Remove 2013 Remove GDPR Remove Government Remove Security
article thumbnail

Security Compliance & Data Privacy Regulations

eSecurity Planet

Regulatory compliance and data privacy issues have long been an IT security nightmare. And since the EU’s General Data Protection Regulation (GDPR) took effect May 25, 2018, IT compliance issues have been at the forefront of corporate concerns. GDPR-style data privacy laws came to the U.S. PIPL Raises the Bar – And the Stakes.

article thumbnail

Automated Security and Compliance Attracts Venture Investors

eSecurity Planet

In 2013, Adam Markowitz founded Portfolium, an edtech startup that matched college students and graduates with employers. “I I remember the first time we were asked for a SOC 2 report, which quickly became the minimum bar requirement in our industry for proof of an effective security program,” he said.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Free download: GDPR & ISO 27001 Gap Analysis Tools

IT Governance

While Brexit continues to cause widespread uncertainty, you can at least be sure of one thing: deal or no deal, the security risks your organisation faces won’t go away. Data breaches are on the up, and information security and GDPR compliance remain business-critical issues. An ISO 27001 ?gap?analysis?gives

GDPR 49
article thumbnail

GDPR: Data transfers outside the EU – what are the rules?

IT Governance

The EU General Data Protection Regulation (GDPR) restricts transfers of personal data to countries outside the EEA. So how do you make a restricted transfer in accordance with the GDPR? A transfer is defined as restricted if: 1) The GDPR applies to your processing of the personal data you are transferring. Exception 2.

GDPR 70
article thumbnail

Twitter Fined $150 Million for Using Customer Data Without Consent

IT Governance

“Twitter obtained data from users on the pretext of harnessing it for security purposes but then ended up also using the data to target users with ads,” FTC Chair Lina M Khan said. Twitter’s deceptive practices began in May 2013, according to a complaint filed by the US Justice Department. Is this a GDPR victory?

GDPR 112
article thumbnail

What are the best books on information security?

IT Governance

As the risk of suffering a data breach continues to increase, information security has become a critical issue for all organisations – especially as the GDPR prescribes large administrative fines for organisations that fail to appropriately secure the personal data they process. The Case for ISO 27001:2013. Price: £9.95.

article thumbnail

Millions of Expedia and Booking.com customers at risk after data breach

IT Governance

Security experts working for Website Planet discovered that the Spanish software firm failed to password-protect an AWS S3 bucket that held the personal details of hotel guests dating back to 2013. The post Millions of Expedia and Booking.com customers at risk after data breach appeared first on IT Governance UK Blog.