logo

GDPR and ISO 27001 Mapping: Is ISO 27001 Enough for GDPR Compliance?

GDPR and ISO 27001 are two significant compliance standards that have a lot in common. Both of them aim to strengthen data security and mitigate the risk of data breaches, and both of them require organizations to ensure the confidentiality, integrity and availability of sensitive data. ISO 27001 is one of the most detailed best–practice … Continued

Data Discovery Game

It’s time to bring your sensitive data under control!

GDPR Data Breach Notification: How to Report a Personal Data Loss

Originally published April, 2018 and updated June, 2019 The General Data Protection Regulation (GDPR) is a global standard designed to codify and extend the rights of data subjects. It came into force on May 25, 2018, replacing the European Data Protection Directive 95/46/EC (DPD) effective now. Fines for GDPR compliance failures can reach 20 million euros or more — … Continued

How to Manage File System ACLs with PowerShell Scripts

Many organizations with a Microsoft Windows environment rely on NTFS as the main file system for their storage devices that contain sensitive data. It is the easiest way for users to work with files. In order to implement a least-privilege model, which is a best practice for system security, IT security specialists and system administrators … Continued

How to Get Your Organization GDPR-Ready: 6 Practical Tips that Work

May 25, 2018 — the day when the GDPR officially comes into effect — is steadily approaching. One of the most stringent regulations to date, the GDPR aims to ensure the secure and lawful collection, processing and storage of the personal data of EU citizens. So it’s no wonder that FUD (fear, uncertainty and doubt) … Continued

Introducing Netwrix Auditor Data Discovery and Classification Edition

Today, Netwrix Corporation released a new version of Netwrix Auditor – Data Discovery and Classification Edition. The new edition provides complete visibility into where sensitive files are, what content is inside them, who can access these files and who actually uses them, so organizations can mitigate the risk of data breaches and prove the effectiveness of their … Continued

General Data Protection Regulation (GDPR) Penalties: What Should You Expect?

The General Data Protection Regulation (GDPR) is a global standard that gives data protection authorities more enforcement power than they had under the previous Data Protection Directive 95/46/EC (DPD), as well as the power to levy more substantial fines. While DPD did not specify the exact amount of administrative fines for compliance violations, the maximum … Continued

GDPR Sticks and Carrots: 5 Reasons Why It Won’t Kill You

Most media coverage of the GDPR focuses on the multimillion-dollar fines businesses can face if they fail to properly protect regulated data. Vendors and suppliers play the same fear card to boost sales of their products and services. Let’s take a look at some of the GDPR carrots that are ignored in all the fear-mongering about … Continued

[Infographics] Top Cloud Security Risks for Healthcare

The healthcare industry has always struggled with data security. Because healthcare organizations store enormous amounts of sensitive data and are subject to stringent compliance regulations, they have to make security their number one priority. Therefore, they have long been skeptical about new technologies that could put data at risk — including cloud technologies. However, everything … Continued