article thumbnail

GUEST ESSAY: Here’s why penetration testing has become a ‘must-have’ security practice

The Last Watchdog

Yes, and that is what Sony exactly lost when they were hacked and the personal info of every one of its customers leaked in 2011. Healthcare companies must follow HIPAA rules; retailers must comply with PCI DSS. Huge sum, right? Related: Supply-chain hacks prove worrisome. Are the credentials updated? Compliance, governance.

Security 233
article thumbnail

FTC Issues Landmark Privacy Report

Hunton Privacy

On December 1, 2010, the Federal Trade Commission released its long-awaited report on online privacy entitled “ Protecting Consumer Privacy in an Era of Rapid Change: A Proposed Framework for Businesses and Policymakers.” The FTC report is expected to be followed by a separate privacy report from the Department of Commerce.

Privacy 40
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

California District Court Certifies Class in ZIP Code Collection Suit

Hunton Privacy

As reported in BNA’s Privacy & Security Law Report , on May 4, 2012, the United States District Court for the Southern District of California granted plaintiffs’ motion for class certification in an action against IKEA U.S. IKEA”) under the Song-Beverly Credit Card Act of 1971 (the “Song-Beverly Act”).

Retail 40
article thumbnail

States Attempt to Address Privacy Risks Associated with Digital Copiers and Electronic Waste

Hunton Privacy

Retailers of covered electronic equipment will be required to provide consumers with information at the point of sale about opportunities offered by manufacturers for the return of electronic waste, to the extent they have been provided such information by the manufacturer.

Privacy 40
article thumbnail

FRANCE: New cooperation agreement between the CNIL and DGCCRF

DLA Piper Privacy Matters

They should review all their privacy documentation to ensure that the level of information is sufficiently precise, easily understandable and available to consumers. B2C businesses will need to be more careful than ever in the way they collect and process consumer personal data, the way they inform them of such processing, etc.

GDPR 40
article thumbnail

New Jersey Courts Issue Conflicting Rulings in ZIP Code Collection Cases

Hunton Privacy

The conflicting orders leave unanswered the question of whether New Jersey retailers are prohibited from requiring and recording customers’ ZIP codes at the point of sale during credit card transactions. On September 16, 2011, a judge for the Superior Court of New Jersey issued a bench ruling in Imbert v. Harmon Stores, Inc.,

Retail 40
article thumbnail

MY TAKE: Michigan’s cybersecurity readiness initiatives provide roadmap others should follow

The Last Watchdog

Related: California’s pioneering privacy law ripples through other states. However, after a recent visit to Detroit, Ann Arbor and Grand Rapids as a guest of the Michigan Economic Development Corp., or MEDC, I’m prepared to rechristen Michigan the Cybersecurity Best Practices State. This new nickname may not roll off the tongue.