Insights from Data Security in 2011

Just as we have summarized 2011 in terms of data breaches, and talked about some of the breakdowns of those stats, Trend Micro has put together a report on 2011, Information is Currency, highlighting how 2011 was the “Year of Data Breaches.” The report looks back at some of the predictions prior to 2011 and what [...]

Enterprise Password Practices

Impervia has released a study on Enterprise Password Worst Practices as a sequel to a study they did two years ago on Consumer password practices. The aim of the report is how businesses can upgrade their password security practices. “Instead of consumers, we believe responsibility rests on enterprises to put in place proper password security [...]

Healthcare Data Gets Complicated in 2012

If you’re in the healthcare field, you can expect that 2012 will bring more complications when it comes to data security: increased risks, increased regulatory expectations and greater reputation fallout for breaches. According to these predictions for 2012 in healthcare data, healthcare data breaches could reach “epidemic proportions” unless action is taken. Here is a [...]

US Hospital Data Breaches Rising

According to a new Ponemon study sponsored by ID Experts, the Second Annual Benchmark Study on Patient Privacy and Data Security, healthcare breaches continue to rise. The frequency of data breaches was up 32% over the previous year, averaging four data breaches per healthcare organization. To further complicate matters, 55% of healthcare organizations say they have [...]

Data Protection Security Primer

SearchSecurity.com has put out a series they’ve termed their “Data Protection Security School“. The series includes a free training courses, webcasts, tips and a quiz to help you prioritize the data protection priorities within your organization. Although this set of resources will not replace the comprehensive research that goes into your risk analysis and product [...]

Free PCI-compliance application launched by Acuity

Governance, risk and compliance (GRC) vendor Acuity has released a free management application for businesses to measure, monitor and report on their compliance to version two of the payment card industry data security standard (PCI-DSS).

Free PCI-compliance application launched by Acuity

Governance, risk and compliance (GRC) vendor Acuity has released a free management application for businesses to measure, monitor and report on their compliance to version two of the payment card industry data security standard (PCI-DSS).

Private Sector Breaches on the Rise

The UK Information Commissioner’s Office (ICO) recently released a report for individuals and businesses called Annual Track 2011, a study that monitors the awareness and understanding of the Data Protection Act (DPA) and the Freedom of Information Act. The survey shows that more businesses, nearly three-quarters, are aware of DPA requirements to keep personal information [...]

Compliance is Continuous

A new Verizon report on the Payment Card Industry and Compliance highlights the importance of compliance as an ongoing initiative, whether it be for PCI compliance or for compliance with other standards or laws. The report looks at more than 100 PCI DSS assessments conducted by Verizon alongside payment card data breach information. The report [...]

New Data Breach Legislation Passes Senate

The US Senate has just approved a bill aimed at protecting national financial networks and powergrids from hackers and at safeguarding consumer data online. S. 1151, sponsored by Patrick Leahy, would establish a national standard for data breach notification, require companies to implement data privacy and security programs, and apply criminal penalties for those who [...]