IAPP - Tagged - Security Boulevard The Home of the Security Bloggers Network Wed, 27 Mar 2024 17:14:37 +0000 en-US hourly 1 https://wordpress.org/?v=6.4.3 https://securityboulevard.com/wp-content/uploads/2021/10/android-chrome-256x256-1-32x32.png IAPP - Tagged - Security Boulevard 32 32 133346385 Revealed: Facebook’s “Incredibly Aggressive” Alleged Theft of Snapchat App Data https://securityboulevard.com/2024/03/ghostbusters-facebook-theft-snapchat-richixbw/ Wed, 27 Mar 2024 17:14:37 +0000 https://securityboulevard.com/?p=2013174 Smokey Bear / This-is-fine crossover

Meta MITM IAAP SSL bump: Zuck ordered “Project Ghostbusters”—with criminal consequences, says class action lawsuit.

The post Revealed: Facebook’s “Incredibly Aggressive” Alleged Theft of Snapchat App Data appeared first on Security Boulevard.

]]>
2013174
The Era of Digital Transformation: Building A Privacy and Security Practice in the Ever-Changing Landscape https://securityboulevard.com/2020/10/the-era-of-digital-transformation-building-a-privacy-and-security-practice-in-the-ever-changing-landscape/ Tue, 27 Oct 2020 16:19:09 +0000 https://1touch.io/?p=6801 Inventa Supervised AI Solutions CCPA Compliance GDPR Compliance LGPD Compliance Sustainable Data Discovery Data Mapping and Lineage File Analysis and Data Classification Inventories Data Subject Rights Data in Motion Third-Party Sharing Risk and Governance By Use Case CCPA Compliance Meet CCPA Requirements With Ease GDPR Compliance GDPR is here, with potential global impact. LGPD Compliance […]

The post The Era of Digital Transformation: Building A Privacy and Security Practice in the Ever-Changing Landscape appeared first on 1touch.io.

The post The Era of Digital Transformation: Building A Privacy and Security Practice in the Ever-Changing Landscape appeared first on Security Boulevard.

]]>
1863322
IAPP Privacy and Regulations: What’s Next After CCPA https://securityboulevard.com/2020/07/iapp-privacy-and-regulations-whats-next-after-ccpa/ Fri, 10 Jul 2020 23:11:46 +0000 https://1touch.io/?p=5928 Live Webinar  Privacy and Regulations: What’s Next After CCPA August 4th | 11 AM – noon ET Register Today Description Key Takeaways Speakers Privacy and Regulations: What’s Next After CCPA The California Consumer Privacy Act of 2018 (CCPA) can be enforced as of July 1st, 2020, impacting many businesses in the State of California and beyond, for any […]

The post IAPP Privacy and Regulations: What’s Next After CCPA appeared first on 1touch.io.

The post IAPP Privacy and Regulations: What’s Next After CCPA appeared first on Security Boulevard.

]]>
1853307
Is the US Ready for Centralized Data Privacy Enforcement? https://securityboulevard.com/2020/02/is-the-us-ready-for-centralized-data-privacy-enforcement/ Tue, 18 Feb 2020 16:00:00 +0000 https://insights.comforte.com/is-the-us-ready-for-centralized-data-privacy-enforcement US capitol building

The recent news about a proposed bill to create a central data privacy enforcing body shines another spotlight on the high-risk, high stakes shifting ground that many businesses operate their engines of growth on – consumer data collection, analysis, and retention. The news will no doubt be a hot topic at the forthcoming RSA show where the theme of “Human Element” couldn’t be more relevant to this proposed bill – almost everything businesses collect today is about the human being and our mind-boggling data relationship, and many of the biggest data risks come from humans, human data handling, and human failures.

The post Is the US Ready for Centralized Data Privacy Enforcement? appeared first on Security Boulevard.

]]>
1835935
2020 Update https://securityboulevard.com/2020/02/2020-update/ Mon, 10 Feb 2020 16:00:00 +0000 http://securityboulevard.com/?guid=389748f8d7fb8d2d4c16f47767c09d98 Here we are in 2020, and there are many updates to go over.  I plan on further postings on several of these items, and need to get back into blogging here with more regularity.

Here are some of the new things that are out.

CCPA.  Privacy as an issue just seems to get bigger and bigger.  Even as a security professional I find myself being pulled into it.  I wonder if I need to join IAPP, maybe even study and get one of their certs.  We had the GDPR that came out last year.  I really though more companies would address it, but just didn't see that.  Now California came out with their CCPA law.  CCPA is not quite "California's GDPR".  Its not a broad privacy law, but aimed at consumer data.  I've seen some companies be concerned about it, but not as many as I thought.  But am sure I'll be getting more into it.

NIST Privacy Framework- NIST has been working on this for the last year and released v1 recently.  I have a copy and am reading over it.  I plan on giving a talk at an upcoming local meeting, and may do a conference talk about this as well.  Am hoping I'll be able to attend NIST's upcoming cybersecurity conference, as I'm sure it will be a topic of discussion.  We'll have to see how well this works in helping companies prepare for privacy regulations.

FISMA Updates- NIST is still working on the updates for the documents used for FISMA.  The next one they are working on is SP 800-53 Release 5.  We don't have a release date, but hope it will be soon as they've been working on it for so long.  Once its out, we should see other documents that are relying on it, such as 53A and 53B, an new version of 800-171 and others.  All we have so far on this is THIS page.

DoD CMMC- The DoD released this month the first version of their Cybersecurity Maturity Model Certification (CMMC).  This is an interesting items, its a certification for vendors of the DoD.  From a quick read, it combines the CMM/CMMI 5-level maturity model with the categories of the NIST SP 800-171, which is about protecting controlled unclassified data (CUI).  SP800-171 based on the control set of SP 800-53.  I plan on posting on this and may do a presentation as well.

PCI-DSS v4- yes, there is a new update of PCI-DSS.  I first heard about this a couple of years ago.  This should be a revamp of PCI-DSS.  I just have no idea how it will look like until its released.  Which I expect sometime this year.  I don't have an inside track, I just know from reading here and there that its getting closer to release.  Yes, I hope to posting on this as well.

There are several events coming up in my general area and will be posting in these soon.

The post 2020 Update appeared first on Security Boulevard.

]]>
1835037
The Shared Security Weekly Blaze – Mobile App Data Leaks, The California Privacy Act, Third-party Gmail Access https://securityboulevard.com/2018/07/the-shared-security-weekly-blaze-mobile-app-data-leaks-the-california-privacy-act-third-party-gmail-access/ Mon, 09 Jul 2018 04:00:04 +0000 https://sharedsecurity.net/?p=486 This is the Shared Security Weekly Blaze for July 2nd, 2018 sponsored by Security Perspectives – Your Source for Tailored Security Awareness Training and Assessment Solutions and Silent Pocket.  This episode was hosted by Tom Eston. Listen to this episode and previous ones direct via your web browser by clicking here! Help the podcast and leave us a review! [...]

The post The Shared Security Weekly Blaze – Mobile App Data Leaks, The California Privacy Act, Third-party Gmail Access appeared first on Security Boulevard.

]]>
1776884