Story image

Why you can't afford to ignore data breach legislation

16 Apr 18

As more countries adopt data privacy legislation such as the European Union’s GDPR, businesses are under more pressure than ever before to keep customer data secure – and they can’t afford to ignore it.

That’s according to enterprise tech provider Intralinks, whose senior vice president of sales for Asia Pacific and Japan, Allan Roberson, believes that the costs of a data breach are high.

Those costs include financial losses and damage to an organization’s reputation, but with breach legislation those damages can also include fines and penalties.

“New Zealand’s Privacy Commissioner has mooted the idea of a NZ$1 million fine for a company that experiences a data breach. This highlights the value of data, the costs of leaving it inadequately protected, and the risk to businesses that don’t take data security seriously,” he explains.

Of course, New Zealand isn’t the only country looking to put legislation in place. Australia’s Privacy Act (Notifiable Data Breaches) legislation (NDB) takes a similar approach.

“Given the high stakes involved in data security, companies need to retain as much control as possible and to know that their customers’ data is secure. They can’t leave security up to chance and it’s no longer good enough to leave it purely in the hands of the IT team. Information security must be a board-level issue with companies’ security posture mandated by senior leadership,” Robertson says.

“Even if a company isn’t subject to NDB or GDPR legislation, it’s impossible to overstate the value of retaining full control and visibility into where data is stored, who can access it, and what they can do with it.”

While it’s easier to keep information secure when it’s inside a firewall, businesses need to know what happens to that information once it leaves the firewall. These situations will be more common as companies do business with partners and customers across international borders.

They need to define a new global perimeter that protects this information to a level that meets international data privacy requirements, the company says.

“This requires businesses to implement information security measures that put the power of protection back in their hands. For example, they need to know where their encryption keys reside to protect their confidential data in the cloud, as well as how sensitive and confidential information is consumed, downloaded, and edited at the file level, no matter where it is in the world.”

Cofense launches MSSP program to provide phishing defence for SMBs
SMBs are highly susceptible to phishing attacks, and often lack the resources necessary to stop advanced threats
Hillstone CTO's 2019 security predictions
Hillstone Networks CTO Tim Liu shares what key developments could be expected in the areas of security compliance, cloud, security, AI and IoT.
Can it be trusted? Huawei’s founder speaks out
Ren Zhengfei spoke candidly in a recent media roundtable about security, 5G, his daughter’s detainment, the USA, and the West’s perception of Huawei.
Oracle Java Card update boosts security for IoT devices
"Java Card 3.1 is very significant to the Internet of Things, bringing interoperability, security and flexibility to a fast-growing market currently lacking high-security and flexible edge security solutions."
Sophos hires ex-McAfee SVP Gavin Struther
After 16 years as the APAC senior vice president and president for McAfee, Struthers is now heading the APJ arm of Sophos.
Security platform provider Deep Instinct expands local presence
The company has made two A/NZ specific leadership hires and formed several partnerships with organisations in the region.
Half of companies unable to detect IoT device breaches
A Gemalto study also shows that the of blockchain technology to help secure IoT data, services and devices has doubled in a year.
Stepping up to sell security services in A/NZ
WatchGuard Technologies A/NZ regional director gives his top tips on how to make a move into the increasingly lucrative cybersecurity services market.