Archive for the ‘Privacy and Compliance’ Category

7 Info Sec & Privacy Tidbits

Wednesday, February 25th, 2009

Today I spent a lot of time in phone meetings and doing research. So, instead of focusing on writing about one topic today, here are my tweets I sent out, that cover a wide range of topics…

(more…)

Employee Suing Starbucks For Poor Security & Laptop Theft

Tuesday, February 24th, 2009

Here’s an interesting progression in how to address the growing data breaches that occur largely from ignored, overlooked, and/or inadequate security practices…

(more…)

Report on Healthcare Provider HIPAA Progress

Monday, February 23rd, 2009

Here’s an interesting report from URAC about healthcare providers and HIPAA compliance progress…

(more…)

Surveillance: New Employee Privacy Law in Portugal

Sunday, February 22nd, 2009

On Februry 17, 2009, a new workplace privacy law took effect in Portugal…

(more…)

2ND HIPAA Sanction: CVS Must Pay $2.25 Million And Improve Info Sec Practices For Improper Disposal

Thursday, February 19th, 2009

The 2nd ever to date HIPAA sanction has been handed down by the Department of Health and Human Services (HHS)…

(more…)

Data Privacy Day Activities That Deserve Recognition

Tuesday, February 17th, 2009

January 28 was international Data Privacy Day, which I blogged about a few times here, here, and here.
While the Intel site posted about many of the events that occurred, there were many more they missed.
Here are a few of them:

(more…)

New Online Behavioral Advertising Principles: Self Regulation Does Not Mean Less Scrutiny By The FTC!

Monday, February 16th, 2009

On February 12 the U.S. Federal Trade Commission (FTC), the most actively aggressive oversight agency in the U.S. with regard to enforcing privacy protections, released new behavioral advertising principles

(more…)

Cloudy Privacy Computing

Sunday, February 15th, 2009

Cloud computing is an attractive, low-cost means of collaboration. But have you considered the risks involved with placing documents with PII “in the cloud”?
The monthly column I wrote for the December 2008 CSI Alert was, “Cloudy Privacy Computing.” Here’s the first section…

(more…)

Use This RBS Worldpay News Report For Training

Thursday, February 5th, 2009

On November 8, 2008 more than 130 ATM machines in 49 cities throughout the world were hit by a group of cybercriminals during a 30-minute period.

(more…)

New Report Finds HIPAA Privacy Rule Is Ineffective As Written

Wednesday, February 4th, 2009

Today the Institute of Medicine (IOM) released a report, “Beyond the HIPAA Privacy Rule: Enhancing Privacy, Improving Health Through Research“…

(more…)