The Endpoint Imperative: Global Security Compliance. Are you ready?

NCOIC Discusses e-Discovery and Cloud Computing

By G C Network | March 22, 2010

Last week during its weekly meeting, the NCOIC Cloud Computing Working Group (CCWG) examined some of the legal aspects surrounding electronically stored information. With government use of cloud computing expected…

Take the survey, get a book!

By G C Network | March 20, 2010

“Cloud Musings”, in cooperation with Aditya Yadav & Associates, is conducting a new cloud computing survey. This short, eight (8) question poll, is designed to gauge general corporate plans around…

Army Knowledge Leaders Study Cloud Computing

By G C Network | March 12, 2010

This week it was my pleasure to explore cloud computing with Army Knowledge Leaders (AKL) ! AKL is an intensive 2 year experience of training and work rotations designed to develop leadership,…

Northrop Grumman & Lockheed Martin Selected for CANES

By G C Network | March 9, 2010

   Last week the US Navy awarded initial CANES contracts to Northrop Grumman and Lockheed Martin. Navy officials place the contract values at $775M for Northrop and $937M for Lockheed.…

NCOIC Analyses Cloud Computing With SCOPE

By G C Network | February 24, 2010

Last week, the Network Centric Operations Consortium (NCOIC) Cloud Computing Working Group (CCWG) started it’s work on cloud interoperability in earnest. The first step in their process is the completion…

TASER Awarded: The NGA ASP/ISP Transition Contract

By G C Network | February 17, 2010

The National Geospatial-Intelligence Agency (NGA) has awarded the Total Application Services for Enterprise Requirements (TASER) contract to: Accenture National Security Services, LLC BAE Systems Information Technology, Inc. The Boeing Company-Autometric,…

EuroCloud Expands Quickly

By G C Network | February 16, 2010

Last October I introduced EuroCloud as a pan-European business network with the goal of promoting European use of cloud computing.  In the intervening three months, the organization has grown to…

Joining NJVC: A Professional Plateau

By G C Network | February 8, 2010

This week I begin a new and exciting phase of my professional career by joining the NJVC Enterprise Management Team! For those unfamiliar, NJVC is one of the largest information…

DoD Deputy CIO on Secure Information Sharing

By G C Network | February 3, 2010

Today on Federal Executive Forum, Dave Wennergren, Deputy CIO, Office of the Secretary of Defense, shared his views on secure information sharing. Mr. David M. Wennergren serves as the Deputy…

Training Conference: Cloud Computing for DoD & Government

By G C Network | February 1, 2010

Please join me at the Cloud Computing for DoD & Government training conference, February 22-24, 2010 at the Hilton Old Town in Alexandria, VA. This unique conference agenda blends interactive…

 

 

China has its Cybersecurity Law. Next May, the General Data Protection Regulation – or GDPR –goes into effect for the European Union. Research shows most organizations just aren’t ready for these and other measures.

Tune into this episode of “The End Point Imperative: A Podcast Series from Intel,” to hear from Intel’s Yasser Rasheed, Director of Business Client Security on how a combination of protection at the hardware and software level can help organizations gain compliance and avoid breaches, fines, and financial impact.

Kevin L. Jackson: Hi everyone and welcome to this episode of the Endpoint Imperative. A podcast series from Intel. My name is Kevin L. Jackson and I’ll be your host for this series. The topic for this episode is “Global Security Compliance. Are you ready? With me is YasserRasheed, director of Business Client Security with Intel. Yasser, welcome.
 
Yasser Rasheed: Thank you for hosting me today. I’m very excited for this talk.
 
Kevin L. Jackson: It’s really our pleasure. Let’s get started on this. The security world is really abuzz. We talk about GDPR or the General Data ProtectionRegulation. This is Europe’s looming security regulation. Can you tell us a little more about it?
 
Yasser Rasheed:Absolutely. You know Kevin, the industry is shifting and evolving very quickly in this space. We’re excited about the positive changes taking place in the industry. The GDPR or General Data Protection Regulation coming out of Europe is really a replacement for the European directive that they had in the past. It covers a whole slew of data protection and security regulations that allows – but really caters to protecting the end user and the end user data.
 
Kevin L. Jackson: I understand it’s really the hefty fines that have the information security officers worried. I’m told that they can be the greater of either 20 million Euro or 4% of global annual revenues. Why is this putting the spotlight on security and compliance in North America? I thought this is a European thing, right?
 
Yasser Rasheed:It is not a European thing only. It affects anyone that deals with the European citizens or in business in Europe so global companies are really impacted by this regulation and they need to pay attention to it.
 

 
                     (When viewed on a mobile device, please press select “Listen in browser”)


Kevin L. Jackson: This is really important to you. From your point of view, at the IT and operations level, what should these companies be really focused on?

 
Yasser Rasheed:The companies need to first get educated on the new regulations. It is going to be applicable in May or enforced starting May 2018. It is really coming very soon. The GDPR regulation is really a legal framework that comprehends a number of data security and privacy guidelines for organizations. For example, they need to make sure that they look at how the data is processed, how the data is protected. Who gets access to the data at what point in time and under what tools? Is everything audited and logged in the right way so that they can have the right traceability. There are a number of things that the organizations and especially IT and chief information security officer teams need to pay attention to in this case.
 
Kevin L. Jackson: With all that in mind, what should these enterprises be thinking about when it comes to data protection at the hardware and the software level?
 
Yasser Rasheed:That’s a great question. First, let’s head back and look at what’s happening in the industry nowadays. The whole space of cybersecurity is full with hackers and really malicious users trying to get access to information and this is impacting everyone. We see breaches every day. Solutions today are available in software, however, we believe that the software alone cannot protect and cannot enforce the level of readiness for GDPR and the likes. What we really look for is the role of the hardware to augment and compliment the role of the software in the space. More specifically in the security space, there are many hardware products that companies like Intel is offering in this space to protect the identity of the user, to protect the data of the user. These are tools that our key organizations can take advantage of to be ready for GDPR compliance and in general, to have a more healthy and stronger security posture in the environment.

Kevin L. Jackson: Thank you very much for sharing that important point. Unfortunately, though, we’re at the end of our count for this episode. Many thanks to Yasser Rasheed with Intel for his insights and expertise.

 

 

( This content is being syndicated through multiple channels. The opinions expressed are solely those of the author and do not represent the views of GovCloud Network, GovCloud Network Partners or any other corporation or organization.)

 

Cloud Musings

( Thank you. If you enjoyed this article, get free updates by email or RSS – © Copyright Kevin L. Jackson 2017)

Follow me at https://Twitter.com/Kevin_Jackson
Posted in

G C Network