A company with a huge database of facial images informed its law enforcement customers this week that it suffered a data breach.
Cybersecurity
Achieving Compliance with Third-Party Risk Management Regulatory and Framework Requirements
Measuring compliance against third-party risk management requirements is complex and time consuming; and with growing numbers of data breaches originating with third parties and all the regulatory activity that comes as a result, it never lets up.
Reports: Bieber, Twitter’s Dorsey among 10.6M affected by MGM Resorts hack
Pop star Justin Bieber and Twitter CEO Jack Dorsey were among 10.6 million MGM Resorts guests to have their personal information exposed in a data breach last year, according to multiple reports.
Treasury Secretary sets goal for cryptocurrency regulation
Taking into account the Trump administration’s trade concerns involving cryptocurrencies, the Treasury Department has announced it will roll out new regulations later this year.
More than minor changes? Assessing the latest CCPA updates
The business community was already rushing to comply with the CCPA’s Jan. 1 effective date. But does this latest change ease the way to compliance or just raise more questions?
Equifax indictment and the making of a Chinese cyber-attack
The DOJ announced four members of the Chinese military have been indicted on charges of hacking into the computer systems of Equifax, ultimately resulting in the largest-ever breach of consumer data. From an ERM standpoint, the indictment offers an inside look at the making of a Chinese cyber-attack.
NIST seeks comment on ransomware, cyber-attack guidance
The National Institute of Standards and Technology is seeking input on a trio of draft guidance published in the past week. Two of the drafts address ransomware attacks, and the third addresses protecting against cyber-attacks in the supply chain.
10 things you need to know about CCPA compliance
As the CCPA enforcement deadline arrives, here are some boxes you’ll need to make sure your company has checked.
First four ‘Excellence in Compliance Awards’ finalists revealed
Compliance Week is proud to announce its first four finalists for the “Excellence in Compliance Awards,” a newly formed program that recognizes individual achievement in one of 13 categories relating to risk and compliance.
Germany’s dual approach to data regulation under the GDPR
Germany is staying ahead of the game with an advanced crackdown on data privacy and competition law violations.


