Overview
Representative Matters
Insights
Awards

Alex advises clients across diverse industries on privacy and cybersecurity matters, from startups to large, highly regulated organizations. Leveraging his technical data analytics background, he provides comprehensive guidance on implementing information security and incident response programs and compliance questions surrounding deploying complex data-intensive products.

Alex has experience in responding to data breaches, directing forensic investigations, and handling communications with stakeholders such as insurers, customers, regulators, and affected individuals. He also counsels businesses undergoing mergers or acquisitions on cybersecurity and privacy concerns throughout the process. Additionally, Alex helps clients draft privacy policies and terms of use that comply with North American and European requirements.

Alex is a CIPP/US-certified privacy professional and stays at the forefront of emerging trends and regulatory changes. He offers clients a proactive approach to regulatory compliance, which includes advising on laws such as the NYDFS Cybersecurity Regulation, CCPA, CPRA, and GDPR, as well as industry-specific standards like HIPAA, NIST, and CIS.

  • Assists in advising clients on compliance with the New York Department of Financial Services (NYDFS) Cybersecurity Regulation and other insurance data security laws modeled on the NAIC Insurance Data Security Model Law.
  • Assists in developing and implementing written information security programs and incident response plans to comply with various privacy and security laws.
  • Assists in providing guidance on managing compliance and contracting issues around the use of machine learning, generative AI, and other similar tools.
  • Assists in responding to data breaches, including directing forensic investigations, data mining, analysis of obligations, and drafting of notices and other communications with insurers, customers, regulators, and affected individuals.
  • Assists with cybersecurity and privacy issues as they occur as part of the process of a merger or acquisition.
  • Assists in reviewing and modifying data security and privacy addenda, AI processing addenda, and provisions in agreements for various contracting arrangements.
  • Assists in advising clients on consumer privacy laws, such as the California Consumer Privacy Act (CCPA) and similar laws in Connecticut, Texas, Virginia, and elsewhere.
  • Assists in advising clients on biometric privacy issues in contexts from collection to security as informed by available law, including the Illinois Biometric Information Privacy Act and other biometrics laws in Texas, New York, Washington, and elsewhere.
  • Helps provide guidance on issues related to processing precise geolocation information.
  • Assists in drafting privacy policies and terms of use for websites and services across industries, including SaaS, financial services, retail, design, health care, and others, covering North American and European legal compliance issues.
  • Assists in advising clients on compliance with the HIPAA Privacy, Security, and Breach notification rules.
  • Helps provide guidance on the EU and UK versions of the GDPR.
  • Best Lawyers in America®: Ones to Watch, Privacy and Data Security Law (2024-2027)

Alex advises clients across diverse industries on privacy and cybersecurity matters, from startups to large, highly regulated organizations. Leveraging his technical data analytics background, he provides comprehensive guidance on implementing information security and incident response programs and compliance questions surrounding deploying complex data-intensive products.

Alex has experience in responding to data breaches, directing forensic investigations, and handling communications with stakeholders such as insurers, customers, regulators, and affected individuals. He also counsels businesses undergoing mergers or acquisitions on cybersecurity and privacy concerns throughout the process. Additionally, Alex helps clients draft privacy policies and terms of use that comply with North American and European requirements.

Alex is a CIPP/US-certified privacy professional and stays at the forefront of emerging trends and regulatory changes. He offers clients a proactive approach to regulatory compliance, which includes advising on laws such as the NYDFS Cybersecurity Regulation, CCPA, CPRA, and GDPR, as well as industry-specific standards like HIPAA, NIST, and CIS.

  • Assists in advising clients on compliance with the New York Department of Financial Services (NYDFS) Cybersecurity Regulation and other insurance data security laws modeled on the NAIC Insurance Data Security Model Law.
  • Assists in developing and implementing written information security programs and incident response plans to comply with various privacy and security laws.
  • Assists in providing guidance on managing compliance and contracting issues around the use of machine learning, generative AI, and other similar tools.
  • Assists in responding to data breaches, including directing forensic investigations, data mining, analysis of obligations, and drafting of notices and other communications with insurers, customers, regulators, and affected individuals.
  • Assists with cybersecurity and privacy issues as they occur as part of the process of a merger or acquisition.
  • Assists in reviewing and modifying data security and privacy addenda, AI processing addenda, and provisions in agreements for various contracting arrangements.
  • Assists in advising clients on consumer privacy laws, such as the California Consumer Privacy Act (CCPA) and similar laws in Connecticut, Texas, Virginia, and elsewhere.
  • Assists in advising clients on biometric privacy issues in contexts from collection to security as informed by available law, including the Illinois Biometric Information Privacy Act and other biometrics laws in Texas, New York, Washington, and elsewhere.
  • Helps provide guidance on issues related to processing precise geolocation information.
  • Assists in drafting privacy policies and terms of use for websites and services across industries, including SaaS, financial services, retail, design, health care, and others, covering North American and European legal compliance issues.
  • Assists in advising clients on compliance with the HIPAA Privacy, Security, and Breach notification rules.
  • Helps provide guidance on the EU and UK versions of the GDPR.
  • Best Lawyers in America®: Ones to Watch, Privacy and Data Security Law (2024-2027)
  • Chair, executive committee, Connecticut Bar Association Young Lawyers Section on Cybersecurity and Technology

Education

  • University of Connecticut School of Law, J.D., with honors, articles editor, Connecticut Law Review
  • Union College, B.A.

Bar Admissions

  • Connecticut
  • Speaker, “Beyond FCRA and GLBA: Financial Institutions, State AI Laws, and Missing Exemptions,” BARBRI CLE Webinar, October 16, 2026.
  • Speaker, “Compliant but Still Sued: Privacy Obligations and Litigation Risk in the Service Contract Industry,” SCIC, MVPPA & GAPA Annual Meeting, September 24, 2026.
  • Speaker, “Protecting Your Customers’ Privacy is More Important Today Than Ever – But Are You Doing It Right?,” Online Lenders Alliance Compliance University, July 22-23, 2026.
  • Speaker, “State Privacy Laws Going Into Effect in 2025,” Connecticut Bar Association Young Lawyers Section, February 18, 2025.
  • Speaker, “Maintaining Data Security in an Ever-Changing World,” Online Lenders Alliance Compliance University, July 16-17, 2024.
  • Speaker, “Data Privacy & Security for InsurTechs,” Locke Lord InsurTech Legal Academy Webinar, August 23, 2023.
  • Speaker, “Privacy and Cyber Exposures from the Collection of Information,” AIRROC: Summer Membership Meeting, July 19-20, 2023.
  • Speaker, “New CT Data Privacy Act (ECS230301),” Locke Lord and Connecticut Bar Association Privacy & Cybersecurity Program, March 1, 2023.
  • Speaker, “Developments in State Privacy Requirements for Connecticut Businesses,” Locke Lord and the Association of Corporate Counsel: Connecticut Chapter Webinar, December 14, 2022.
  • Speaker, “BIPA – The Familiar Face of Biometric Data Regulation,” Insurance Forum, November 2, 2022.
  • Speaker, “Cybersecurity Developments Affecting Receivers,” International Association of Insurance Receivers (IAIR) Technical Development Series, October 12-14, 2021.
  • Speaker, “Data Privacy Laws and How They Impact Your Clients,” Connecticut Bar Association Legal Conference, June 15, 2021.
  • Speaker, “Gearing up for Privacy & Cybersecurity in 2021 Webinar Series: Incident Preparedness & Response,” Locke Lord, June 10, 2021.
  • Speaker, “Privacy & Data Protection Issues Associated with COVID-19,” RAA Re Finance Seminar, September 10, 2020.
  • Speaker, “Privacy and Cybersecurity Issues in the COVID-19 Environment,” Locke Lord, July 8, 2020.
  • Speaker, “Privacy & Data Protection Issues Associated with COVID-19,” RAA Webinar, May 27, 2020.
  • Quoted, “New Data Privacy Law to Take Effect: Here’s What Attorneys Need to Know,” Connecticut Law Tribune, June 8, 2023.
  • CIPP/US