October 1, 2011 – (Franklin Lakes, NJ) Direct Computer Resources serves as the co-chair of the Finale Subcommittee (SC) and as a sponsor of the Protected Health Information (PHI) Project. The Finale SC, as the name implies, is chartered to generate and organize the final aspects of the project and its report. DCR brings to the project its extensive staff experience in information protection, cyber security, healthcare interests and large project management. ... Read More.
The software is used for the management and testing of databases and database applications, data migration and the protection of sensitive data. It is designed to protect personally identifiable information and other sensitive data by utilizing encryption, masking, de-identification, data substitution and other obfuscation methods. ... Read More.
San Francisco Chronicle, June 1—America's new cyber czar said Wednesday that international law and cooperation — not another treaty — was enough to tackle cybersecurity issues for now. Christopher Painter, coordinator for cyber issues for the U.S. State Department, declined to comment on a Wall Street Journal report Tuesday that said the Pentagon was considering a policy that could classify some cyberattacks as acts of war. He said the report was based on material that had either not been released or discussed yet. He did, however, say that U.S. President Barack Obama's recent cybersecurity strategy covered a myriad of different aspects, ranging from international freedoms to governance issues and challenges facing the military. "We don't need a new treaty," he told The Associated Press as he arrived for an international cybersecurity summit in London. "We need a discussion around the norms that are in cyberspace, what the rules of the road are and we need to build a consensus around those topics."
Joe Buonomo, Direct Computer Resources’ President and CEO (left) and Chris Painter, USA's new Cyber Security Czar (right) in Washington, D.C. ... Read More
Joe Buonomo, DCR's President and CEO, and Larry Clinton, ISA's President and CEO, met with the European Commission’s representatives in Brussels for the second time in two years and discussed the importance of the implementation of a pragmatic program supporting the Cyber Defense at a global level.The EC team (Special Unit A3) agreed with the idea of a strategy developed at a global level, and the EU confirmed the adoption of such a program... Read More
The Internet Security Alliance (ISA) has joined the American National Standards Institute (ANSI), via its Identity Theft Prevention and Identity Management Standards Panel (IDSP), in partnership with the Shared Assessments Program and its Healthcare Working Group, for a new initiative on the financial impact of unauthorized access to protected health information (PHI). Ed Stull from Direct Computer Resources will head the Final Subcommittee charged with overall integration and creation of a final report ... Read More.
A new project—led by the American National Standards Institute (ANSI), via its Identity Theft Prevention and Identity Management Standards Panel (IDSP), in partnership with the Shared Assessments Program and its Healthcare Working Group—has been launched to explore the financial impact of unauthorized PHI access. The goal for the “ANSI/Shared Assessments PHI Project” is to identify frameworks for determining the economic impact of any disclosure or breach of protected patient data.
DCR's chief data privacy software architect is on the advisory panel for the ANSI/Shared Assessments PHI Project, which met for the first time last week. The initiative brings together professionals from across the industry: data security companies, identity theft protection providers and research organizations, legal experts on privacy and security, standards developers, and others. ... Read More.
DCR CEO Joseph Buonomo will be one of eight panel participants scheduled to discuss the "Business of Security" at the RSA Conference in San Francisco's Moscone Center, February 16, 2011 (11:00 a.m.) The panel is slated to review the results of a study by ANSI and ISA on why enterprise cyber security investment is not keeping pace with the growing threats. ... Register Here
Direct Computer Resources, Inc. (DCR) president Joseph Buonomo led a delegation from the Internet Security Alliance (ISA) to Brussels, Belgium, this week in response to a request from the European Commission (EC) in their efforts to create a public/private alliance to create a sustainable system of worldwide cyber security and information protection. Mr. Buonomo, an ISA Board Member, was joined by ISA president Larry Clinton. ... Read More
Joe Buonomo, Direct Computer Resources’ President and CEO (second from right) and Larry Clinton, President of the Internet Security Alliance (far left) met with officers of the European Commission in Brussels to discuss how the United States and the 27 European Union states could strengthen their cross-border partnership on issues regarding cyber security and information protection. Meeting participants also included Andrea Servida, Deputy Head of Unit A3, Internet, Network and Information Security (second from left) and Joern-Uwe Heyder (far right), Second National Expert, Unit A3, Scientific/Technical Project Officer, Internet: Network and Information Security. Also in attendance was DCR’s European business development manager. ... Read More
Washington, D.C. (April 5, 2010) —The American National Standards Institute (ANSI) and the Internet Security Alliance (ISA) released a new report and program designed to assist private sector organizations to better analyze the true economic costs of cyber incidents and a pragmatic program to prevent and mitigate these attacks at the National Press Club on March 31st.
Washington, D.C. (December 3, 2009) — In the company of Internet Security Alliance (ISA) Board Members, Direct Computer Resources President and CEO Joseph Buonomo detailed how the Obama Administration can best implement comprehensive policies to create a sustained system of cyber security during a news conference at the National Press Club on December 3 and in meetings with senior White House staff. ... Read More
(Dec. 3, 2009) — DCR President and CEO Joseph Buonomo addresses the National Press Club about Cyber Security with ISA President Larry Clinton (seated, right).
(June 2009) — As part of a recent Internet Security Alliance Board Meeting, Direct Computer Resources President and CEO Joseph Buonomo greeted Rep. Bennie Thompson (D-Miss.), Chairman of the Homeland Security Committee. DCR officials also spent time discussing cyber security issues with Rep. Anthony Weiner (D- NY); Rep. Jim Langevin (D-RI); Sen. Joseph Lieberman (ID-CT); and Rep. Mac Thornberry (R-TX).
The proposed legislation "is a milestone....” Information technology providers and politicians on both sides of the aisle are applauding the Obama administration for wading into the complex issue of cybersecurity. The administration issued its package of Internet security legislative proposals last week, spurring hopes that the U.S. Congress would approve a comprehensive national program this year... Read More
New rules possible for patient de-identification. — The U.S. Department of Health and Human Services (HHS) is about to rule whether health care entities will need to notify patients if their de-identified data — patient data that has been stripped of all potential for identifying individuals, which is often used for research and development — is breached. ... Read More
New Dark Reading report outlines threats posed to databases by end users — and how to protect your data — While today's headlines might be full of compromises and SQL injection attacks, most database leaks are still caused by end users who have legitimate access to the data, experts say. Yet, according to "Protecting Your Databases From Careless End Users," a new report published today by Dark Reading, many enterprises still don't do enough to protect data from accidental leaks or insider theft. ... Read More
AMA has asked the BlueCross BlueShield Assn. to meet regarding the data breach — A missing computer belonging to a BlueCross BlueShield Assn. employee also includes Social Security numbers of more than 100,000 physicians — and all the data are unencrypted. ... Read More
Obama administration to strictly enforce new rules that will plug some gaping holes in our federal health privacy laws. — Prescriptions, and all the information on them — including not only the name and dosage of the drug and the name and address of the doctor, but also the patient's address and Social Security number — are a commodity bought and sold in a murky marketplace, often without the patients' knowledge or permission. ... Read More
Top executives were less aware of specific security incidents at their companies than other C-level executives, and are more confident that data breaches can be easily avoided. — The Ponemon survey of 213 CEOs, CIOs, COOs and other senior executives reveals what appears to be a perception gap concerning information security issues between CEOs and other senior managers. ... Read More
Data Quality News, UK: Credit crunch could lead to data quality breach. — The credit crunch has resulted in increasing volatility in the financial sector prompting a technology expert to warn companies to go to greater lengths to prevent the compromise of data quality and security. ... Read More
Denver Post: Your brand and reputation may be seriously compromised. — Initial costs of a security breach might amount to $90 to $305 per person, and that doesn't include the cost of subsequent lawsuits. ... Read More
USA Today: Thieves direct their resources to weak links. — Sensitive personal data is being systematically stolen from companies, government agencies, colleges and hospitals. ... Read More
Privacy Rights Clearinghouse: Data breaches in the U.S. — Over 230 million data records of U.S. residents have been exposed due to security breaches from January 2005 through June 2008. ... Read More
Few organizations are equipped to deal effectively with new threats, rules and regulations. Here's what the Corporate Executive Board suggests they should do about it. ... Read More
The ISA/ANSI Free Report — "The Financial Management of Cyber Risk: An Implementation Framework for CFOs" (free registration required). Industry standard-bearers discuss the risks and associated costs tied to much-needed data security measures. Download Here.
Securosis data privacy chief analyst Rich Mogull discusses the evolution from “noisy” to “quiet” security threats affecting company data and the budgetary competition that challenges required security measures. Mogull adds details on how to build a justification model to help determine where, and how much, to invest in protecting your information assets. ... Download Here
Scott Borg, director and CEO of the non-profit US Cyber Consequences Unit, is a leading expert on the economic impact of cyber attacks. In this incisive interview, he discusses the economic impact of cyber attacks, increasing public-private entity cooperation, and his advice for IT professionals. ... Read More
Global data privacy attorney Brian Hengesbaugh, discusses top security/privacy issues for organizations today, the greatest global challenges for US-based firms, and what organizations can do now to ensure greater compliance. ... Read More
Healthcare CFO’s must work more effectively with IT to secure data. ... Read More
A new study estimates credit and debit card issuers spent $252.7 million in 2009 replacing more than 70 million cards compromised by data breaches. ... Read More
A very detailed review of pending legislation affecting data privacy issues. Which will affect your business operations? ... Download Here
The European Commission has moved forward in its plans to negotiate a data-protection deal with the US that would safeguard EU citizens' personal information when it is transferred to the US in the course of criminal or anti-terrorist investigations. ... Read More
Many CFOs think that the IT department should handle data security and don't realize that the issue falls under their purview. However, the report, “The Financial Management of Cyber Risk: An Implementation Framework for CFOs,” from the Internet Security Alliance and the American National Standards Institute makes clear that financial professionals are in a prime position to provide the facility-wide strategic leadership required to secure patient data. ... Read More
Melissa Hathaway, who led President Obama's 60-day cyberspace review last year, has now become involved in a variety of IT security ventures. In this article, she offers a review and analysis of nine key pieces of legislation to watch. ... Read More
How much do data breaches really damage organizations financially – and why don’t we want to hear about it? ... Read More
The story continues: Hackers installed spying software on Heartland's computer network in 2008, giving them access to data on the systems that process Visa, MasterCard, American Express and Discover Card transactions. The settlement will cover alleged losses MasterCard issuers took as a result. ... Read More
The fast growth of social-networking sites containing users' personal information is drawing concern from some payment data-security experts who say the risk of exposing consumers' sensitive data is rising ... Read More
Securosis analyst Rich Mogull discusses five key points of Data Masking ... Read More
Goldman Sachs exec took propriety computer programs that the financial giant uses to make rapid trades in the financial markets ... Read More
Herold’s podcasts convey critical information about using production data for testing and masking and de-identification methods... Read More
Fifty-nine percent of laid-off staff admitted to stealing confidential information.... Read More