How Secure Is Your Data?
There are many great lists that you would like to see your corporation listed on, but I will bet this isn’t one of them: Krebs on Security. How you interact with your CISO or CIO to manage your company’s security risks is crucial in keeping you off this dreaded list. You may think that you have everything locked down, but you are facing an indomitable foe every day – clever cybercriminals. Who is going to be responsible for handling the legal consequences in the aftermath of an incident? Just look in the mirror.
It is a heavy responsibility to keep customer, financial, intellectual property, personally identifiable and legal information safe from breach. Cisco’s Annual Security Report in 2016 said that 65 percent of organizations feel that they face a significant level of security risk. Additionally, Bomgar’s Vendor Vulnerability Report stated that 55 percent fear a breach resulting from vendor access will occur over the next year, while 20 percent believe the same will happen at any time after one year. A practical reminder – be sure your technical teams are requiring all vendors to adhere to the highest security standards and have a protocol to immediately inform you of any breach.
Creating a detailed map of all of the organization’s data repositories is critical. Unless the organization knows what it has, where it resides within the organization and who is responsible for the data, it cannot respond quickly or effectively to data loss. By creating a detailed data plan with your CIO, CISO and internal stakeholders, you can determine what types of information you have, where it lives and who has access to it inside and outside of your organization. If your organization doesn’t yet have an incident response (IR) plan, insist on it before you experience a cyber or other security breach. Part of that IR plan will outline what steps must be taken to rapidly investigate where and how the breach occurred; what data, if any, was compromised; if the breach is ongoing; and how to remediate it. This is where having a data map, including the locations of sensitive legal and matter, becomes critical.
BYOD: Your Recurring Nightmare
Continue Reading Are You and Your CIO in Sync?: Alignment on relevant industry trends significantly impacts IT’s capacity to satisfy a legal department’s needs