The FTC has updated its data security regulations for the financial institutions it regulates under the Gramm-Leach-Bliley Act (GLBA). The FTC’s revised requirements for information security programs, effective June 1, 2023, will now mandate data retention policies and disposal of
Information Governance Group
Information Governance Group, LLC is a specialized organization providing advisory services on information governance, focusing on compliant data retention, data management, defensible disposition, and data security. The group assists clients in creating legally validated records retention schedules, implementing information management policies, and preparing for data security compliance and incident response. Their expertise includes helping organizations manage information risks and costs while maximizing information value. The firm maintains ISO 27001 certification, reflecting adherence to international standards for information security management. Their blog, Information Bytes, discusses practical applications of information governance in areas such as data privacy, security, retention, and litigation discovery.
Latest from Information Governance Group - Page 5
Less Data is (even) More Than Ever
The Puzzle of State PII Breach Notification Statutes
It’s once again time for a summary round-up for the puzzling array of state PII breach notification laws.
Back in 2002, California enacted the first state law mandating notification of individuals whose personally identifiable information (PII) is breached. By 2018…
Less data is more than ever: connecting the dots
Less data is more than ever: The FTC and the reasonable data security program
Less data is more than ever: state-level data security laws for the financial services sector
This series explores how recent changes in U.S. privacy and data security laws are elevating retention schedules and data disposal from merely prudent practices to compliance requirements.
As discussed previously in this series, there’s a shift in U.S. data security…
Less data is more than ever: state PII data security and disposal laws
This series explores how recent changes in U.S. privacy and data security laws are elevating retention schedules and data disposal from merely prudent practices to compliance requirements.
It seems like Data Security 101 to say that there cannot be a…
Less data is more than ever: the CPRA and beyond
This series explores how recent changes in U.S. privacy and data security laws are elevating retention schedules and data disposal from merely prudent practices to compliance requirements.
Today’s companion post explores how the California Consumer Privacy Act (CCPA), without statutory…
Less data is more than ever: the CCPA
This series explores how recent changes in U.S. privacy and data security laws are elevating retention schedules and data disposal from merely prudent practices to compliance requirements.
The California Consumer Privacy Act, effective January 1, 2020, was the United States’…