Sample Template for Cyber Security Policy for a Law Firm.

Download this draft template for your law firm and customize for your specific needs.

Contact Legal Computer Consultants for a comprehsive cyber security assessment!

Law firms are complex businesses that need a robust accounting software solution to track their finances. QuickBooks is one of the most popular accounting software solutions on the market, and it offers a number of features that make it ideal for law firms.

Here are some of the reasons why QuickBooks is the best accounting software for law firms:

  • Easy to use: QuickBooks is designed to be easy to use, even for people with no accounting experience. The software has a user-friendly interface and a step-by-step wizard that walks you through the process of creating and managing your accounts.
  • Intuitive reporting: QuickBooks provides a variety of reports that can help you track your finances and make informed business decisions. These reports can be customized to your specific needs, and you can easily export them to share with clients or partners.
  • Automated tasks: QuickBooks can automate many of the time-consuming tasks involved in accounting, such as entering invoices and expenses. This can save you hours of work each month, freeing you up to focus on other aspects of your business.
  • Integrations with other software: QuickBooks integrates with a variety of other software, such as time tracking software and CRM software. This can help you streamline your business processes and improve efficiency.
  • Scalable: QuickBooks can grow with your law firm. As your business grows, you can easily add users and features to QuickBooks.

If you’re looking for an accounting software solution for your law firm, QuickBooks is a great option. It’s easy to use, intuitive, and packed with features that can help you track your finances and grow your business.

Here are some additional benefits of using QuickBooks for law firms:

  • Trust accounting compliance: QuickBooks has built-in features to help law firms comply with trust accounting regulations. This can help you avoid costly fines and penalties.
  • Security: QuickBooks is a secure platform that protects your financial data. Your data is encrypted and stored in the cloud, so you can access it from anywhere.
  • Support: QuickBooks offers a variety of support options, including phone support, online chat, and email support. This can help you get the help you need when you need it.

If you’re looking for an accounting software solution that can help you save time, improve efficiency, and grow your law firm, QuickBooks is a great option. Try it today and see for yourself why it’s the best accounting software for law firms.

The Florida Bar has taken a monumental step by establishing the Florida Bar Cybersecurity Committee. This committee is poised to play a pivotal role in shaping the future of legal practice in the Sunshine State.

**The Need for a Cybersecurity Committee**

With law firms and legal practitioners relying heavily on technology for communication, research, and documentation, the vulnerability to cyber threats has grown exponentially. The sensitivity of legal information, coupled with the potential consequences of a data breach, demands a proactive approach to cybersecurity.

Recognizing this urgency, The Florida Bar created the Cybersecurity Committee to facilitate collaboration and knowledge-sharing among legal professionals, IT experts, and cybersecurity specialists. By doing so, the committee aims to develop best practices, guidelines, and educational resources to empower attorneys to safeguard their digital assets and confidential client information.

**Mandate and Objectives**

The Florida Bar Cybersecurity Committee operates under a well-defined mandate and set of objectives. These include:

1. **Educational Outreach:** One of the primary goals of the committee is to provide educational resources to legal practitioners about cybersecurity best practices. Seminars, workshops, webinars, and written materials will help attorneys stay updated on the latest cybersecurity threats and how to mitigate them.

2. **Guidelines and Standards:** The committee will work towards establishing comprehensive guidelines and standards tailored to the legal profession. These guidelines will encompass data protection, secure communication methods, incident response plans, and more.

3. **Collaboration:** Collaboration will be a key theme for the committee’s success. It will foster partnerships between legal professionals and cybersecurity experts, encouraging an interdisciplinary approach to tackling cybersecurity challenges.

4. **Policy Advocacy:** The Florida Bar Cybersecurity Committee will have a voice in advocating for cybersecurity-related policies that benefit the legal community and protect client interests. This could involve engaging with lawmakers on cybersecurity legislation and regulations.

5. **Incident Response:** In the unfortunate event of a cybersecurity breach, the committee will assist legal professionals in navigating the complexities of incident response. By offering guidance and support, it aims to minimize the impact of breaches on clients and the legal community.

**The Florida Bar’s Commitment**

The establishment of the Florida Bar Cybersecurity Committee reaffirms The Florida Bar’s dedication to upholding the highest standards of legal practice. By recognizing the growing significance of cybersecurity in the legal field, the Bar is demonstrating its commitment to protecting both its members and the clients they serve.

This committee is a testament to The Florida Bar’s adaptability in an ever-changing digital landscape. It showcases the organization’s proactive stance in embracing technology while safeguarding the integrity and confidentiality of legal proceedings.

As technology continues to reshape the legal industry, initiatives like the Florida Bar Cybersecurity Committee set a commendable precedent for other legal organizations to follow suit. By fostering collaboration, providing education, and establishing guidelines, the committee is charting a course towards a more secure digital future for legal practitioners and their clients in Florida.

For more information on the Florida Bar Cybersecurity Committee and its upcoming initiatives, visit https://www.floridabar.org/the-florida-bar-news/bar-committees-will-focus-on-artificial-intelligence-cybersecurity-and-mentoring/ .

Your legal practice’s digital security matters – and this committee is here to help you navigate it effectively.

Legal Computer Consultants helps law offices choose the most appropriate case management solution. There are several case management software options that a small law firm could consider subscribing to. Here are some popular ones:

 

  1. Clio: Clio is a cloud-based case management software designed specifically for law firms. It offers features like time tracking, document management, billing, and invoicing. Clio also integrates with other popular software like QuickBooks and Dropbox.

 

  1. MyCase: MyCase is another cloud-based case management software that is designed for small law firms. It offers features like document management, calendaring, and task management. MyCase also has a mobile app that allows users to access case information from anywhere.

 

  1. PracticePanther: PracticePanther is a cloud-based case management software that offers features like time tracking, billing, document management, and task management. It also integrates with other popular software like QuickBooks and Google Drive.

 

  1. Zola Suite: Zola Suite is a cloud-based case management software that offers features like time tracking, document management, and billing. It also has a built-in email client that allows users to manage their emails within the software.

 

  1. Rocket Matter: Rocket Matter is a cloud-based case management software that offers features like time tracking, billing, and document management. It also has a built-in calendar and integrates with popular software like QuickBooks and LawPay.

 

When selecting a case management software, it is important to consider factors like the size of the law firm, the types of cases it handles, and the specific needs of the firm. It may also be helpful to demo each software to determine which one best suits the needs of the law firm.

Legal Computer Consultants helps law firms develop disaster preparation and recovery plans. As a small law firm, having a disaster preparation plan for your computer network is crucial to ensure that your sensitive data and documents are protected in case of unexpected events. Here are some steps you can take to create a disaster preparation plan:

 

  1. Identify potential disasters: Start by identifying potential disasters that could disrupt your network, such as power outages, natural disasters, cyberattacks, hardware failures, or human error.

 

  1. Backup important data: Ensure that all important data is backed up regularly and securely to prevent loss in case of a disaster. Consider using cloud storage, external hard drives, or online backup services for this purpose.

 

  1. Develop a communication plan: Create a communication plan to ensure that all employees are informed about the disaster and are aware of their responsibilities. Assign roles and responsibilities to each team member, and make sure everyone has access to contact information for each other.

 

  1. Test and update your plan regularly: Regularly test your disaster preparation plan and make necessary updates to ensure that it is effective. Test different scenarios and adjust your plan accordingly.

 

  1. Invest in security: Invest in security measures such as firewalls, antivirus software, and intrusion detection systems to protect your network from cyberattacks and malware.

 

  1. Train your employees: Train your employees on how to recognize and respond to potential disasters. Teach them how to properly use backup systems, and provide them with guidelines for handling confidential information.

 

  1. Maintain hardware and software: Keep your hardware and software up to date and ensure that they are regularly maintained to prevent malfunctions or system failures.

 

By following these steps, you can create a disaster preparation plan that will protect your law firm’s network and ensure the safety of your sensitive data and documents.

In appreciation of our wonderful clients,

Legal Computer Consultants

has donated $1,500 to

Feeding South Florida

Feeding South Florida is committed to providing food for children, seniors, families, and recently unemployed neighbors in need throughout Palm Beach, Broward, Miami-Dade, and Monroe Counties.

 

We wish our clients, staff and employees a safe, healthy and happy new year!

Sincerely,

The entire team at

Legal Computer Consultants

 

See the recent great work FeedingSouthFlorida has done lately on FaceBook

Zoom has released an update to address a security vulnerability! Here is how to ensure your Zoom software is updated: https://youtu.be/E7zERcVLUBM

Law firms navigate the urgency to resume normalcy and to keep their staff safe.

Employers are reopening and bringing back employees who were teleworking, furloughed, or fired. There are major considerations for employers to weigh in navigating amidst unprecedented legal and logistical challenges in order to strike an optimal pragmatic balance between savings lives and saving businesses. Staying compliant with a myriad of employment laws, rules and regulations was hard enough before; the Covid-19 pandemic has made it exponentially more demanding. Here are some important pitfalls to avoid and tips to follow for employers as they transition.

Credit: https://schwarzberglaw.com/employers-reopening-checklist/ 

 

1. Safety is Job One.

Employers are legally obligated maintain a safe work environment so they need to closely monitor and comply with government directives. The White House has issued phased-in guidelines, which are generally considered non-binding on the states, which have issued their own sets of orders, directives and guidelines, which take precedence over any conflicting municipal orders which may have also been issued. These change frequently from state-to-state, as does the definition of “essential businesses.” The U.S. Centers for Disease Control and Prevention’s (“CDC”) has issued various Guidelines for businesses considering reopening and Recommendations for maintaining a healthy work environment. Good practice dictates that employers should adhere to the Guidelines and Recommendations as, and when, they evolve and are implemented for various sectors, industries, locations and circumstances. Employers are taking steps to ensure a safe working environment including such things as, doing some testing (if and when tests are available and certain conditions are met, e.g., only if tests are job-related and consistent with business necessity, i.e., if the employer can show that:

  • an employee’s ability to perform essential job functions will be impaired by a medical condition; or
  • an employee will pose a direct threat due to a medical condition — that is, a significant risk of substantial harm to the health or safety of the employee himself or herself or to others, that cannot be eliminated or reduced by reasonable accommodation)

and screening to bar employees from returning who have exhibited symptoms or are high risk, sending home employees if they develop symptoms, staggering work schedules, using a 4-day work week, using Saturdays, giving non-essential workers the option of teleworking and making their return voluntary, limiting occupancy levels and spreading out and disinfecting work spaces, etc. It will, no doubt, be a daunting task to set up a safe staging area to keep employees distant from one another as they gather to be tested, keep their results private, and pay them for the time they spend being tested, all the while realizing that many active carriers of Covid-19 do not have elevated temperatures.

2. Insurance.

Employers should review their existing insurance policies with their brokers, including, but not limited to, Employment Practices Liability Insurance (“EPLI”) (which can cover a wide array of employment-related claims), as well as commercial property “all risk” insurance coverage for the loss or interruption of business relating to the Covid-19 pandemic. Employers have begun filing suits against their carriers for business interruption damages. Brokers who were negligent in not adequately meeting their fiduciary duties to advise clients about getting business interruption insurance or choosing an adequate amount.

3. Paycheck Protection Program (PPP) Loan Forgiveness. Use it or Lose it.

Generally, over the eight-week period following the date of the PPP loan, the funds can be used for payroll costs, rent, interest on mortgage and debt obligations, Utility payments, and Refinancing, within limits. At least 75% must be spent on payroll costs. There is a loss of forgiveness if there is a reduction in the amount paid to each employee over the eight-week period for any employee and if there is a reduction in the number of employees paid over the eight-week loan period. An employer has until June 30, 2020 to restore salary/wage levels or number if employees for any changes made between February 15, 2020 and April 26, 2020.

4. FLSA Overtime and Wage claims.

Employers are obligated to keep accurate records of hours worked to be sure to pay employees at least minimum wage and for all overtime worked. This may be difficult when so many non-exempt employees are teleworking but employers are not excused during this pandemic. If employees who were exempt previously started performing different (non-exempt) duties, they may have lost their exempt status and may be entitled overtime. So, employers should have a review conducted to determine if exempt salaried employees need to be reclassified and paid for overtime. When we return to more normal work duties, if certain employees can be restored to their exempt status because they have gone back to performing their qualifying duties, the basis should be documented. An employer should consider adopting an overtime policy that provides that overtime cannot be worked without prior written supervisory authorization. If a violation occurs, the overtime worked MUST be paid BUT the employee can be disciplined. Note that if an employer violates the Families First Coronavirus Response Act, and fails to make the mandated pay for leave, the employee may file a minimum wage action under the FLSA. Lastly, note that if the salary of a Highly Compensated employee is reduced below the minimum level under the FLA, the exemption may be lost and overtime worked may become due. Payments made to an independent contractor do not count towards loan forgiveness calculations. Therefore, if an employer included the salary of a W-2 employee in calculating the amount of the loan, but converted that same employee into an independent contractor, there may be a portion of the loan that will not be forgiven. Aside from the forgiveness issue, if an employer has misclassified a worker as being an independent contractor instead of a W-2 employee, there may be number of employee rights the employer has violated. Hence, it is important to review the status of all so-called independent contractors to see who really qualifies as a real W-2 employee under any of the tests used by the Department of Labor and the IRS and under the Common Law. Proper classification is vitally important for many reasons, including, but not limited to, counting the number of employees correctly (e.g., Title VII applies to employers with 15 or more and the FMLA applies when an employer has 50 or more employees, etc.) and for employers to be in compliance under the FLSA and the Internal Revenue Code.

5. Beware the Whistleblower and Avoid Retaliation in all of its forms.

An employee who objects to an employer of its violation of a law, rule or regulation and suffers an adverse employment action as a result, may have a claim for damages and attorneys’ fees under Florida’s private whistleblower statute. Fla.Stat. Section 448.101. The same applies for employees, who make a claim for overtime (even orally), claim workers compensation relief for an injury on the job, make a claim for discrimination, harassment, or hostile work environment, seek leave under the regular FMLA or are denied benefits under the recent emergency FMLA under the Families First Coronavirus Response Act. Few employers (including non-union employers) realize that they may become liable for retaliation under the National Labor Relations Act (“NLRA”) if they discipline employees for complaining about working conditions, because it may be deemed to be interference with that employee’s protected right to participate in concerted protected activity. An example may have occurred two weeks ago, when Amazon fired, a worker who protested about unsafe workplace conditions due to concerns over Covid-19. Employers need to be VERY careful, now more than ever, whether, how and why they may take any adverse action against an employee (including, but not limited to, for example, not bringing the employee back from a furlough, layoff or reduction of pay). Now is the time to review whistleblower policies and establish hotlines in place to facilitate timely reporting, have thorough investigations conducted and avoid any retaliation.

6. Avoid Qui Tam Claims Under the False Claims Act like the Plague.

Be wary of exposing the Company to a claim made by an employee under the Federal False Claims Act (a/k/a Qui Tam claims), i.e., a lawsuit brought by a private citizen (whistleblower) against a person or company who is believed to have violated the law in the performance of a contract with the government or in violation of a government regulation, when there is a statute which provides for a penalty for such violations. In simplest terms, if a company or person took advantage of the government by wrongfully taking money or something of value or failed to pay the government money it should have or give something of value to which the government was entitled, a private citizen could sue in the name of the government to recover damages and receive a portion and attorneys’ fees and costs. In today’s, confusing, unsettled, threatening, disrupted environment, one can only imagine the wave of such suits being filed. Any employer with government contracts should be especially careful to avoid any mistakes or improprieties.

7. Discrimination Based on Potential Bias in Rehiring In the “Fog of War.”

In starting back up, employers may have a certain business necessity to rehire en masse only a portion of their pre-pandemic work force. That could create some exposure depending on who was chosen to return. For example, if an employer sought to protect and not bring back right away older workers who are deemed more susceptible to infection, or pregnant workers, the employer could unwittingly be setting itself up to an age or gender discrimination claim, respectively. Note the recent April, 2020 US Supreme Court decision in in Babb v. Wilkie (the “OK Boomer” case), where the Court held that if age was “a” factor (not necessarily “the” factor) in employment decisions, the employer could be liable. Many experts believe the Ageism will quickly become its own #metoo movement, especially because of our aging population and the rapid increase pace of technology in the workplace. Also trending are pay disparity claims brought by women who earn a fraction of what men are paid. Also in the mix may be situations where those who had previously taken a medical-related leave or leave under the new FFCRA could bring a retaliation claim.

Liability could also be based on the employer’s decision having a disparate impact on a particular protected group even if discriminatory intent could not be established. Employers should apply existing or new sick leave policies uniformly (the same for all employees under similar circumstances) to avoid claims of discrimination or unfair treatment.

Therefore, employers will need to use objective criteria and document the reasons for decisions on who was chosen to return to work in order to prove later that there existed legitimate non-pretextual reasons for their actions.

Other problems can arise because of the current circumstances. The pandemic has exacerbated xenophobic bias and engendered hateful expressions (e.g., anti-Chinese) which, if allowed to remain unchecked, could make an employer liable. Also, with many more employees teleworking, they are more likely to say or write something to other employees, or act inappropriately, than they would if they were face-to-face in the workplace under direct supervision.

Lastly, there is a phenomenon that more discrimination takes place when decision makers are in the Fog of War, where they think they can get a way with discriminating against members of certain protected groups (e.g., disabled employees). There’s more of a need for employers to keep that from happening.

Lastly, as testing continues to ramp up, and contact tracing and other identifying techniques are put into place, discrimination-related claims may explode, particularly regarding individuals who have tested positive for COVID-19.

Employers need policies and procedures, and need to reinforce training, and be ready to open investigations and to adequately discipline employees, if necessary, to prevent future claims.

8. Unemployment/Re-Employment Assistance and Re-Onboarding Issues.

“But I don’t want to come back to work just yet.” Some employers furloughed employees to keep them employed and on group health insurance policies. Many of those furloughed employees may be unemployment benefits from their state plus the $600 per week federal supplement under the CARES Act, which might total more than they would receive net if they returned to work full-time at their previous compensation level. When businesses reopen, what if they are called back to work but don’t want to return? Employers have a right to recall workers and, if a worker gets a reasonable notice and refuses to return, the employee can get fired and risk losing unemployment benefits by now being disqualified. One approach is for employers to increase pay to equal or surpass what an employee can get through unemployment until the $600 supplement expires July 31, 2020, especially if the employer took out a PPP loan and wants it to be forgiven. Every state’s unemployment compensation system is unique, so employees and employers have to check carefully.

Aside from the economics, just feeling unsafe about returning to work is not a good enough reason to refuse to return, unless the employer is not complying with CDC, OSHA and State guidelines to ensure a safe workplace.

Re-Onboard Correctly. If an employee was officially, terminated, and is being brought back, the employer should be sure to fully re-onboard the employee, het the employee re-enrolled in benefit plans, sign Employee Handbooks, mandatory arbitration agreements, restrictive covenant agreements, etc. as if they were a brand new employee. Note that if an employee was furloughed, then maybe they were continued on the employer’s employee benefit packages but be sure to have your insurance broker and your HR department check and confirm.

9. Family Medical Leave (“FMLA”) Notice of Eligibility and the Americans With Disability Act (“ADA”) Interactive Process.

Under the FMLA, if the employer knows or has reason to know an eligible employee has a serious health condition or may qualify for leave, the employer has an affirmative obligation to provide the employee with formal written Notice of Eligibility and Rights & Responsibilities. If the employee qualifies, unpaid leave must be provided for as much as 12 weeks in the applicable one-year period and the employee’s position must be available upon the end of leave (intermittent or continuous). Employers must maintain the employee’s insurance.

Under the ADA, if the employer knows or has reason to know an employee has a disability or regards the employee as having a disability (physical or emotional), the employer has an affirmative obligation to engage in the “interactive process” to determine if a reasonable accommodation must be provided to the employee, unless the employer can prove that providing the accommodation sought by the employee would work a hardship on the employer’s business.

Maintaining open lines of communications with employees during transition is paramount. It will be increasingly important for employers to communicate concerning what employees are to expect upon returning to work, regarding new evolving health and safety precautions, and with respect to a plethora of workplace transition matters, such as assignments, scheduling, compensation, and sick leave. Employers can consider establishing a hotline to make it easy for employees to connect and report problems and concerns.

10. Privacy and HIPAA Issues.

As we continue to reopen, we remain mindful that the threat of Covid-19 may be with us for many more months or years, at least until an effective vaccine is developed. It may become necessary to continue the reopening process with an immune-based workforce as the central requirement. China has begun issuing written certifications with color-coded QR codes to allow them mobility and access to public places. Several countries are seriously considering issuing immunity passports so that those previously sick can safely work where unexposed vulnerable people cannot. Our own Dr. Fauci has stated that we may need to adopt such a program in the US at least for frontline workers. That possibility is laden with serious uncertainties. The science isn’t in yet to confirm such tests work and would be reliable. Hiring based on someone having had and survived the disease raises serious legal issues (including, ADA, HIPAA, privacy, etc.). Who would control the system and information? Would employers get broad general waivers of liability? So many quirks would impede such a program. Rejected applicants would claim (reverse) discrimination; immunities would wear off, exposing workers; people in need would purposefully expose themselves to become immune and, therefore, employable; black market counterfeit certificates would confuse everyone; certain subsets of the population may benefit more than others, etc. etc. There won’t be enough litigation attorneys, judges, or juries to handle the explosion of litigation.

We don’t know enough yet, we haven’t done sufficient testing and we’re not set up to do contact tracing. Our medical experts state that we’ll first need to know the degree to which the virus has affected our society so we can plan intelligently. Even so, variants and mutations of the virus may derail the best laid plans. Ours is not a totalitarian culture that would be able to impose and enforce such Draconian plans using a centralized Big Brother approach. It’s not who we are.

Conclusion: Employers will be in the thick of it all. There are predictions of a second surge in the Fall that might be worse than what we are experiencing now. Employers need to implement various policies in anticipation and continue to monitor COVID-19 specific government orders or regulations, especially EEOC, OSHA and CDC websites for updated direction.

 

Microsoft has emerged victorious in a dramatic competition for public cloud resources for the U.S. Defense Department, beating out Amazon Web Services. The contract could be worth as much as $10 billion over a decade. See Microsoft Azure wins $10 Billion contract from department of defense.

Azure also has achieved more security and compliance certifications than any other Cloud provider.

When your law firm chooses to go to the Cloud, why choose anything less?