Skip to main content
Privacy & Cybersecurity Due Diligence

Practices

Privacy & Cybersecurity Due Diligence

In today’s data-driven economy, cybersecurity has become a key risk factor in mergers and acquisitions. – The American Bar Association

When undertaking an M&A transaction, it is critical to understand the nature, scope and context of the target company’s information management practices, vulnerabilities and defenses to truly assess its value and risks. Our Cybersecurity Due Diligence assessment can help you identify and evaluate cybersecurity and data privacy assets and risks prior to completing a transaction. We provide you with an independent, confidential evaluation of a target company’s cybersecurity sophistication and capabilities. Our Cybersecurity Due Diligence assessment analyzes a target company based on the following factors:

  • Data & IT assets
  • Scope & nature of information processing
  • Federal, state & international legal obligations
  • Cybersecurity & information governance
  • Privacy policies, notices & statements
  • Employee policies & training
  • Third-party service providers
  • Information security controls & protocols
  • Historical cybersecurity incidents
  • Data breach/incident response capabilities
Net Diligence Breach Coach Silver
The Data Protection Guidebook 2026
Data Protection Map

If your organization has suffered a data breach or incident, please contact us any time (24/7) at DataBreachResponse@ThompsonHine.com.

A survey of U.S. Federal and State Laws, Statutes, and Regulations Governing Data Breach Notification, Biometric Information, Cybersecurity, and Data Privacy*

*The content is for general information purposes only and does not constitute legal or professional advice.