ALL THINGS INFOSEC RSS
RETHINKING BUSINESS CONTINUITY PLANS WITH COVID-19
As we're all doing what we can to individually survive this current COVID-19 pandemic, many questions have surfaced regarding how we can work to protect ourselves from similar, devastating impacts recurring in the future. While we see many scrambling to manage and reduce suffering associated with this terrible pandemic, the questions for the future remain...what can we do? At this time, some groups are talking about how we will likely see an uptick in the availability of pandemic insurance in the future for businesses, but in the meantime, much of this type of preparedness will likely occur on a personal...
WHEN IT COMES TO TAX PREPARATION AND INFOSEC, THINK IN LAYERS
Information Security or INFOSEC software products, are similar to tax preparation products in that there are many tools (products) available to help you be more effective in your work. Amongst this cornucopia of software tools, several great options exist to make your job easier, and help you to do more work than you can do yourself, particularly when you're working on client's tax forms, and/or working to develop your INFOSEC program. Your tax software is one tool in your arsenal, just as many information security products sold out there are one tool: Each tool can provide excellence and offer value-added...
GLBA SAFEGUARDS RULE INTRODUCTION: LOST IN FOG
For those of you who are unaware, here is a snippet from the GLBA Safeguards Rule that requires 'financial institutions' to develop an information security program: Per the Federal Trade Commission (FTC), "The Safeguards Rule requires companies to develop a written information security plan that describes their program to protect customer information. The plan must be appropriate to the company’s size and complexity, the nature and scope of its activities, and the sensitivity of the customer information it handles." As you can see, the information security plan (aka Data Security Plan or DSP), is part of a larger Information Security...
WRITING SECURITY DOCUMENTATION ISN'T ENOUGH
Please don't be fooled by infomercials that may lead you to think that an Information Security (INFOSEC) program is an electronic paper drill: With legislative requirements, such as GLBA, writing documentation simply isn't enough: The act of documenting your security architecture is critical to the success of your INFOSEC program, but you actually need to actively manage the program once developed, and follow the policies and procedures that you've written down. To be congruent in all these areas, you also need to conduct awareness training, whether you do it yourself, or outsource the effort, because you need to remind yourself,...
ELIMINATE BLOATWARE
Here's an article identifying how to eliminate much of the 'Bloatware' that comes standard with Windows 10. BLOATWARE Protect your business, protect your clients.© We are the leverage you need.© We're here to help.© TAI, Inc.© 2020 © DataSecurityPlan.Com. All Rights Reserved.