Privacy and Data Security Risks in M&A Transactions: Video Series
Time 2 Minute Read

In a video roundtable series, Hunton & Williams LLP partners Lisa J. Sotto and Steven M. Haas and special counsel Allen C. Goolsby, along with Stroz Friedberg’s co-president Eric M. Friedberg and Lee Pacchia of Mimesis Law, discuss the special consideration that should be given to privacy and cybersecurity risks in corporate transactions.

In M&A transactions, it is critical for parties to consider the risks and potential liabilities associated with inadequate privacy and cybersecurity practices—whether arising from regulatory violations, actual data breaches or a host of other issues. Even companies that rely less on personal data for their day-to-day operations need to ensure that their company’s confidential and proprietary information is well guarded long before an M&A transaction arises. Buyers need to assess these risks carefully during due diligence because they can be significant and materially affect a buyer’s valuation of a seller’s business. Moreover, issues that are discovered after an M&A transaction is completed could expose companies to massive liabilities such as expensive consumer class action litigation, intrusive government investigations, hefty remediation costs and other expenses.

Watch the full first segment, The Issue and Why It Matters.

Watch the full second segment, How to Prepare and Best Practices.

Additional segments will be released in the coming weeks.

You May Also Be Interested In

Time 3 Minute Read

The Connecticut Attorney General recently issued a legal memorandum regarding the application of existing Connecticut laws, such as the Connecticut Data Privacy Act, to the use of artificial intelligence.

Time 6 Minute Read

On February 9, 2026, trade association NetChoice filed a lawsuit challenging South Carolina’s newly passed Age-Appropriate Code Design (“SC AACD”) on First and Fourteenth Amendment grounds. The SC AACD was signed into law on February 5, 2026, making South Carolina the fifth U.S. state to enact such a law, following California, Maryland, Nebraska and Vermont.

Time 2 Minute Read

Congress has extended the Cybersecurity Information Sharing Act of 2015 through September 30, 2026 as part of the Consolidated Appropriations Act, a government funding package enacted in early February 2026.

Time 4 Minute Read

On January 27, 2026, the Centre for Information Policy Leadership hosted a fireside chat with California Privacy Protection Agency General Counsel Phil Laird in honor of Data Privacy Day.

Search

Subscribe Arrow

Recent Posts

Categories

Tags

Archives

Jump to Page