India’s DoT now requires outsourcing providers in India to capture and store certain call records and system logs at their Indian delivery centers. Outsourcing customers should evaluate their agreements to ensure their information and that of their customers is safeguarded while complying with obligations under the Guidelines.
Organizations are facing a complex patchwork of cybersecurity tools that are not integrated or are too niche. It's time to audit the current security stack, identify gaps and redundancies, and then create a go-forward plan to course-correct.
The use and disclosure of personal data for direct marketing purposes is strictly regulated in Hong Kong with more severe consequences for non-compliance than other breaches of Hong Kong privacy law, and is often found to be significantly more onerous than in other jurisdictions. This article summarises some of the key elements of Hong Kong’s direct marketing regime.
Digital transformation, hybrid work, third-party partnerships, and other factors have weakened security controls. It’s now more likely than not that the adversary is already hiding within the network, and equally as likely that they got in with stolen, now compromised, credentials.
Consumer trust is at an all-time low and data privacy is becoming a core expectation among 89% of consumers. This demands that businesses reevaluate how they treat their customers’ data to ensure they prioritise privacy-focused practices and technology to keep data safe online.
The market for location data is staggering, surpassing $12 billion annually. Yet, it's riddled with privacy pitfalls. Precise location is particularly concerning among the trove of personal data brokers collect.
Criminal gangs behind ransomware attacks will continue to adapt their techniques to maximize their returns. They are increasingly using novel tactics to circumvent traditional security solutions and one of the most significant shifts is that attacks involving data exfiltration are now the norm.
A hybrid cloud environment is the reality for most organizations. Unfortunately, this set up can quickly create issues around both accessibility and security due to the challenges in managing identity across vastly different systems.
Vendor impersonation attack is making the rounds, and what’s new is that the brands and reputations of cybersecurity providers are being leveraged as part of these attacks, where the ultimate goal is to deposit malware into your production environment.
Some predictions for 2023. We will see most security frameworks continue to fail in 2023 for a simple reason: complexity. And the role of CISO will be elevated to be on the board or reporting directly to the CEO.









