No Standing for Fear of Future Harm: Another Consumer Data Breach Class Action Dismissed

The U.S. District Court for the Southern District of Texas dismissed a class action data breach lawsuit filed by Beverly T. Peters against St. Joseph Services Corp. The reason is familiar in consumer class action data breach cases: fear from the heightened risk of future identity theft or fraud from a data breach does not give …

Executives & Board: The conversation security leaders need to have about Amy Pascal’s departure

This is an excellent article that covers a very important topic you need to consider. You — as in Executives and Board Members of Companies all around the world. Stop, close your eyes, and ask yourself these three questions that are in this article: “What did you think of the announcement?” (i.e., put yourself in …

7 Ideas for Security Leaders – What Do You Think About My Suggestion?

Many thanks to CSO Online and Michael Santarcangelo (@catalyst) for including my suggestion as one of 7 inspiring ideas for small changes that lead to big improvements in both security posture and leadership within organizations. The article is 7 Ideas for security leaders. Here is a teaser from my suggestion on slide 5 but please go check out …

Happy Data Privacy Day!

What are you doing to observe it? Today is Data Privacy Day! If you have been wondering “what is Data Privacy Day?” then this is your lucky day because not only is today Data Privacy Day, but here is the answer and an explanation for why it really matters to you and your company’s future …

Update/Clarification: Washington AG Seeks Data Breach Law That Ends Blanket Exemption for Encrypted Data

This update/clarification post explains how the proposed Washington state data breach notification law is really treating encrypted data and how it may actually be expanding the data breach safe harbor exceptions under that law.

Three Takeaways from the Target Data Breach Ruling – Norse DarkMatters

Read my latest post on Norse’s DarkMatters: Three Takeaways from the Target Data Breach Ruling  

Boards Had Better Start Paying Attention to Cybersecurity

Yesterday Forbes featured an excellent article that explained why it is important for companies to create Board-level committees to focus exclusively on the issue of cybersecurity. Here is just a teaser but I encourage you to read the entire article. Step one for every board is to understand that it is supposed to be offering oversight on …

#SonyHack: Will Executives’ Embarrassing Emails Better Motivate Cybersecurity Change?

Sitting in the Miami airport at 5:00 am I am reading news updates on the #SonyHack and a thought just occurred to me: Previously, many of us preaching the “you better take your company’s security seriously” message to the C-Suites have been wondering if it would take a court decision finding C-Levels or Board members …

#SonyHack shows there are no “safe secrets” in the corporate world – what do you do?

The #sonyhack will change the way the corporate world operates in many ways that we cannot even yet imagine. Yes, there are obvious data security implications that I usually drone on about, but there is another change that we may see come about. The now outdated idea that internal corporate secrets will remain corporate secrets. You know, …

Check out my first post on Norse’s DarkMatters > Sony Hack: Where Do We Die First?

Hey everybody, go check out my first post on Norse’s DarkMatters blog — yeah, you know, Norse with the awesome Live Cyber Attack Map! Now that you’re mesmerized by the map, here’s the post and please share it! Sony Hack: Where Do We Die First?