article thumbnail

US: Surviving the service provider data breach

DLA Piper Privacy Matters

It’s summer, and life’s a breach. A data breach, that is. It’s your service provider’s breach, but it involves your (more likely, your customer’s) data. So put down the beach reading, for some breach reading. Who “owns” a data breach?

article thumbnail

Scary Fraud Ensues When ID Theft & Usury Collide

Krebs on Security

Then in mid-January, Jim heard from MSF via snail mail that they’d discovered a data breach. ” According to the Native American Financial Services Association (NAFSA), a trade group in Washington, D.C. According to Buckley LLP , a financial services law firm based in Washington, D.C.,

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Security Compliance & Data Privacy Regulations

eSecurity Planet

GDPR, the EU’s flagship data privacy and “right to be forgotten” regulation, has made the stakes of a data breach higher than ever. Thus, it can be difficult for even small enterprises to keep up with information security and data privacy compliance. In the U.S.,

article thumbnail

Top 7 Data Governance Blog Posts of 2018

erwin

The evolution from Data Governance 1.0 to Data Governance 2.0 But to ensure the collaborative take on data governance is implemented properly, an organization must settle on a common definition. The Top 6 Benefits of Data Governance. www.erwin.com/blog/top-6-benefits-of-data-governance/. Data Governance 2.0

article thumbnail

The Many Challenges of a Multi-Cloud Business Environment

Thales Cloud Protection & Licensing

At a global level, there's a broad acceptance that security teams are tightly involved with policy definition (82%), but an almost even split in relation to enforcement; 37% believe it is the security team’s responsibility while 45% believe that policy enforcement is up to the cloud provider.

Cloud 71
article thumbnail

NYDFS finalizes cybersecurity rule amendments

Data Protection Report

On November 1, 2023, the New York Department of Financial Services (NYDFS) finalized the second amendment to its cybersecurity regulations, which are available here. The two definitions from Section 500.1 a)), this new term applies.

article thumbnail

FTC amendment to Safeguards Rule

Data Protection Report

Under the Federal Trade Commission’s (“FTC”) new amendment to the Safeguards Rule (the “Amended Rule”), non-banking financial institutions will have to report certain data breaches and other security events to the agency. Why the FTC uses the terms “customers” and “consumers” interchangeably is unclear.