Posts Tagged ‘privacy law’

CORRECTION: Massachusetts Data Protection Law Takes Effect May 1, 2009

Saturday, January 3rd, 2009

A big thank you to Brandon Dunlap and Brett Myers for catching an error I made in my January 1 post

(more…)

New Data Protection Laws Go Into Effect Today

Thursday, January 1st, 2009

Happy New Year!
Several news laws go into effect today. Here are just a few of them…

(more…)

Federal Reserve Releases Examination Procedures For Red Flags Rule Compliance

Friday, October 17th, 2008

If you must comply with the Red Flags Rule, which is a rule that falls under the umbrella of the Fair and Accurate Credit Transactions Act (FACTA), which most organizations in the U.S. who process payments from their customers must comply with, for which compliance is required by November 1 of this year, then you should review the recently released guidance documents that will be used by the government oversight examiners…

(more…)

PII Encryption Required by New Massachusetts and Nevada Laws

Monday, September 29th, 2008

There is a growing trend in laws that require personally identifiable information (PII) to be encrypted.
Encryption in past laws have been directed to be considered based upon risk, but now they are more explicitly required in some laws.

(more…)

Useful Data Protection (Privacy) Law Sites

Wednesday, March 19th, 2008

This morning I took a little time to update my long listing of world-wide data protection (privacy) laws.
Here are some of them you may find helpful:

(more…)

A New Privacy/Security Breach Notice Law Soon In The Land Down Under?

Friday, February 1st, 2008

Another country appears to be on the verge of passing a privacy breach notice law…

(more…)

More On √úberveillance And Privacy

Thursday, January 3rd, 2008

I recently blogged about “6 “Scary Stuff” Privacy Terms IT, Info Sec and Privacy Folks Should Know.”
I was very pleasantly surprised to hear from Dr. Michael G. Michael and his wife Dr. Katina Michael a couple of days ago about the post! (Thank you Michael and Katina!) They provided some additional very interesting information about the term “√úberveillance.” With their permission, here is a large portion of the message they sent to me:

(more…)

Judge Rules University Policy & FERPA Allow Student PII To Be Released

Tuesday, November 6th, 2007

Here’s a case I found interesting…the U.S. District Court for the Eastern District of Tennessee ruled on October 24th that providing a group of record company plaintiffs with student personally identifiable information (PII) does not violate the U.S. Family Educational Rights and Privacy Act (FERPA).

(more…)

Judge Rules University Policy & FERPA Allow Student PII To Be Released

Tuesday, November 6th, 2007

Here’s a case I found interesting…the U.S. District Court for the Eastern District of Tennessee ruled on October 24th that providing a group of record company plaintiffs with student personally identifiable information (PII) does not violate the U.S. Family Educational Rights and Privacy Act (FERPA).

(more…)

Insider Threat Lessons: Posting Threats And Personnel PII On The Internet Establishes Federal Jurisdiction

Monday, November 5th, 2007

Here’s another insider threat example to know and to discuss with your legal counsel and HR folks. It highlights the need for information security and privacy policies, shows how information security and privacy must work with multiple areas on an ongoing basis, and demonstrates the sanctions that can be brought against those who break them.

(more…)