iSnare.com - Free Content Articles Directory
Authors Contents [Advanced Search][Add OpenSearch][Job Search]
Distribute your articles to thousands of article sites for only $2 and below! Read more...

Index  Computers and Technology
 

Data Loss and Privacy Risk - A Top Priority in 2008

 
[ Contact the Author] [ Send to a Friend] [ Article Publisher] [Make PDF] [ Print] [ Bookmark & Share]
 
Read our Terms of Service before reprinting this article. The submitter specified above has claimed the rights to this article.
Colm Doherty

Introduction

The loss of a laptop containing medical records for 5,000 people was just one of a drip-feed of data privacy breach news stories in the past year. Public sector incidents alone led to over 37 million UK citizens having their personal data lost or stolen.

The leakage of 25 million child benefit records at HMRC last November was the world’s 5th largest reported data loss incident. With incidents at the DVLA, the MoD, NHS and US Government agencies, it seemed the issue of lax data security was a public sector problem.

But private enterprise also grabbed headlines in 2007, dubbed “The worst ever year for data protection” by website The Register. TK Maxx lost 5 million UK credit card records, Monster.com had details of 3 million customers taken, at loans.co.uk 250,000 private customer records were stolen & sold and Leeds Building Society lost data on its entire workforce.

Commercial Concerns

Loss of customer data is not the only worry in the private sector. A rising tide in Merger & Acquisitions and intensely competitive market has flagged the protection of commercially sensitive data as an equally strong concern.

Company directors and senior public officials are now taking steps to review policies, implement sensitive data procedures and assess the risks of their organisations losing private or commercially sensitive data. Sectors at high risk include Retail, Financial Services, Utilities and Professional Services.

Legislation & Standards

Protecting customers’ data privacy and that of the company not only makes sound business sense but is also becoming the subject of industry, government & EU regulation. According to security consultancy Vigitrust, laws such as the European Union Data Protection Directive and equivalent U.S. regulations have resulted in information security becoming a board level action item.

It would be a mistake for UK & European organisations to ignore U.S. legislation in this area as it may also be binding on companies trading with US consumers. Regulations such as California Senate Bill 1386 apply to “any person or business that conducts business in California” even if they are located outside the U.S.

Many organisations are pursuing ISO 27001 accreditation, the Information Security Standard (formerly BS7799). Larger retailers are striving to meet the Payments Card Industry (PCI) standard pioneered by Visa & MasterCard to address identity theft.

The public sector responded to its ‘annus horibilis’ by mandating data encryption on all laptops, but also by disseminating Information Governance standards on data privacy to all public bodies and practical assistance such as the ‘Information Governance Toolkits’.

Risk mitigation software vendor The Irish company, best known for detecting & reporting on illicit image abuse, has been conducting ‘Discovery Audits’ to detect unprotected sensitive data on company networks since 2007; its auditors found such unprotected data in over 36% of all IT resources scanned, including 46% of PCs, 32% of e-mail accounts and 30% of file servers. In each case, it required at least 20 instances of suspected privacy data to be detected in a document before being logged as ‘suspect’.

Risk assessment - Where to start?

Best practice begins with a risk assessment to detect actual data breaches or the existence of ‘data at risk’. In order to help corporations gain visibility of this risk, The Irish company offers a complimentary ‘Discovery Audit’ to detect and report on the presence of sensitive data at rest.

The Irish company Privacy Auditor software will scan for sensitive data such as Credit Card, Bank Account or National Insurance numbers, encryption keys etc. held in plain text on e-mail, desktop PCs, laptops and file servers. The Irish company Privacy Auditor can, on request, remove or encrypt such data for the client.

During this engagement, the organisation may nominate specific sensitive data or documents to be detected on its network, such as commercially sensitive financial data. A comprehensive report is delivered, together with suitable recommendations.

With the public focus on risk & compliance in the treatment of sensitive data, an early risk assessment is now considered the essential starting point to protecting the best interests of taxpayers, customers, companies and ordinary citizens alike.

Important NoticeDISCLAIMER: All information, content, and data in this article are sole opinions and/or findings of the individual user or organization that registered and submitted this article at Isnare.com without any fee. The article is strictly for educational or entertainment purposes only and should not be used in any way, implemented or applied without consultation from a professional. We at Isnare.com do not, in anyway, contribute or include our own findings, facts and opinions in any articles presented in this site. Publishing this article does not constitute Isnare.com's support or sponsorship for this article. Isnare.com is an article publishing service. Please read our Terms of Service for more information.

This article was written by Colm Doherty of Pixalert – http://www.pixalert.com Data Loss Prevention | Email Monitoring Solution. PixAlert is the market

Article Tags: company [See Dictionary], data [See Dictionary], sensitive [See Dictionary]
Got a question about this article? Ask the community!
Article published on March 31, 2009 at Isnare.com
 
Rate this article:

SafeScreen FAQ
Submitted by: Colm Doherty

What does SafeScreen do SafeScreen is designed to monitor images being viewed on a PC or Laptop and provides multi-source image detection, analysis and prevention...

Free Image Risk Scanner For Enterprise Email
Submitted by: Colm Doherty

An Irish Company releases ImageGuard MailAssessor to detect inappropriate images on corporate email 30th June 2008: Following a rise in the levels of risk it discovers when scanning enterprise email systems for inappropriate images, specialist risk-mitigation software vendor has released ImageGuard™ MailAssessor, a free downloadable tool which allows companies to rapidly check for potential image risk in their email systems...

Scrapbooking Requires Photo Matching Software
Submitted by: Maxim Smirnov

There was once a time when people used to get pictures developed and then cut them up to turn them into scrapbooks...

Find Duplicate Mp3 Files For Mixes
Submitted by: Maxim Smirnov

One of the easiest and cheapest ways to get a present for someone else is to make them a mix of some favorite songs...

How Do You Find Duplicate Photos Quickly?
Submitted by: Maxim Smirnov

You’re trying to create a fun project or a poster for a friend, but you need to find duplicate photos...

Teaching Students to Delete ITunes Duplicates
Submitted by: Maxim Smirnov

When you’re teaching a class, you might not realize that all of your music instruction is adding up to problems for your students...

Tax Benefits of Book Tracking Software
Submitted by: Maxim Smirnov

Most people avoid the tax season, hoping to stall it for as long as possible until April 15th is unavoidable...

School Surveillance Applications
Submitted by: Wesley Fernley

In this day in age it has almost become necessity that our schools, from the elementary level through the college level, include video surveillance for precautionary measures to help provide a secure environment for staff and especially for the students attending...

Using IP Surveillance Cameras in Check Cashing Locations
Submitted by: Wesley Fernley

As tax season approaches and during this challenging economy, payday loan check cashing locations are busier than ever...

Ways a Camera Phone Can Help in an Emergency
Submitted by: Seomul Evans

In an emergency you will require to allow and welcome help, and later it is over, you will have to return, repair, and rebuild...

Facts About Cell Phones Health Risks?
Submitted by: Seomul Evans

Through the long time, there have been so many rumors concerning the wellness risks of cell phones But we are a society that would almost rather die, than give them up...

How to Install Aftermarket Stereo in Vauxhall Agila
Submitted by: Jack Wylde

DESCRIPTION: The radio installation in VAUXHALL AGILA Some Cars have steering controls from new and when you replace your radio...

Don't Ruin Your Laminator - 4 Reasons to Always Use a Carrier With Your Pouch Laminating Machine
Submitted by: Jeff McRitchie

One of the most important supplies you'll need when getting ready to use a pouch laminator is a carrier...

GBC ShredMaster CC195 Cross-Cut Shredder Review
Submitted by: Jeff McRitchie

If you've visited an office supply store recently or checked out paper shredders on the Internet, it probably seems like paper shredders are all alike, especially in the looks department...

Frequently Asked Questions About Spiral Coil Binding
Submitted by: Jeff McRitchie

Coil binding - also known as spiral binding - is a very popular method of binding, but it can be difficult to understand how it's done...

An Overview of the GBC C-75 Comb Binding Machine
Submitted by: Jeff McRitchie

If you are looking for an inexpensive comb binding machine for your office or home office you might be considering the GBC C75...

5 Great Features of the Rhin-O-Tuff HD6500
Submitted by: Jeff McRitchie

Designed for the heaviest duty users such as print and copy shops, binderies and large organizations, the Rhino Tuff HD6500 is a machine that offers top of the line flexibility and capacity...

Isnare.com Footer Divider

© 2004-2009. Isnare Free Articles - An Isnare Online Technologies Free Articles Project. All Rights Reserved.   Privacy Policy