Archive for the ‘Information Security’ Category

Most Laws Are Flawed, But It Is Up To Us To Make Them Better & Make Them Work

Friday, March 6th, 2009

Rafal Los makes some very good points in his post “Analysis of the Stimulus Bill and Healthcare Privacy” from a few days ago. I started writing all my thoughts as a comment to him, but then decided it would work well as a blog post…

(more…)

A Cornucopia Of Audit, Information Security and GRC Information

Wednesday, March 4th, 2009

It was great to see Dan Swanson include some of my resources in his Security Insider blog posting today!

(more…)

31 Info Sec & Privacy Tweets From Past 4 Days

Tuesday, March 3rd, 2009

I’ve been running across many interesting and useful news reports and pieces of information over the past few days, and putting them out on my Twitter peeps/tweeps/tweets/etc. For posterity and my own future reference, here’s a listing of the ones from the past few days I want to be able to look back upon without paging through multiple posts on my PrivacyProf account…

(more…)

31 Info Sec & Privacy Tweets From Past 4 Days

Tuesday, March 3rd, 2009

I’ve been running across many interesting and useful news reports and pieces of information over the past few days, and putting them out on my Twitter peeps/tweeps/tweets/etc. For posterity and my own future reference, here’s a listing of the ones from the past few days I want to be able to look back upon without paging through multiple posts on my PrivacyProf account…

(more…)

31 Info Sec & Privacy Tweets From Past 4 Days

Tuesday, March 3rd, 2009

I’ve been running across many interesting and useful news reports and pieces of information over the past few days, and putting them out on my Twitter peeps/tweeps/tweets/etc. For posterity and my own future reference, here’s a listing of the ones from the past few days I want to be able to look back upon without paging through multiple posts on my PrivacyProf account…

(more…)

7 Info Sec & Privacy Tidbits

Wednesday, February 25th, 2009

Today I spent a lot of time in phone meetings and doing research. So, instead of focusing on writing about one topic today, here are my tweets I sent out, that cover a wide range of topics…

(more…)

7 Info Sec & Privacy Tidbits

Wednesday, February 25th, 2009

Today I spent a lot of time in phone meetings and doing research. So, instead of focusing on writing about one topic today, here are my tweets I sent out, that cover a wide range of topics…

(more…)

Employee Suing Starbucks For Poor Security & Laptop Theft

Tuesday, February 24th, 2009

Here’s an interesting progression in how to address the growing data breaches that occur largely from ignored, overlooked, and/or inadequate security practices…

(more…)

2ND HIPAA Sanction: CVS Must Pay $2.25 Million And Improve Info Sec Practices For Improper Disposal

Thursday, February 19th, 2009

The 2nd ever to date HIPAA sanction has been handed down by the Department of Health and Human Services (HHS)…

(more…)

Cloudy Privacy Computing

Sunday, February 15th, 2009

Cloud computing is an attractive, low-cost means of collaboration. But have you considered the risks involved with placing documents with PII “in the cloud”?
The monthly column I wrote for the December 2008 CSI Alert was, “Cloudy Privacy Computing.” Here’s the first section…

(more…)