News

DataVantage News

Breakfast Workshop — Is ICT Security Considered in the Boardroom? Beyond Risk Management.

In a series of Information Security Forums, DCR is hosting a presentation on Data Security and Integrity to address executive concerns about Risk Management and Risk Governance Tuesday morning at 8:00AM, February 26th at the FST Summit Conference being held at the Ritz Marina del Rey Resort. Kindly visit fstsummit.com for more info.

Direct Computer Resources, Inc., Brings Data Privacy Software to Financial Services Technology Summit, February 25 – 27, 2008.

Communication Intelligence Corporation and Direct Computer Resources Join to Meet Stringent Data Privacy Requirements.

Direct Computer Resources, Inc., Awarded Patent for Computer-Implemented Software System that Manages and Manipulates Data from Heterogeneous Data Systems.

New International Information Security Best Practices Study Group Formed: Direct Computer Resources, Inc., Staffer Appointed Chairman.



Industry News

California Expands Its Data Breach Notification Law to Include Medical Information and Insurance Data

Other States Are Likely to Follow California's Mandatory Disclosure Requirement. — California's law requires any agency, business or person doing business in the state that owns or licenses computerized data containing personal information to disclose any breach of security of the system.

Data Backup Tape Lost

Data protection company Iron Mountain fails to protect data. — GE Money loses data on 650,000 JC Penney credit card holders.

Theft of Personal Data More Than Triples This Year

Thieves direct their resources to weak links. — Sensitive personal data is being systematically stolen from companies, government agencies, colleges and hospitals.

Biggest Data Leak Ever

Personal information on almost one-half of the UK population has been lost. — British officials have lost computer disks containing intimate details on 25 million of Britain's 60 million citizens. The disks containing highly sensitive information including names, addresses, birth dates, insurance numbers, and banking details were lost in transit between government agencies.

Marketing Organization Suffers Data Breach of Client's Data

Convio suffers theft of data that it stored for 92 clients of its GetActive system. — The FBI is investigating the theft of e-mail addresses and passwords from nearly 100 nonprofit organizations, including The American National Red Cross, Cooperative for Assistance and Relief Everywhere Inc. (CARE), and the American Museum of Natural History in New York, an Austin-based company said today.

Why Data Security for Non-Production Computer Systems Is Important

Insider threats lead the way, accounting for approximately 60 percent of the breaches. — Many companies inadvertently jeopardize highly sensitive information at the application development level.

Californian Sues Certegy over Data Theft

Suit Filed on Behalf of 8.5 Million Consumers in Federal District Court. — The class action complaint against Certegy Check Services and its parent company, Fidelity National Information Services Inc., claims they failed to implement and maintain adequate security measures to protect consumers' confidential financial and personal information.

European Union: Europe Clamps Down On Data Protection Violations

U.S. Multinational Fined For Cross-Border Data Transfer. — For the first time, a U.S. multinational organization has been fined for violations of the E.U.'s Data Protection Directive, following a recent clampdown by European data protection authorities on breaches of the E.U.'s strict data protection regime.

Neiman Marcus loses data on 160,000 employees

Stolen Laptop Contained Social Security Numbers, Birth Dates, and Salaries. — Policies called for computer files to be encrypted, but Neiman Marcus doesn't know whether that was done and is cautiously acting as if the data on the stolen machine wasn't protected.

Data Privacy Law in the European Union Since 1995

Specific Chapters and Articles of E.U. Data Privacy Law. — Directive 95/46/EC of the European Parliament and of the Council of 24 October 1995 on the protection of individuals with regard to the processing of personal data and on the free movement of such data.

Addenda to the European Union Data Privacy Law

A Disclaimer, Notice, and Rules Were Added in 2001. — An important disclaimer, a copyright notice, and rules related to personal data protection in the European Union.

Interview with IBM's Chief Privacy Officer, Harriet Pearson

Privacy Is Good for Your Business. — How IBM executes oversight of policies for gathering, sharing, and using personal information from customers and employees.

Proving Grounds: Securing Test Data in Regulatory Environments

Five Ways to Manage Test Data in Regulated Environments. — In many companies, developers use live data in unsound, test environments but remain unmindful of the fallout if that data leaks out. Why should your compliance guard be relaxed when developers use test data to design the systems that store and dole out access to such sensitive information?

Privacy Rights Clearinghouse

A Chronology of Data Breaches. — Over 100 million data records of U.S. residents have been exposed due to security breaches since February 2005.