Upcoming Webinar - Why the CISO Needs to Take a Data-Centric View on Security         April 22 at 2 pm EDTRegister Now
Archive for the ‘Compliance’ Category

Today (May 25, 2019) marks the one-year anniversary of the European Union’s General Data Protection Regulation coming into effect. Now seems as good a time as any to take stock and assess what the GPDR has taught us. Have companies embraced stricter data protection laws? Do companies know exactly what is required of them to stay compliant? Have Data Protection Authorities (DPAs) been putting their foot down when it comes … Read more

Approximately one year ago, the General Data Protection Regulation (GDPR) came into effect, and it has arguably made a significant impact on organizations across all sectors. Since the 25 May 2018, the GDPR has issued a total of €55.96m in fines. To be fair, most of this sum was accumulated by Google. Google was fined €50m by French data regulator for “failing to provide users with transparent and understandable information … Read more

It is estimated that a HIPAA violation on average will cost an organization around $1.1 million in settlement fees. That’s before the loss in revenue that accompanies a data breach, as well as the costs of breach notifications, forensics, lawsuits and other key implications. The more accurate figure when all that is taken into consideration is closer to $8 million. Can your organization afford to not be HIPAA compliant? What … Read more

Back in 2009, the Health Insurance Portability and Accountability Act (HIPAA) was combined (or updated) with the Health Information Technology for Economic and Clinical Health Act (HITECH) to increase its strictness in line with social and technological advances. Despite this, many still claim that HIPAA does not go far enough to secure patient data, and the increasing regularity with which we see data breaches in the healthcare industry seems to … Read more

Data security and data privacy regulations are increasing in number, strictness and complexity year upon year. For many governing bodies, the necessity for data protection and the privacy of the individual is a major priority. Any organization that deals with sensitive information (Personally Identifiable Information or other confidential data) is likely to fall under one or more of these regulations. Midway through last year, on the 25th May 2018, the … Read more

Over the last year we have seen a dramatic rise in the number of data breaches being reporting to the ICO under the General Data Protection Regulation (GDPR). Since the GDPR took effect in May of 2018, it seems that awareness over cybersecurity issues and the obligations organizations have to report breaches has increased. We can see that this increase is reflected in the statistics. The Irish Data Protection Commission … Read more

A recent Forrester report titled “Security Through Simplicity” surveyed 481 IT security decision makers regarding their GDPR readiness. Surprisingly, according to the study, most of the organizations surveyed had not carried out fundamental steps towards GDPR compliance. A small caveat here. The December study was commissioned in August but wasn’t completed until September – well after the GDPR had come into place on May 25th. There are no excuses as … Read more

The “Right to be Forgotten” (RTBF) may be a much talked about feature of the EU General Data Protection Regulation (GDPR), but it actually existed long before this regulation came into being. Essentially, the RTBF acts as a set of rights given to the consumer regarding how their personal data is being help by an organization (“controller”). Consumers can ask controllers for their data to be removed and the controller … Read more

We talk a lot about compliance when we speak to prospects looking to improve their data security. It’s an important part of security in terms of setting some standards, processes, practices and technologies for data security. However, most compliance regulations are either too basic or too pigeon-holed to full address data security concerns, especially in today’s evolving threat landscape. Being compliant is important as it gives you a good base … Read more

This is a quick guide to the Health Insurance Portability and Accountability Act (HIPAA) and how you can become HIPAA compliant. We will take you through a short definition of HIPAA compliance, as well as go through the data security related fundamentals of this compliance requirement. What is HIPAA Compliance? So, the first thing you might be asking yourself is; what is HIPAA compliance? The Health Insurance Portability and Accountability … Read more