Services

As data security breaches are becoming more of a daily occurrence at Universities, Government Agencies and Corporations across the globe, it is crucial for organizations to have up to date security programs that include policies and tools to protect their systems and, more importantly, the private and confidential data that these systems house. The lack of an organization’s IT Data Security program exposes sensitive data to unauthorized parties and lessens the privacy and financial security of individuals. As a result, over thirty states have passed laws that require residents to be notified when their “personal information” is compromised. The new security breach notification law (the “Notification Law”) applies to governmental agencies and to individuals and entities that conduct business in a protected state (each a “Covered Entity”). After the effective date of the Notification Law, a Covered Entity will be required to notify any resident whose personal information was acquired, or is reasonably believed to have been acquired, through a “breach of the security of a system” of a Covered Entity’s computerized database.

Under the Notification Law, “personal information” is equivalent to an individual’s first name or first initial and last name, in combination with one of the following data elements:

  • A Social Security number.
  • A driver’s license number or state identification card number.
  • An account number or credit/debit card number in combination with any required access code to that account or card.

 

To answer this growing problem, APTEC’s Data Security practice developed a strategic approach to provide database security and privacy solutions to mitigate risk against data security breaches. APTEC’s specialty practice enables organizations to define their data security programs and implement technology solutions to protect the sensitive data stored in applications and databases.

APTEC’s Data Security team will work with your organization to develop a comprehensive program, including services that define security policies and those that facilitate the design and implementation of technology solutions that secure data at rest and/or in its archived state.

To learn more about our Data Security Assessment Program Offerings, please feel free to Contact Us for more information.