UK's Information Commissioner gets expanded powers in Criminal Justice and Immigration Act -- will be able to impose steep fines on organizations

The United Kingdom's Information Commissioner's Office received new authority to levy fines on organizations that "deliberately" or "recklessly" violate the U.K.'s "Data Protection Act", or DPA, of 1998. In a little noticed amendment to the Criminal Justice and Immigration Act of 2008, the 1998 DPA was updated to enable the Information Commissioner to impose serious fines on organizations. This change in the UK's data protection law was spurred by a string of high-profile breaches of personally-identifiable information in the U.K. over the last year, including the large-scale data breach at Her Majesty's Revenue and Customs agency...

Continue Reading

Follow-up on RSA Conference

It was another great RSA Conference this year, with interesting workshops, great exhibitor activity, informative sessions and lots of time to network with customers, partners and fellow employees. My flight was cancelled on Sunday, so I missed the Concordia Workshop on Monday, but the Liberty Alliance Workshop was very interesting. Geisinger Health System had a very nice presentation on how they are using federation to provide improved information to health care providers to improve patient care, particularly in emergency room visits. RSA also made a number of exciting announcements...

Continue Reading

Speaking of Security Podcast #104

Topics: Compliance | Podcasts

Click to Listen/Download (10:14)

Paul Joyal interview's the President of Corporate Integrity, Michael Rasmussen, about "Developing a Sustainable and Cost Effective IT Compliance Program." For the companion white paper, click here. Other RSA resources on this approach can be found at www.rsa.com/compliance.

Continue Reading

Speaking of Security Podcast #103

Comments [2]
Topics: Encryption | Podcasts

Click to Play

EMC PowerPath Encryption with RSA

Happy Cinco de Mayo and welcome to the latest Speaking of Security video podcast. Today Host Paul Joyal speaks with Colin Bailey of EMC and Katie Curtin-Mestre of RSA, The Security Division of EMC, about this new scalable solution that leverages RSA Key Manager for the Datacenter.

Continue Reading

Is it safer to fly or drive? (and why you can't do one without the other)

Kevin Bowers is a Research Scientist at RSA Laboratories. Here are his views on the controversy surrounding REAL ID. What do you think?


I'm getting married this summer and my family will be traveling to the wedding. In order to make the trip, my parents recently renewed their passports. Not because I'm getting married at an exotic destination, but because they live in Montana and have to fly to the wedding. Like several other states, Montana has refused to comply with the requirements of the REAL ID Act of 2005. The Department of Homeland Security (DHS) had threatened to prevent residents from those states from using their state-issued driver's licenses as identification at airport security, effective May 11th. As it happens, the DHS recently granted all states an extension to the May 11th deadline, allowing them additional time to become REAL ID compliant.

Continue Reading

Speaking of Security Podcast #102

Topics: Compliance | Podcasts

Click to listen or download (6:39)

Paul Joyal interview's RSA's Paul Davilman on What is Sarbanes-Oxley & How is it Applicable to IT Security? For additional information on SOX and IT Security, read more here.

Continue Reading

U.S. Congress should pass cyber-crime legislation this year -- when will the House of Representatives finally act?

As I mentioned in a blog post in late October 2007, the IT industry and other stakeholders have been calling for the U.S. Congress to pass legislation that would help empower law enforcement to more effectively investigate and prosecute cyber criminals -- while updating penalties in U.S. criminal code so that the punishment fits the crime. It's stunning to me that the Congress has not yet sent legislation to the President for his signature to address this important issue...

Continue Reading

Speaking of Security Podcast #101

Click here to download/listen (11:23).

In a recent RSA Web Seminar, Juniper Networks' Smitha Murthy and RSA's John Masotta discussed the benefits of an SSL VPN and how best to secure its access with strong authentication. Hear a snippet in this week's podcast or check out the entire replay of the event.

Continue Reading

Dr. Ari Juels

Blog


Shannon Kellogg

Blog


Sean Kline

Blog


Uriel Maimon

Blog

Speaking of Security:
Date: