Jessica (Jessi) McGahie Sawyer advises companies on global data protection laws, including privacy, cybersecurity risks, policies and incident responses, as well as data security obligations. She counsels clients on compliance with the EU General Data Protection Regulation (GDPR), US state and federal data protection statutes and regulations, including the Cybersecurity Maturity Model Certification (CMMC).
Results
- Conducted internal investigations concerning compliance with NIST 800-171 and DFARS 252.204-7012 for several companies, including (A) a large international professional services firm and its affiliates, and (B) one of the nation’s largest electrical utilities. Advised clients regarding compliance assessments, remediation strategies, and communications with appropriate DOD officials. In matters involving disclosers, clients were allowed to continue handling CUI
- Advised prime contractors, including a multinational construction and industrial services company on basic and medium NIST SP 800-171 DoD Assessments required by DFARS 252.204-7019 and -7020, including reviewing and commenting on basic self-assessments
- Provided advice and legal project management to a government services organization on compliance with DFARS 252.204-7012, including scoring and submission of self-assessments to the Supplier Performance Risk System (SPRS), preparation of Plans of Action and Milestones (POA&Ms), and readiness work for CMMC Level 1 and Level 2 assessments
Capabilities and industries
Regional markets
Community
- California Bar Association, member
Credentials
Education
- Georgetown University Law Center, JD
- Loyola Marymount University, MA
- Cornell University, BA
Admissions
- California
Courts/Agencies
- US District Court for the Central District of California
- US District Court for the Northern District of California
- US District Court for the Eastern District of California
Languages
- English