Privacy Ref and CyberDefenses Bring Privacy and Security Together

There is a saying that you can have security without privacy, but you cannot have privacy without security. While privacy and security are both concerned with the protection of information held by an organization, security provides the means to meet the business requirements identified to meet pr...

What is the difference between privacy and security?

One question that I am frequently asked is “what is the difference between privacy and security?” It sounds simple enough, but the response often gets complicated. Maybe an analogy will help.

Three privacy thoughts to start 2016

Over the past few days I have been pondering everything that has happened in privacy in 2015 and the impact on organizations. My intent was to write a retrospective blog entry, but this morning I decided to look ahead and not in the rear-view mirror. So here are three thoughts to kickoff 2016.

Privacy Impact Assessments: Organization-specific or Generic PIAs

I recently had a conversation with a colleague about privacy impact assessments, PIAs, and the tools available to administer them. We quickly became philosophical, trying to weigh whether a generic tool would work or if something that is organization specific is necessary.

Cost of a data breach: $201.00 or $0.56 per record?

It is the season for annual data breach reports to be published. This year a statistic that has raised interest is the average cost of a data breach. One report shows a figure just above $200 while another show less than $1. While, as you will see, both these numbers provide interesting guideline...

Radio Shack’s Privacy Notice Oversight

Growing up I spent a good amount of time at Radio Shack. I liked to “play” with electronics just to understand how things worked. It always bothered me that they asked for my zip code for every transaction, but they still got my money. That may be in part why I became a privacy profes...

5 Privacy Priorities for Business for 2015

In 2014 there seemed to be a new data breach every week. Be it credit card data, student information, social security numbers, or corporate intellectual property, the personal information of any business’s clients, employees, or of the business itself were exposed. Here are 5 priorities tha...

Privacy Awareness: Training lays the foundation

A successful privacy awareness program includes ongoing activities to keep privacy “top of mind” for the members of an organization. It supplements a privacy training program that conveys information in a formal learning environment. For an awareness program to meet its goals, a train...

Is your organization “privacy aware”?

Every time I read the news it seems there is a new data breach impacting client or employee privacy.  Just last week UPS, Supervalu, Community Health Systems, North Dakota University, Shaw’s / Star Market  / Albertson’s, and Schnucks have all been mentioned in articles related to new ...