Here’s yet another incident that provides very good lessons that could be incorporated into information security and privacy training sessions as a case study, particularly for HIPAA compliance as well as secure disposal training…
Posts Tagged ‘awareness and training’
HIPAA, HITECH Act and Disposal Problems
Thursday, May 21st, 2009The World’s Largest (and BEST!) Cyber Defense Competition for Teens…In Ames Iowa!
Wednesday, May 20th, 2009Last month Iowa State University, in Ames, held a unique type of IT Olympics for teens…
Effectively Explaining the Purpose of Information Classification to Employees
Tuesday, May 19th, 2009The topic for my Q2 2009 issue of Protecting Information was helping employees to understand why different types of information need different levels of security. Yes, this is information classification, but I describe it in a way that employees of all levels and responsibilities throughout an organization can understand, here’s how…
HITECH Act does *NOT* make HIPAA, or HIPAA advice, “obsolete”!
Monday, May 18th, 2009A couple of weeks ago I was surprised and concerned by a statement made in one of my many listservs by a lawyer commenting on HIPAA books and past advice given for HIPAA compliance…
Secure360 Starts Tomorrow!
Monday, May 11th, 2009Regulatory Requirements for Training and Awareness
Thursday, May 7th, 2009Today I had a great conversation with a CISO about the regulatory and legal requirements for organizations to provide information security and privacy training and awareness activities…
Podcast: HITECH Act adds new compliance requirements, penalties
Wednesday, May 6th, 2009Last week I had the pleasure of speaking with Alexander B. Howard at SearchCompliance.com for a 26 minute podcast…
Understanding Data Protection from 4 Critical Perspectives
Tuesday, May 5th, 2009Today I gave a webcast (27 minutes) about “Understanding Data Protection from 4 Critical Perspectives” and it is now available online through this link…
IP Addresses Are Considered PII By Some Countries No Matter If U.S. Orgs Like It Or Not
Monday, May 4th, 2009Today on Twitter, @clarinette02 posted a link to an interesting article, “IP Addresses Are Personal Data, E.U. Regulator Says,” from a little over a year ago…