Skip to content

Menu

LexBlog, Inc. logo
NetworkSub-MenuBrowse by SubjectBrowse by PublisherJoin the NetworkGet StartedSubscribeSupportContact
Search
Close

Data security is top driver for information governance

By Jim Merrifield on April 21, 2016
Email this postTweet this postLike this postShare this post on LinkedIn

A recent Advice from Counsel study sponsored by FTI Technology, entitled “The State of Information Governance in Corporations,” found data security to be the top driver for information governance initiatives. The purpose of the study was to better understand the health and success of information governance programs within corporations. The respondents included approximately 25 in-house lawyers who were interviewed from Fortune 1000 corporations and have responsibilities that focus on e-discovery and information governance.

The respondents broke data security down into four key areas:

  1. Securing sensitive personally identifiable information for clients, patients, and employees. Across all industries, respondents acknowledged a sense of responsibility for protecting the sensitive information of their customers and employees.
  2. Securing sensitive company intellectual property.
  3. Creating a tiered security network to protect against data breaches.
  4. Developing protocols and systems to ensure secure access to the network for partners and other approved third-party providers.

Categorizing data security into these four buckets can help companies prioritize internal projects and continue to make forward progress. The key is to break down large projects into smaller and more manageable ones that are easier to accomplish.

Some projects companies could consider this year include:

  • Identifying where sensitive company intellectual property is stored
  • Conducting an inventory of data repositories and documenting access permission levels
  • Protecting customers’ sensitive data, including credit card information, social security numbers, etc.
  • Ensuring third-party providers sign a nondisclosure agreement (NDA) if it’s known they will have access to sensitive company data, in particular customer data

It’s true that some of these projects may require the purchase of new technology, engagement of other counsel, and comprehensive training. However, it’s certainly well worth the effort.

Photo of Jim Merrifield Jim Merrifield

Jim Merrifield is Robinson+Cole’s Chief Data Officer, a member of the Data Privacy + Cybersecurity Team, and a non-attorney contributor to the Data Privacy + Cybersecurity Insider blog. He has spent nearly 20 years helping organizations of all sizes, including law firms and…

Jim Merrifield is Robinson+Cole’s Chief Data Officer, a member of the Data Privacy + Cybersecurity Team, and a non-attorney contributor to the Data Privacy + Cybersecurity Insider blog. He has spent nearly 20 years helping organizations of all sizes, including law firms and Fortune 500 companies, develop and implement practical information governance strategies, policies, and best practices. Jim is a well-respected expert in the information governance industry. With an extensive background in policy development and enforcement, enterprise program deployment, and technology solutions, he has earned a strong reputation as a knowledgeable practitioner and reliable consultant. His deep understanding of the space is reflected by his many publications, lectures, and consulting services for top-tier companies and law firms. Jim holds a bachelor degree in Legal Studies from Quinnipiac University and is a certified information governance professional (IGP).

Jim’s innovative thinking and commitment for the industry has enabled him to create the popular podcast, InfoGov Hot Seat, a platform for candid conversations featuring practitioners, consultants and solution providers – offering valuable perspectives to listeners about legal technology and managing information as an asset.

Read more about Jim MerrifieldEmail
Show more Show less
  • Posted in:
    Corporate Governance and Compliance, E-Discovery, Privacy and Cybersecurity
  • Blog:
    Data Privacy + Cybersecurity Insider
  • Organization:
    Robinson & Cole LLP
  • Article: View Original Source

Call us at 1-800-913-0988 or email sales@lexblog.com.

Facebook LinkedIn Twitter RSS
The Library at LexBlog
  • About LexBlog
  • The Field We Built
  • Library at LexBlog
  • Our Beliefs
  • Our Team
  • Contact LexBlog
  • Disclaimer
  • Editorial Policy
  • Terms of Service
  • Get Started
  • Publishing Solutions
  • Compass
  • Submit a Request
  • Support Center
  • System Status
Copyright © 2026, LexBlog, Inc. All Rights Reserved.
Law blog design & platform by LexBlog LexBlog Logo