Changes in the risk and compliance arena are accelerating in the recent years. With these developments it is urgently needed to redefine the place of privacy and the privacy team in this evolving landscape just the same as establishing links with overlapping, adjacent and related areas of risk and compliance.
Myths about an SBOM further exposing an organization to attack or leaking trade secrets hamper an enterprise’s security efforts around visibility and transparency into software assets that could put an entire organization at risk.
During the privacy-last era, consumer trust in brands was repeatedly broken when brands captured, sold, and abused data without consent - even though it was technically legal. To rebuild trust, brands need to change their strategies to be privacy-first instead of last.
The EU Digital Markets Act (DMA) appears headed for adoption in May. Companies providing “core platform services”, as well as those potentially receiving data from such companies, should understand not only what the DMA requires, but also its impact on existing obligations under the GDPR.
Only one third of respondents to a recent survey include business-critical systems, like SAP, in cybersecurity monitoring. And one third of those who do include SAP in security monitoring do not review SAP logs for potential cyber threats.
The DuckDuckGo disclosure is an opportunity to reflect, for individuals and companies alike. As an individual, who defines what privacy means to you? As an organization, is your internal definition of "user privacy" consistent with what your users expect?
Implementing a Zero Trust architecture will help mitigate and ultimately lower the number of successful cybersecurity attacks your organization might otherwise endure, greatly reducing operational and financial risk. Here are five practical steps.
Conti ransomware group has transformed from lone wolves into a globe-spanning pack of well-organized criminals disrupting and casting into disarray government entities, private organizations, and small and medium-sized businesses.
While organizations should prepare for a passwordless authentication-based future, in the interim, companies need to implement a strategy that utilizes as few passwords as possible, including products such as a password manager for business, federation, and privileged access management (PAM).
Security teams need to be vigilant - both on what SaaS services employees are connecting to, and whether those platforms are safe and remains safe for use in the organization.










