CLOUDTWEAKS CONTRIBUTOR PROGRAM

Join the CloudTweaks thought leadership contributor program which includes a customized profile, branded identity page, newsletter marketing, social amplification and more...

The program is currently available to consultants, influencers or executive level contributors.

Secure Business Agility

Why Information Security Need to be Empowered to Manage Data Breaches

Manage Data Breaches

2017 saw over 2 dozen major security breaches in 2017.  While the public may have grown numb to the number and constant stream of data breaches reported, outrage has been building around the delays in accompanying disclosures of those breaches and questionable actions that have occurred in between when a data breach has occurred and when it’s been reported.  Those questionable actions have included company executives selling stock and paying hackers a ransom.  Sometimes data breaches have also been reported by independent bloggers before the businesses officially reported them as was the case with both Target and Nieman Marcus.  And, despite the delayed reporting of many data breaches, businesses have still needed to update the public on a bigger than initially reported scope of breach.

Manage Data Breaches

A breach investigation can typically take weeks or even months before most businesses feel they know enough to disclose. In the past, businesses have typically concerned themselves with fixing the security vulnerability or issue from which the breach arose and then worrying about reporting.  Previously, regulation in Europe and in the United States with its patchwork of state laws gave companies leeway on times to report, with only a handful of states requiring notice within 45 days, and even then, with some exceptions.

Shifts in Regulatory Landscape around Data Breaches

A measure was recently introduced in the United States Congress that could impose new criminal penalties on anyone convicted of “intentionally and willfully” concealing a data breach, including fines and up to five years imprisonment, or both. The much-hyped General Data Protection Regulation (GDPR) that was enforced on May 25 specifies that the supervisory authority must be notified of a breach within 72 hours of its discovery and failure to do so could carry hefty consequences of up to up to 4% of annual global turnover or €20 Million.

Empowering Security Teams to Become Collaborative Across the Organization

As the regulatory landscape becomes more complex, security teams will have to step up as will company executives. It will require businesses to have much more than a plan in place and to be able to assemble what has occurred with immediacy if they are to disclose quickly and without incurring other areas of liability.  Businesses need to have an automated way to obtain a “single source of truth” that draws feeds from security tools, social media and other company collaboration tools for a complete view of breach-related activity.

The picture that is emerging for security teams is that data breaches need to be elevated to a business level immediately and in a way that limits potential complications surrounding the breach.  Without tooling for collaborative and secured communications businesses will face enormous legal and regulatory challenges not to mention reputation and business continuity issues as they struggle to fulfill disclosure obligations.

By Evelyn de Souza

Evelyn de Souza

Evelyn de Souza focuses on developing industry blueprints that accelerate secure cloud adoption for business as well as everyday living. She currently serves as the Chair of the newly formed Cloud Security Alliance (CSA) data governance and privacy working group. Evelyn was named to CloudNOW's Top 10 Women in Cloud Computing for 2014 and SVBJ’s 100 Women of Influence for 2015. Evelyn is the co-creator of Cloud Data Protection Cert, the industry's first blueprint for making data protection "business-consumable” and is currently working on a data protection heatmap that attempts to streamline the data privacy landscape.

The Lighter Side Of The Cloud - Day 5
The Lighter Side Of The Cloud - Defriend
The Lighter Side Of The Cloud - The Cloud Conclusion
The Lighter Side Of The Cloud - Recovery Backup
startup tech comic series
Multi or Hybrid Cloud, What’s the Difference?

Multi or Hybrid Cloud, What’s the Difference?

Multi Cloud You’ve likely heard about the latest trend in cloud computing commonly referred to as multi-cloud, and it is ...
Winning the data intelligence game

Winning the data intelligence game

Data intelligence A case can be made that every company is now a data company. But, it is the effective ...
The Cloud Has Your Data (Whether You Like It Or Not)

The Cloud Has Your Data (Whether You Like It Or Not)

Cloud Cleanup Anyone? Following on where we left off from my last two articles now we shift focus to what ...
Everyone Has Data, but the Ones Who Can Optimize It Will Be the Winners

Everyone Has Data, but the Ones Who Can Optimize It Will Be the Winners

Big Data Strategies Data is ubiquitous, but success apparently isn’t. Companies using big data strategies are running headlong into an 85 ...
The 3% Edge: How Data Drives Success in Business and the Olympics

The 3% Edge: How Data Drives Success in Business and the Olympics

Data Drives Success in Business A recent Bloomberg BusinessWeek article entitled “The Tech Guy Building Wearables for America’s Olympians” profiles ...
Malware Will Cripple Cloud And IoT Infrastructure If Not Contained

Malware Will Cripple Cloud And IoT Infrastructure If Not Contained

The Malware Cloud Concern This year we’ve had two cyber attacks in which malware was used to cripple government computer ...
Chris

How to Avoid Becoming Another Cloud Security Statistic

Cloud Security Statistic Last year, Gartner predicted that, by 2020, 95 percent of all cloud security failures will be caused ...
15 Promising Cloud-Based Video Conferencing Services

15 Promising Cloud-Based Video Conferencing Services

Cloud Video Conferencing Services We have put together a compilation of some of the best cloud based conferencing services for businesses. The cloud video conferencing services market is expected to reach US$ 6.40 Billion by 2020 from the current $3.31 ...
8 Cloud Characteristics Every ERP System Needs

8 Cloud Characteristics Every ERP System Needs

ERP System Cloud-based ERP systems offer many benefits to a growing organization. And those benefits are catching on in a big way in recent years. In fact, according to the RightScale State of the Cloud 2016 Survey, which has collected ...
Gartner’s Top 10 Predictions For IT In 2018 And Beyond

Gartner’s Top 10 Predictions For IT In 2018 And Beyond

Gartner’s Top 10 Predictions For IT In 2018 In 2020, AI will become a positive net job motivator, creating 2.3M jobs while eliminating only 1.8M jobs. By 2020, IoT technology will be in 95% of electronics for new product designs ...
real time hacking attacks

Live Real Time Hacking and Ransomware Tracking Maps Online

Real Time Hacking Attacks We've recently covered a few real time hacking maps but have decided to extend the list based on the recent ransomware activities with some additional real time hacking attack and ransomware tracking maps. Ransomware refers to malicious ...
[Free White Paper] Global Mid-Year Threat Landscape Report > Dive into the three major threats of mid-2018

[Free White Paper] Global Mid-Year Threat Landscape Report > Dive into the three major threats of mid-2018

[Free WhiThe use of unknown or unpatched software vulnerabilities in advanced attacks is key to threat actors, as it allows them to infiltrate organizations or distribute malware en masse to vulnerable systems. Download the free white paper now to learn ...