Security & Risk | Impact Makers

GDPR is Here! What is it and How Does it Affect Your Compliance Management Program?

If you’ve been a privacy professional at any point in the last few decades, your head is spinning with the myriad of privacy laws and regulations in the U.S. and abroad. Some examples are the European Data Protection Directive of 1995, the strengthening of that...

InfoSec Can Be Taxing, So Here’s a Taxonomy

Information Security can sometimes feel like death by documentation, like a bunch of red tape just to keep regulators and auditors at bay. Throw in differences in lexicon, and seeing how all the many pieces fit together can be quite difficult. Getting everyone,...

Privacy and Security: What’s the Difference?

Article Summary: Security controls are put in place to control who can access the information, but privacy controls are for when and what they can access. For example, doctors at a nationwide primary care chain most likely have security access to each patient’s...

[VIDEO] Essential Steps to Strengthening Cybersecurity

Many organizations know they must have the basics: hire a CISO, perform a risk assessment, and find security vendors to fill up the holes. Unfortunately, these are often mere boxes to check. Impact Makers’ former CISO Cathie Brown offers a few simple...

Organizational Risk Management Is Not Just About Compliance

Organizational risk management is too often treated as a compliance issue with complex rules that result in a back office tracking of risks that don’t see the light of day.  This presentation contrasts a traditional view of organizational risk management with an...