Compliance & Legislation

APRA CPS 234: An Overview of the Cyber Security Standard and How to Apply it

The Australian Prudential Regulation Authority (APRA) regulates Australia’s financial services industry and, as such, has responsibility for compliance and governance over all aspects of the finance industry. This is a wide and complex remit, since financial services cover a wide range of specific business types, so when they announced their draft standard for cyber security last week, APRA CPS 234, it immediately begs the question, how can it be applied?  

Read More

6 ways Data Breach Notifications will improve IT Security Operations

As the GDPR deadline looms there are still programmes and projects underway in many organisations to achieve compliance – both private and public sector.  It is easy to characterise GDPR and its requirements (including for data breach notifications) as a boon for consumers and a challenge for businesses or a marketing opportunity for consultants and lawyers and a life sentence for security teams.

Read More

GDPR Data breach notification services: 9 questions to ask service providers

When organisations investigate their obligations under GDPR one of the most significant challenges is the mandatory nature of the breach notification process. Organisations have 72 hours to inform regulators and notify data subjects as soon as possible thereafter. This blog look at some key considerations when researching GDPR Data breach notification service providers.

Read More
1 2 3