Presented by:
Robin Basham, CEO, Founder, EnterpriseGRC Solutions
Warning, this presentation was created in 2017.
Most content is still relevant.

All that’s sure in life is someone has already lost your data

Designing data strategy is hard

Defining the people who will use that data, even harder

We already see real-world data problems (for example, laptops banned in international flights).

Companies need to use an Enterprise Digital Rights Management (EDRM) to control access and use of information in stand-alone files and emails (known as ‘unstructured’ information). This technology (also called Information Right Management or IRM), enables safe data in transit and at rest. Unlike simple encryption, EDRM assigns rights that travel with the data as opposed to simply assigning rights on the system where it's stored.

Ask yourself, “What are the technologies I need?”

The truth about our private information is we need control over its perpetual use. The companies receiving our data may not have the knowledge, incentive, or bandwidth to implement security for our needs.  Technology must empower the citizen to engage in fearless communication, unencumbered by the clunky mechanics of encryption.

We need to tag our assets, restrict them, call them back, and even delete them from locations where they have been stolen or simply wrongly maintained.

Data Centric Security Products Enable Privacy (GDPR, SOC2, NIST 800-53r4 App J, NIST 800-171, CIS CSF, HIPAA, FISMA)

What is the General Data Protection Regulation – GDPR?

The law applies to all citizens under the European Convention. However, it is equally relevant to any US or other foreign national who wishes to do business with most Europe and Australia.

The Seven Principles of GDPR

  1. Privacy by Design
  2. Data Protection Officer
  3. Opt-In for data collection
  4. Right to be forgotten
  5. Breach notification
  6. One-stop shop
  7. Fines and Enforcement: Violations result in 20 million Euros or 4% of Global Turnover
Main Menu