An Essential Guide to Become a Paralegal

Paralegals are the backbone of the legal industry. By supporting lawyers and managing their day-to-day tasks, paralegals ensure that the law firm runs smoothly and efficiently.

If you’re interested in becoming a paralegal or want to strengthen your skills, continue reading to learn more about this growing field, the job responsibilities, and what you can do to position yourself for success.

What Is a Paralegal?

A paralegal is a professional in the legal field who performs tasks that require knowledge of the law and legal concepts but not to the full extent of a lawyer licensed to practice law. As part of the support staff, a paralegal is working to enhance a lawyer’s work, and the lawyer takes full responsibility for that work produced.

What Do Paralegals Do?

Paralegals assist lawyers with legal cases by researching and preparing reports for lawyers to use in their work. They’re not permitted to work alone and must be under the supervision of a licensed attorney. Paralegals may work in many legal settings, including law firms, nonprofits, and government agencies, but their duties may include:

  • Investigating information about a case

  • Researching information about a case

  • Interviewing witnesses

  • Researching and learning about regulations and laws

  • Writing reports

  • Maintaining a database of records related to each case

  • Drafting letters, documents, and emails

  • Acquiring affidavits for court

  • Helping to draft legal arguments

  • Corresponding with clients

  • Preparing wills, real estate contracts, divorce decrees, and other civil documents

The duties of a paralegal can vary according to the environment in which they work. They can work within an area of practice, just like lawyers do, with different duties. For example, they may work in probate, immigration, litigation, intellectual property, or corporate law.

Is Paralegal Work Difficult?

The legal field is high pressure, high stakes, and driven by deadlines, and not just for lawyers. Working as a paralegal has its perks, but it can be stressful and demanding. Clients trust in the lawyer to protect their best interests, and that lawyer is depending on the paralegal to make that possible.

What Skills Should a Paralegal Have?

Paralegals have a variety of hard and soft skills, including:

  • Communication: Paralegals must communicate with lawyers, clients, court officials, witnesses, government officials, and insurance companies in both verbal and written correspondence.

  • Investigative Skills: A lot of paralegal work involves researching, analyzing, and seeking out information to assist lawyers. Paralegals must have attention to detail and a good eye for discerning relevant facts.

  • Teamwork: Paralegals don’t work alone. They must interact with other paralegals, legal assistants, secretaries, and lawyers throughout the day, so teamwork is essential.

  • Time Management: Much of the legal field revolves around good time management, and not just for lawyers. Paralegals have to adhere to deadlines and complete tasks in a timely manner, knowing how to prioritize appropriately.

  • Technology Skills: Paralegals use technology to complete their work, often using word processors, spreadsheets, and presentation software. Many law firms use law practice management software, which paralegals must also learn to use effectively.

How Do You Become a Paralegal?

Paralegals are not licensed on the national level, so there are no federal standards for the profession. Only a few states regulate the profession on the state level. Instead, the employers establish the hiring standards and require some formal education.

The options for paralegal education or training include:

Associate Degree

An associate degree takes about two years to complete and requires a high school diploma. Some schools may have additional admissions requirements.

Bachelor’s Degree

A bachelor’s degree in legal studies, paralegal studies, or similar fields is appropriate for paralegal education. Typically, bachelor’s degrees take four years to complete. According to the National Federation of Paralegal Associations (NFPA), more employers are placing an emphasis on earning a bachelor’s degree.

Master’s Degree

If you have a bachelor’s degree, a master’s degree in legal studies (MLS) is a good choice to increase your knowledge in skills like negotiation, employment law, legal writing, and intellectual property law. This not only deepens the skill set for a paralegal, but it offers a broader scope of work as a legal professional.

Paralegal certification is another option to either replace a degree program or enhance it. The NFPA recommends achieving a paralegal certification to enhance employment prospects. There are several options available from the National Association of Legal Assistants (NALA), including a Certified Paralegal, an Advanced Certified Paralegal, and a Professional Paralegal certification.

Several schools also offer certification programs for paralegal work, though it’s important to research carefully to ensure you’re getting a certification that will benefit you professionally.

Are There Different Requirements in Each State to Become a Paralegal?

Generally, paralegals don’t have to meet any state licensing requirements, according to the United States Bureau of Labor Statistics (BLS). Professional certification or degrees at the national and regional level is voluntary.

That said, state governments have no restrictions from establishing their own rules, and a few states have chosen to regulate the paralegal profession closely.

According to the American Bar Association, California has restrictions for workers using the title “paralegal,” as well as “freelance paralegal,” “contract paralegal,” “independent paralegal,” “legal assistant,” and “attorney assistant.” These rules prohibit paralegals from engaging in certain activities, including representing clients in court or giving legal advice. They also have minimum education and experience requirements, as well as continuing education requirements.

In addition, both Washington and Utah require licensing for paralegals and non-attorney roles in the legal field. This doesn’t mean these paralegals must be licensed to work, but that highly educated and experienced paralegals can become credentialed to perform a broader scope of legal work.

Outlook of Paralegals

According to the BLS, the median annual wage for paralegals and legal assistants was $56,230 as of May 2021. Employment of paralegals and legal assistants is projected to grow 14% from 2021 to 2031, which is a faster rate than all occupations. About 45,800 openings for these roles are projected each year, on average, over the next decades.

Since the recession, law firms have been making changes to become more efficient and competitive, which may include expanding the scope of work for paralegals. Other institutions also recognize the benefits of workers with legal training, such as government agencies and banks.

Since then, there’s been a rising demand for paralegals — particularly ones with technology skills. Paralegals that can navigate technology tools, such as law practice management software, digital forensics, and electronic evidence discovery and preservation, are highly sought.

Paralegals often handle billing and invoicing, which is simplified with legal billing software.

Pro Tip: To gain a competitive edge, paralegals should consider receiving a certificate in law practice management software. PracticePanther offers the certification for free and can be completed on your own time.

Become a Skilled Paralegal

The role of paralegals is growing in demand and constantly evolving. Though it’s not required, the more educated and technologically sophisticated paralegals are, the more career opportunities they have in the legal field – and that includes experience and skills with law practice management software.

© Copyright 2022 PracticePanther

NFT Endorsed by Celebrities Prompts Class Action

Since the early days of the launch of the Bored Ape Yacht Club (BAYC) non-fungible tokens (NFTs), several celebrities have promoted the NFTs. On Dec. 8, 2022, plaintiffs Adonis Real and Adam Titcher brought a lawsuit against Yuga Labs, creators of the BAYC, alleging that Yuga Labs was involved in a scheme with the “highly connected” talent agent Greg Oseary, a number of well-known celebrities, and Moonpay USA LLC, a crypto tech company. According to the complaint:

  1. Yuga Labs partnered with Oseary to recruit celebrities to promote and solicit sales of BYAC;
  2. Celebrities promoted the BAYC on their various platforms;
  3. Oseary used MoonPay to secretly pay the celebrities; and
  4. The celebrities failed to disclose the payments in their endorsements.

According to the complaint, as a result of the various and misleading celebrity promotions, trading volume for the BYAC NFTs exploded, prompting the defendants to launch the ApeCoin and form the ApeCoin decentralized autonomous organization (DAO). Investors who had purchased the ApeCoin allegedly lost a significant amount of money when the value of the coins decreased.

This case highlights the potential risks that may arise in connection with certain endorsements. In addition to the FTC, the SEC also has issued guidance on requirements in connection with promotional activities relating to securities, which may include digital assets, such as tokens or NFTs. Under SEC guidance, any paid promoter, celebrity or otherwise, of a security, including digital assets, must disclose the nature, scope and amount of compensation received in exchange for the promotion. This would include tv/radio advertisements and print, in addition to promotions on social media sites.

©2022 Greenberg Traurig, LLP. All rights reserved.

Bouncing Back with Shaun Sethna [PODCAST]

Finding the right home for your career can do wonders to change your perspective. For Shaun Sethna, the move in-house was exactly what he needed to go from feeling like work as something he had to do to work being something he enjoyed. In this episode of Bouncing Back, he talks to Rebecca Glatzer about his career journey, the bumps along the way and his growth mindset.

Shaun Sethna is Deputy General Counsel at Altisource, a FinTech and services provider to the mortgage and real estate industries.  Shaun has been at Altisource for almost 10 years, where his practice focuses on technology transactions and M&A.  He also developed and helps to manage a team focused on contracts, compliance, and general legal support to Altisource’s technology, mortgage cooperative and insurance businesses. Previously Shaun was at Schlumberger in Houston, and he got his start in the IP practice group at King & Spalding LLP in Atlanta. Shaun received his undergraduate degree in Industrial Engineering from the Georgia Institute of Technology and his J.D. from Columbia Law School.  Shaun’s favorite aspect of his job is managing and developing teams.

©2022 Major, Lindsey & Africa, an Allegis Group Company. All rights reserved.

What Taxpayers in the U.S. and Abroad Need to Know about FBAR Compliance

United States taxpayers have an obligation to report their foreign financial accounts (i.e., offshore or foreign bank accounts) to the federal government. While there are thresholds that apply, these thresholds are relatively low, so most offshore account holders will need to file reports on an annual basis. One of these reports is the Report of Foreign Bank and Financial Accounts, more commonly known as an FBAR (Foreign Bank Account Report).

For U.S. taxpayers, FBAR compliance is extremely important. This is true for taxpayers residing both domestically and overseas. The FBAR is required for US citizens because foreign banks don’t have the same reporting obligations as US-based institutions. Noncompliance in reporting foreign bank accounts can lead to civil or criminal penalties; and, in many cases, failure to file an FBAR will lead to an examination of the taxpayer’s other recent tax filings as well.

“The obligation to file an FBAR applies to most U.S. taxpayers with offshore bank accounts. While many taxpayers are unaware of the FBAR filing requirement, this unawareness is not an excuse for noncompliance. Taxpayers with delinquent FBARs can face substantial penalties regardless of why they have failed to file.” – Dr. Nick Oberheiden, Founding Attorney of Oberheiden P.C.

Technically, FBARs are due on Tax Day along with taxpayers’ annual income tax returns. However, all taxpayers receive an automatic extension to October 15—with no need to file a request and no risk of incurring additional penalties.

10 Key Facts about FBAR Compliance for U.S. Taxpayers

As the extended October 15 FBAR deadline is fast approaching, here is an overview of what taxpayers in the U.S. and abroad need to know:

1. The FBAR Filing Requirement Applies to U.S. Taxpayers Who Hold Foreign Financial Accounts

The FBAR filing requirement applies to U.S. taxpayers who hold foreign financial accounts. It also applies to taxpayers who have “signature or other authority” over these foreign accounts. These obligations exist under the federal Bank Secrecy Act (BSA). Taxpayers covered under the BSA must file FBARs with the Financial Crimes Enforcement Network (FinCEN) annually.

While the FBAR filing requirement applies to most types of foreign financial accounts, there are exceptions. For example, FBAR compliance is not required with respect to accounts:

  • Owned by governmental entities
  • Owned by foreign financial institutions
  • Held at U.S. military banking facilities
  • Held in individual retirement accounts (IRAs)
  •  Held in certain other retirement plans

FinCEN has publicly taken the position that accounts solely holding cryptocurrency also do not qualify as foreign financial accounts for purposes of FBAR compliance. However, FinCEN has also stated that it “intends to propose to amend the regulations implementing the Bank Secrecy Act (BSA) regarding [FBARs] to include virtual currency as a type of reportable account.” As a result, U.S. taxpayers who hold cryptocurrency overseas should continue to review FinCEN’s regulatory announcements to determine if their offshore cryptocurrency accounts will trigger FBAR compliance obligations in the future.

2. The FBAR Reporting Threshold is $10,000

The requirement to file an FBAR applies only to U.S. taxpayers whose foreign financial accounts exceed $10,000 during the relevant tax year. This is an aggregate threshold, meaning that it applies to all foreign financial accounts jointly, and the obligation to file an FBAR is triggered if the aggregate value of a taxpayer’s foreign financial accounts exceeds the $10,000 threshold at any point and for any length of time.

3. U.S. Taxpayers Must File Their FBARs Online

A person residing in the United States who has a financial interest in or signatory power over a foreign financial account is required to file an FBAR if the total value of the foreign financial accounts at any time during the calendar year exceeds $10,000. While U.S. taxpayers have the option to e-file their annual income tax returns, taxpayers must file their FBARs online. Taxpayers can do so through FinCEN’s website.

4. The IRS Enforces FBAR Compliance

Even though U.S. taxpayers must file their FBARs with FinCEN, the Internal Revenue Service (IRS) is responsible for enforcing FBAR compliance. This means that taxpayers that fail to meet their FBAR filing obligations must be prepared to deal with the IRS when it uncovers their delinquent filings. It also means that delinquent filers must follow the IRS’s procedures for coming into voluntary compliance to avoid unnecessary penalties—as discussed in greater detail below.

5. FBAR Filers May Also Need to File IRS Form 8938

In addition to filing an annual FBAR, U.S. taxpayers who own foreign financial accounts may also need to file IRS Form 8938. The obligation to file this form applies to U.S. taxpayers who own foreign financial assets (not solely foreign financial accounts) that exceed the thresholds established under the Foreign Account Tax Compliance Act (FATCA).

6. There are Special Mechanisms for Filing Delinquent FBARs

When individuals learn that they are at risk of facing an IRS audit or investigation due to failure to file an FBAR, their first instinct is often to file any and all delinquent FBARs right away.

However, this is not the IRS’s preferred approach, and it can expose taxpayers to penalties and interest unnecessarily.

The IRS offers two primary mechanisms for U.S. taxpayers to correct FBAR filing deficiencies—one for civil violations and one for criminal violations. The primary mechanism for correcting civil violations is to make a “streamlined filing,” while taxpayers who are at risk for criminal prosecution must make a “voluntary disclosure” to IRS Criminal Investigation (IRS CI).

As the IRS explains, the option to make a streamlined filing is “available to taxpayers certifying that their failure to report foreign financial assets and pay all tax due in respect of those assets did not result from willful conduct on their part.” The ability to make this certification of non- willfulness is critical. If a taxpayer falsely certifies to non-willfulness (or if the IRS determines that a taxpayer’s certification is fraudulent), the IRS can reject the taxpayer’s streamlined filing and pursue criminal enforcement action.

For those who have willfully failed to file FBARs, coming into compliance generally involves using IRS CI’s Voluntary Disclosure Practice (VDP). As stated by IRS CI, “If you have willfully failed to comply with tax or tax-related obligations, submitting a voluntary disclosure may be a means to resolve your non-compliance and limit exposure to criminal prosecution.” However, as IRS CI also states, “[a] voluntary disclosure will not automatically guarantee immunity from prosecution.”

With this in mind, when seeking to correct past FBAR filing failures, U.S. taxpayers need to make informed and strategic decisions. To do so, they should rely on the advice of experienced legal counsel. While streamlined filings and voluntary disclosures both provide protection from prosecution, they offer protection under different circumstances, and taxpayers must follow a stringent set of procedures to secure the available protections.

7. Failure to File an FBAR Can Lead to Civil or Criminal Prosecution

One of the key requirements for securing protection under the IRS’s streamlined filing compliance procedures or the VDP is that the taxpayer must not already be the subject of an IRS audit or investigation. When facing audits and investigations related to FBAR noncompliance, taxpayers must assert strategic defenses focused on avoiding civil or criminal prosecution.

Both the BSA and FATCA provide federal prosecutors with the ability to pursue civil or criminal charges. Typically, civil cases focus on unintentional violations, while prosecutors pursue criminal charges in cases involving intentional efforts to conceal foreign financial assets from the U.S. government. However, prosecutors may choose to pursue civil charges for “willful” violations as well; and, in some cases, asserting a strategic defense will involve focusing on keeping a taxpayer’s case civil in nature.

8. The Penalties for FBAR Non-Compliance Can Be Substantial

Why is it important to keep an FBAR non-compliance case civil? The simple answer is that in civil cases prison time isn’t on the table. Under the BSA, U.S. taxpayers charged with intentionally failing to file an FBAR can face a criminal fine of up to $250,000 and up to five years of federal imprisonment.

But, even in civil cases, a finding of FBAR noncompliance can still lead to substantial penalties. For non-willful violations, taxpayers can face fines of up to $10,000 per violation. For willful violations prosecuted civilly, taxpayers can face fines of up to 50% of the undisclosed account value or $100,000, whichever is greater (subject to a maximum penalty of 100% of the account value).

9. U.S. Taxpayers Who Have Questions or Concerns about FBAR Compliance Should Seek Help

Given the substantial risks of FBAR non-compliance, U.S. taxpayers who have questions or concerns about compliance should seek help promptly. They should consult with an experienced attorney, and they should work closely with their attorney to make informed decisions about their next steps.

10. FBAR Filers Must Keep Records On-Hand

Finally, in addition to filing their FBARS with FinCEN online, U.S. taxpayers who are subject to the BSA must also comply with the statute’s recordkeeping requirements. Minimally, taxpayers must retain the following records for each account they disclose on an FBAR:

  • Account number
  • Account type
  • Name on the account
  • Name and address of the foreign bank holding the account
  • Maximum value of the account during the relevant tax year

According to the IRS, “the law doesn’t specify the type of document to keep with this information,” and taxpayers typically “must keep these records for five years from the due date of the FBAR.”

Oberheiden P.C. © 2022

When Corporate Legal Teams Break

Forward-thinking organizations that refocus their legal teams on the removal of systemic friction and value creation can better detect and forecast risk; however, organizations that have not modernized their legal teams often miss subtleties masking surprisingly deep areas of risk. Recent history shows nothing is too big to fail, but earlier risk detection may have helped avoid some of the most catastrophic losses.

The most recent and notable industry-wide example, of course, was the financial services industry, which triggered the Great Recession from 2007 to 2009.

In the world’s most infamous accounting scandal, Enron imploded in 2001, wiping out $74bn of shareholder funds and the pensions and jobs of thousands of employees. Enron’s auditor also collapsed. The organizations were interconnected and dependent systems. One fell, the other followed. Undetected risk festered and worsened, and the interconnectedness of these organizations and systems created a complex network that made detecting risk more difficult.

As modern society demands more capable systems, they become more interconnected and complex by necessity. As Meltdown: Why Our Systems Fail and What We Can Do About It posits, this staggering complexity means that tiny mistakes or simple accidents can lead to devastating catastrophes that often go undetected. The reasons for failure can stem from very different problems, but the underlying causes are similar.

In accounting scandals with nefarious actors, huge debts are obscured and once revealed, lead to corporate failure. In legal departments with good actors – led by a noble General Counsel (GC) who serves as the defender of the enterprise – business risks are obscured and once revealed, can lead to devastating consequences: bet-the-company litigation, core intellectual property battles, merger & acquisition failure, and crippling regulatory fines, to name a few.

Embracing digital helps identify and expose risk, but organizations set the stage for failure when legal, or other critical functions, don’t keep up, fail to embrace the digital evolution, become disconnected, and lack or lose visibility. Those organizations make decisions without a clear view of the legal implications, and they might not even know it because, for now, they operate with blind trust of the Office of the GC.

Corporations in all industries are “going digital” to remain competitive amidst technological disruption. This focus on digital starts with core products and service offerings, and then is pushed throughout the business to align company to product. The result? Faster moving businesses with a wave of demand pummelling the legal department…if not yet, then soon as digital initiatives across the business mature.

Most corporate legal departments simply do not have the systems required to keep up — providing consistent regulatory counsel, detecting and preventing impending litigation, or simply knowing who is doing what in the legal organization is already a challenge Risk is obscured. A “break” like we’ve never experienced is primed.

If we examine the ecosystem, the warning signs are there.

Catching up to other corporate functions

As demands on legal teams continue to grow and CFOs ask GCs to do more with less, quality suffers amid rising law firm rates and unchecked complexity. Corners get cut. Risks emerge while their likelihood to go undetected rises. Of course, when adding headcount is not an option, revamping processes and technology is often the answer.

In finance, accounting, information technology, and human resource departments, among others, advances in technology have enabled self-service, helped control costs, made it easier to compare costs, and increased quality choices. These corporate functions have embraced systems-level restructuring with artificial intelligence (AI), data analytics, cloud computing and “Big Data” to modernize working practices and improve performance.

In their often siloed and conservative world, most GCs and corporate legal departments, on the other hand, make crucial decisions guided as much by gut instinct as by data and industry benchmarks. For decades, they have resisted change or lacked sufficient resources to enable change in technology, working practices, and corporate culture. Now, with the real-time requirement for speed, scale, and transparency — that era is over.

To retain and increase influence, improve their performance and trim costs as recessionary fears grow, GCs would be wise to more fully modernize their legal departments quickly through an open, digitally-savvy, and collaborative working culture.

Collaborate and listen

Building a data-driven, digital, secure and scalable legal system is an ethical and commercial imperative for GCs. Technology is part of the solution but not the place to start.

To more proactively expose, manage and mitigate risk, executives and their boards need GCs to emphasize the imperative for a more analytical, data-based and efficient approach to corporate legal practice with concrete examples to punctuate the “Why.”

You could start with three actions.

  1. Educate yourself and your colleagues about trends in legal digitization, performance improvement and new working practices. A comprehensive source of information is thDigital Legal Exchange, a global institute of leading thinkers from academia, business, government, technology and law.
  2. Become Modern. Be the change. Lead the change. Make tough decisions about your top leaders and whether they are capable of a data and digital-first mindset and way of working. Change leadership is the prime point of failure for legal modernization efforts.
  3. Be ambitious in the scope of your reforms. Small, pilot projects (ie, e-signature or automated NDAs) won’t make much of an impact and won’t convince your board of the need for bold legal change.

Modernizing the legal system and companies’ legal departments can improve affordability and performance for clients, lawyers, company boards, and shareholders.

Absent modern means of detection, legal risk can proliferate unknown and unseen only to all too often reveal triggers of impending corporate failure when it’s already too late.

© 2022 UnitedLex, All Rights Reserved

How to Unplug From Work During the Holidays

It can be challenging to fully unplug from work during the holidays, especially if you have a lot of responsibilities or if you run your own business.

But taking a break from work during this slower period can be beneficial for your mental health and overall well-being.

It’s really important to not feel guilty about taking some time off or deciding that you don’t necessarily want to take time off, maybe want to spend time building your brand and business and if you do, I have plenty of tips for that as well!

Here are a few tips for unplugging from work during the holidays:

  • Set boundaries: Let your coworkers and clients know that you will be unavailable during specific times, such as during the holidays or on a certain day of the week. This will help prevent you from feeling pressure to respond to work-related messages or calls while you are trying to relax.
  • Create a relaxing routine: Plan activities that will help you relax and unwind, such as exercising, reading or spending time with family and friends. Having a relaxing routine can help you disconnect from work and focus on self-care.
  • Avoid checking work emails or messages too often. Try to resist the temptation to check work emails or messages all the time while you are on vacation. If you must check your email, set a specific time each day to do so and limit the amount of time you spend on it.
  • Take breaks from work-related tasks: If you are working on a project or task during the holidays, take regular breaks to rest and recharge. This will help you avoid burnout and maintain a healthy work-life balance.
  • Plan in advance: This is a great time of year to repurpose your content and utilize social media scheduling tools so that you don’t actually need to be present online to post. That being said, if you post anything you should still check social media so that you can engage with the comments on your posts, because that helps increase visibility. Let what you already have work, harder and smarter for you!

By setting clear boundaries, creating a relaxing routine and taking breaks from work-related tasks, you can help ensure that you fully unplug from work and enjoy your time off during the holidays!

Which of these tips resonate with you and do you have any others to add?

PS – If you’re looking for ways to build your brand during downtime here are a few ideas:

  • Use this time to assess your brand and identify areas for improvement. This could involve updating your website, revamping your social media accounts, or reassessing your target audience.
  • Create valuable content that can be shared during downtimes. This could be blog posts, videos, podcasts or other forms of content that showcase your expertise and add value to your audience.
  • Engage with your audience on social media or through email newsletters. Keep your audience updated on your brand and continue to provide value, even during downtimes.
  • Partner with other brands or influencers to cross-promote your products or services. This can help expose your brand to a new audience and increase your reach.
  • Take advantage of any downtime to learn new skills or attend workshops or conferences. This will help you stay current and improve your expertise, which can benefit your brand in the long run. (Check out my YouTube channel for lots of videos!)
  • Use downtime to reflect on your brand and consider new ways to innovate and stand out in your industry. This could involve launching new products or services, or finding unique ways to differentiate your brand.

Which one of these will you try? Happy holidays!

Copyright © 2022, Stefanie M. Marrone. All Rights Reserved.

Office of Science and Technology Policy Requests Public Input on Biotechnology Regulation

  • The Office of Science and Technology Policy (OSTP) issued a request for information (RFI) today in which it invites public comment on the Coordinated Framework for the Regulation of Biotechnology (the “Coordinated Framework”).
  • The Coordinated Framework, which is a Federal regulatory policy for ensuring the safety of biotechnology products, was first issued in 1986, updated in 1992— to affirm that federal regulation should focus on characteristics of the product and the environment into which it being introduced, and not on the process by which it is produced—and then updated again in 2017 to clarify the roles of EPA, FDA, and USDA. And, in September of this year, Executive Order 14081 directed the three agencies to clarify and streamline regulations to support the safe of use of biotechnology products.
  • Accordingly, the RFI requests comment on seven questions related to the Coordinated Framework. The questions include a request for comment on identification of any regulatory gaps, inefficiencies, or uncertainties; data or information to improve any identified issues; and new or emerging biotechnology products that the agencies should be prepared to address. Comments to the RFI are due by February 3, 2023. Also, on January 12, 2023, OTSP will host a virtual event in which it will listen to public feedback on the RFI.
© 2022 Keller and Heckman LLP

NLRB Unleashes New Damages Against Labor Law Violators

On Tuesday, December 13, 2022 to the National Labor Relations Board (NLRB”) issued a decision that that could have profound effect on employers in all industries, regardless if they have a union. In Thrryv, Inc., the NLRB ruled in a 3 to 2 decision that employers who have been found to have violated the National Labor Relations Act (“NLRA”) can be assessed “consequential damages.” in addition to the more traditional remedies of back pay and reinstatement.   If this case is upheld following a likely appeal, it will rock the employer community in the automotive industry and elsewhere.

The case arises from a unionized marketing company that decided to have a layoff. In the course of negotiating with the company over the layoff, the union representing the employees made various requests for information from the company. The company never provided the requested data. The NLRB determined the company violated the NLRA by refusing to respond to the union’s request for information. The NLRB further found the company violated the act by implementing the layoff without engaging in collective bargaining with the union.

Normally, the NLRB would remedy a violation of this nature by ordering the company to engage in “make whole relief” for the affected workers. Typically, that would involve reinstatement and back pay for the period of time they were wrongfully laid-off. However, in this case, the NLRB boldly went where it has never gone before and ordered the company to compensate the employees for “all direct or foreseeable pecuniary harms suffered as a result of the unfair labor practice.” The NLRB went on to say this would be the new normal to remedy employer violations of the NLRA. Determining the full extent of direct or foreseeable pecuniary harms will invariably require additional hearings in which the parties present evidence. Under this new standard, the type of damages potentially available to affected workers could include such things as out-of-pocket, medical expenses, credit card debt, and any other cause the light off employees incurred while trying to make ends meet.

The two Republican members of the NLRB, Marvin Kaplan, and John Ring filed a dissenting opinion.  The dissent believes that the new remedy laid-out in the majority decision is too broad.  They contend this new standard could subject employers to almost limitless, speculative damages.  The dissenting opinion also notes that this new form of damages goes further than those available under Title VII of the Civil Rights Act of 1964.  They question how the NLRB could award such damages without specific statutory authority from Congress.

This case will almost certainly be appealed and it behooves all the employer community to closely follow its track and if the NLRB uses other cases to continue to try to implement these new form of damages.

© 2022 Foley & Lardner LLP

Ankura CTIX FLASH Update – December 13, 2022

Malware Activity

Uber Discloses New Data Breach Related to Third-Party Vendor

Uber has disclosed a new data breach that is related to the security breach of Teqtivity, a third-party vendor that Uber uses for asset management and tracking services. A threat actor named “UberLeaks” began leaking allegedly stolen data from Uber and Uber Eats on December 10, 2022, on a hacking forum. The exposed data includes Windows domain login names and email addresses, corporate reports, IT asset management information, data destruction reports, multiple archives of apparent source code associated with mobile device management (MDM) platforms, and more. One document in particular contained over 77,000 Uber employee email addresses and Windows Active Directory information. UberLeaks posted the alleged stolen information in four (4) separate postings regarding Uber MDM, Uber Eats MDM, Teqtivity MDM, and TripActions MDM platforms. The actor included one (1) member of the Lapsus$ threat group in each post, but Uber confirmed that Lapsus$ is not related to this December breach despite being previously linked to the company’s cyberattack in September 2022. Uber confirmed that this breach is not related to the security incident that took place in September and that the code identified is not owned by Uber. Teqtivity published a data breach notification on December 12, 2022, that stated the company is aware of “customer data that was compromised due to unauthorized access to our systems by a malicious third party” and that the third-party obtained access to its AWS backup server that housed company code and data files. Teqtivity also noted that its ongoing investigation identified the following exposed information: first name, last name, work email address, work location details, device serial number, device make, device model, and technical specs. The company confirmed that home address, banking information, and government identification numbers are not collected or retained. Uber and Teqtivity are both in the midst of ongoing investigations into this data breach. CTIX analysts will provide updates on the matter once available.

Threat Actor Activity

PLAY Ransomware Claims Responsibility for Antwerp Cyberattack

After last week’s ransomware attack on the city of Antwerp, a threat organization has claimed responsibility and has begun making demands. The threat group, tracked as PLAY ransomware, is an up-and-coming ransomware operation that has been posting leaked information since November 2022, according to an available posting on their leak site. Samples of the threat group’s ransomware variants have shown activity dating back to June 2022, which is around the time PLAY ransomware targeted the Argentina Court of Cordoba (August). While PLAY’s ransomware attack crippled several sectors of Antwerp, it appears to have had a significant impact on residential facilities throughout the city, as stated by officials. According to PLAY NEWS, PLAY’s ransomware leak site, the publication date for the exfiltrated data is Monday, December 19, 2022, if the undisclosed ransom is not paid. PLAY threat actors claim to have 557 gigabytes (GB) worth of Antwerp-related data including but not limited to personal identifiable information, passports, identification cards, and financial documents. CTIX continues to monitor the developing situation and will provide additional updates as more information is released.

Vulnerabilities

Fortinet Patches Critical RCE Vulnerability in FortiOS SSL-VPN Products

After observing active exploitation attempts in-the-wild, the network security solutions manufacturer Fortinet has patched a critical vulnerability affecting their FortiOS SSL-VPN products. The flaw, tracked as CVE-2022-42475, was given a CVSS score of 9.3/10 and is a heap-based buffer overflow, which could allow unauthenticated attackers to perform arbitrary remote code execution (RCE) if successfully exploited. Specifically, the vulnerability exists within the FortiOS sslvpnd product, which enables individual users to safely access an organization’s network, client-server applications, and internal network utilities and directories without the need for specialized software. The vulnerability was first discovered by researchers from the French cybersecurity firm Olympe Cyberdefense who warned users to monitor their logs for suspicious activity until a patch was released. Although very few technical details about the exploitation have been divulged, Fortinet did share lists of suspicious artifacts and IPs. Based on research by Ankura CTIX analysts, the IPs released by Fortinet are located around the globe and are not associated with known threat actors at this time. To prevent exploitation, all Fortinet administrators leveraging FortiOS sslvpnd should ensure that they download and install the latest patch. If organizations cannot immediately patch their systems due to the business interruption it would cause, Olympe Cyberdefense suggests “customers monitor logs, disable the VPN-SSL functionality, and create access rules to limit connections from specific IP addresses.” A list of the affected products and their solutions, as well as the indicators of compromise can be found in the Fortinet advisory linked below.

The semi-weekly Ankura Cyber Threat Investigations and Expert Services (CTIX) FLASH Update is designed to provide timely and relevant cyber intelligence pertaining to current or emerging cyber events. The preceding is a collection of cyber threat intelligence leads assembled over the past few days and typically includes high level intelligence pertaining to recent threat group/actor activity and newly identified vulnerabilities impacting a wide range of industries and victims. 

Copyright © 2022 Ankura Consulting Group, LLC. All rights reserved.

More Places, Less Spaces: California is Driving Down Development Costs

In an effort to decrease the skyrocketing development costs and reduce greenhouse gas emissions, Assembly Bill 2097 (AB 2097) aims to eliminate a key obstacle for new developments: parking. More specifically, starting on January 1, 2023, this law prohibits public agencies from imposing minimum automobile parking requirements for residential, commercial and other development projects if the project is located within a 1/2-mile of a “High-Quality Transit Corridor”[1] or a “Major Transit Stop.”[2]

Prior to the enactment of AB 2097, cities and counties retained the authority to impose a minimum number of parking spaces required for new developments. This condition is typically the result of a calculation found in the city or county’s zoning code, and is usually determined based on the use or type of project being developed, regardless of project specifics. Oftentimes, the use of a universal calculation results in excess parking. For example, a new restaurant may be required to provide 4 parking spaces for every 100 square feet of use even if the restaurant concept does not necessitate a large number of parking spaces or if the restaurant is in a pedestrian- or transit-friendly location. While California remains in the throes of a housing crisis, some areas within the state boast an oversupply of parking spaces. For example, Los Angeles County has 18.6 million parking spaces, which equates to almost 2 parking spaces for every 1 resident.[3] This statistic is similar in the Bay Area where there are 1.9 parking spaces for every 1 resident.[4]

Moreover, not only can a static calculation result in unnecessary parking (and blacktop), it can add untenable costs to new developments. For example, new residential developments are typically required to provide 1 to 2 parking spaces per unit. The requirement results in an additional cost of approximately $36,000 per unit.[5] As the cost to develop residential projects is at an all-time high,[6] builders are welcoming all efforts to reduce the cost and eliminate unnecessary development “standards.”

To avoid a complete free-for-all, under AB 2097, public agencies will still retain the ability to impose a minimum parking requirement, if, within 30 days of the receipt of a completed application, the public agency makes a written finding that not imposing a minimum automobile parking requirement would have a substantial negative impact. However, there are a number of exceptions to this caveat that wholly restrict public agencies from imposing a minimum parking condition. These exceptions include certain affordable housing projects or small residential housing projects.

For parking spaces that are voluntarily included in proposed project designs, public agencies may still require: (i) spaces for car share vehicles; (ii) parking spaces to be shared with the public; or (iii) for the project to charge for parking. Nothing in AB 2097 shall reduce or eliminate the requirement that new developments provide for the installation of electric vehicle supply equipment (i.e., EV-charging stations) or to provide parking spaces accessible to persons with disabilities.

AB 2097 is intended to give developers more flexibility and lower the costs associated with development, which will – hopefully – result in an influx of housing and the redevelopment of vacant buildings where it may not have been previously feasible to provide parking in a quantity necessary to meet a jurisdiction’s minimum requirements. By reducing the oversupply of parking, there is the expectation that the use of mass transit will increase, thereby reducing traffic, greenhouse emissions and air pollution.

Critics of AB 2097 are concerned that the elimination of parking requirements could actually weaken local efforts to provide more affordable housing as many public agencies offer reductions in parking requirements to incentivize developers to add on-site affordable housing units to the project.[7] There is also concern that, despite the decrease in availability, many residents will continue to own vehicles, which – ironically – will lead to increase parking demand and congestion.

Although there is a lot of speculation of AB 2097, many are hopeful that it is a step in the right direction when it comes to addressing California’s housing crisis. As Governor Gavin Newsom stated when he signed the bill: “Reducing housing costs for everyday Californians and eliminating emissions from cars: That’s what we call a win-win.”

FOOTNOTES

[1] “High-Quality Transit Corridor” means a corridor with a fixed-route bus service with service intervals no longer than fifteen minutes during peak commute hours.

[2] “Major Transit Stop” means a site containing an existing rail or bus rapid transit station, a ferry terminal served by bus or rail, or the intersection of two or more major bus routes with a frequency of fifteen minutes or less during peak commute periods.

[3] Aguiar-Curry, Cecilia. Assembly Committee on Local Government – AB 2097 (Friedman) – As Introduced February 14, 2022. (April 20, 2022. )

[4] Inventorying San Francisco Bay Area Parking Spaces: Technical Report Describing Objectives, Methods, and Results. Mineta Transportation Institute – San Jose State University. (February 2022.)

[5] Some estimates place the aveage cost of one residential unit at $1,000,000 in development costs. (The Costs of Affordable Housing Production: Insights from California’s 9% Low-Income Housing Tax Credit Program. Terner Center for Housing Innovation – UC Berkley. A Terner Center Report [March 2020].)

[6] Dillon, Liam and Posten, Ben. Affordable Housing in California Now Routinely Tops $1 Million per Apartment to Build. Los Angeles Times. (June 2, 2022.)

[7] California Daily News.

Copyright © 2022, Sheppard Mullin Richter & Hampton LLP.