Delivering the #Privacy, #DataSecurity and #Compliance support that organizations need to manage risk and succeed in an interconnected and data-driven world.
#NIST 800-53 and 800-171, if your organization is seeking government contracts or certification with federal cybersecurity frameworks, chances are good it will need to comply with one of the security frameworks. But how do they compare and differ?
https://t.co/xW9XNHh4U3
When businesses are assessing auditors for security assessments, these are factors they often consider:
๐ฏ What will the quality of the audit be?
โฑ๏ธ How fast can they complete it?
๐ฐ How much will it cost?
What should you ask when vetting #infosec auditors? (link in comments)
2025 was an active year for #TCPA lawsuits, with 2,628 cases, representing a 60% increase compared to 2024. View our TCPA Litigation Trends 2025 Year in Review Report for an in-depth analysis of the spike.
https://t.co/qgw8k7P0Pl
These #AI uses bring elevated risks of #HIPAA violations:
๐ค AI chatbots
๐ค Training AI models with patient data
๐ค AI transcription
๐ค Misconfigured AI cloud services
๐ค Entering #PHI into public AI tools
Click the link in the comments for risk mitigation best practices.
Failing to comply with the #TCPA, #TSR, and state #telemarketing laws can result in hefty fines and class action lawsuits. To ensure they operate within the bounds of these laws, businesses need to conduct thorough telemarketing compliance assessments.
https://t.co/jHB9pKor1U
Alabama is the 21st state to pass a #privacy law. For a summary of the lawโs applicability threshold, consumer rights, business obligations, effective date, and penalties, click the link in the comments.
A common theme has emerged in #CCPA enforcements: not providing consumers with the required methods to opt out of the sale/sharing of personal data and the use of web trackers. Click the link in the comments for examples of violations that resulted in fines.
#privacy
Chances are #AI systems now touch your people, your processes, and your technology. It is also becoming part of what gets evaluated in your security assessments, but how do traditional #InfoSec standards account for AI governance?
https://t.co/nQQLxVx4fr
#ISO27001#SOC2#PCI
The #Delve story put the spotlight on the quality of auditors assessing #compliance with #privacy and #cybersecurity frameworks. In this episode of Compliance Pointers, learn how to spot the red flags that your #SOC2 auditor may not be up to par. (Complete episode in comments)
If your business uses website tracking tools, itโs at risk for #CIPA lawsuits and demand letters. Learn strategies and actions businesses can take to help ensure the tools on their websites are not exposing them to unnecessary CIPA risks.
https://t.co/yeHEFCutcc
On March 25th, the @FCC began mandating the use of SIP code 603+. Learn more about Session Initiation Protocol technology and what #telemarketing businesses should do with the new rules in place.
https://t.co/v8FhkWUfRx
Let an experienced team of professionals handle your #cybersecurity challenges, so you can focus on running your business, with our Virtual #CISO program.
Audit quality is a hot topic in the #infosec space right now. Here are some ways to determine if your auditor provided your organization with a high-quality #SOC2 report.
https://t.co/uZWW14Xuqq
The Fifth Circuit Court of Appeals held that the #TCPA requires only โprior express consent,โ not โprior express WRITTEN consent,โ for prerecorded calls to wireless numbers. Watch this episode of Compliance Pointers for a breakdown.
https://t.co/ZWEbMB0Uzm
#telemarketing