disclosures, […]

How to Draft and Enforce a Cybersecurity Addendum in Vendor Contracts Under the New SEC Cyber Disclosure Rules (2026) Read More »