Security News

Guide: How MSSPs and vCISOs can extend their services into compliance readiness without increasing cost
2023-01-18 10:32

Compliance services are emerging as one of the hottest areas of cybersecurity. This is a major opportunity for providers of virtual CISO services assuming they can broaden their offerings to encompass compliance.

Guide: How virtual CISOs can efficiently extend their services into compliance readiness
2023-01-10 03:45

Compliance services are emerging as one of the hottest areas of cybersecurity. As large businesses adopt cybersecurity and compliance frameworks and agree to certain standards, they impose similar demands on their suppliers.

Why automation is critical for scaling security and compliance
2022-12-09 04:30

This is where automation is critical to scale security and compliance. Automation enables compliance and security standardization.

How compliance leaders can encourage employees to report misconduct
2022-12-08 04:00

As Chief Compliance Officers continue to face challenges in restoring employee misconduct reporting to pre-pandemic levels, there are three strategies they should implement to increase confidence in their processes among employees, according to Gartner. "There are clearly structural challenges that have impaired effective misconduct reporting, ranging from new working models, to higher employee turnover, and increased societal polarization," said Chris Audet, VP, research, in the Gartner Legal, Risk & Compliance practice.

14 PCI Compliance security best practices for your business
2022-11-24 13:38

PCI compliance is a structure based on requirements mandated by the Payment Card Industry Security Standards Council to ensure that all companies that process, store or transmit credit card information maintain a secure operating environment to protect their business, customers and confidential data. The PCI SSC was created by Visa, MasterCard, American Express, Discover and Japan Credit Bureau to administer and manage the PCI DSS. Companies which adhere to the PCI DSS are confirmed PCI compliance and thus trustworthy to conduct business with.

14 PCI compliance security best practices for your business
2022-11-24 10:04

PCI compliance is a structure based on requirements mandated by the Payment Card Industry Security Standards Council to ensure that all companies that process, store or transmit credit card information maintain a secure operating environment to protect their business, customers and confidential data. The PCI SSC was created by Visa, MasterCard, American Express, Discover and Japan Credit Bureau to administer and manage the PCI DSS. Companies which adhere to the PCI DSS are confirmed PCI compliance and thus trustworthy to conduct business with.

Data sovereignty and compliance need help
2022-11-15 09:00

Reader Survey Results Back in September, we asked readers of The Register about data sovereignty. The figure that we initially thought surprising was that 48.1 percent of respondents still have their systems and data in private, on-prem data centres.

Compliance initiatives can advance your organization’s security journey
2022-11-10 05:30

Compliance standards are designed to give organizations a foundational approach to designing their security program while also reassuring third parties that you have met at least a minimal set of security controls. In this Help Net Security video, Christopher Fielder, Field CTO at Arctic Wolf, discusses the common mistakes organizations make in their compliance journeys.

Busting compliance myths
2022-11-09 06:00

This lack of in-house compliance experience and expertise often prompts companies to turn to third-party solutions to streamline the compliance process and act as a liaison with their auditors. Some of the most common compliance myths stem from misnomers and confusing or conflated terminology.

Privacy, compliance challenges businesses face after Roe v. Wade repeal
2022-11-04 05:00

In this Help Net Security video, Rebecca Herold, IEEE member and CEO of Privacy & Security Brainiacs, discusses data, privacy, surveillance, and compliance challenges facing businesses in the wake of the US Supreme Court's repeal of the Roe v. Wade decision, which stated that a clause of the Fourteenth Amendment to the US Constitution provides a "Right to privacy" and, through it, a pregnant woman's right to an abortion. In this day and age, when information about individuals is widely collected and/or inferred via online tracking and ubiquitous real-world surveillance technology, what should businesses do when asked to hand over data about their users and employees.