Exercising Good Privacy and Compliance Judgement

by Sabine Zimmer | February 13, 2019 | California Consumer Privacy Act (CCPA), General Data Protection Regulation (GDPR), Public Policy

Santa Fe Group Third Party Risk expert, Tom Garrubba, recently contributed to Corporate Compliance Insights for his take on the recently released Cisco Data Privacy Benchmark Study Read the full article. Those of us in the privacy profession knew it was only a matter of time that privacy-mind ....

European Invasion? Congressional Hearings Suggest need for U.S. Version of GDPR

by Sabine Zimmer | November 13, 2018 | California Consumer Privacy Act (CCPA), Data, Data & Cybersecurity, General Data Protection Regulation (GDPR), Privacy, Public Policy

Might the U.S take a page from the European Union’s (E.U.) data privacy playbook? Could the California Privacy Act spread to the rest of the country? These possibilities were on the minds of participants in recent Congressional hearings concerning data privacy. The European Union’s (EU’s) G ....

Going Back 2 Cali: The Golden State Passes Two New Data Privacy/Security Laws

by Sabine Zimmer | October 26, 2018 | California Consumer Privacy Act (CCPA), Cybersecurity, Data & Cybersecurity, Internet of Things (IoT), Privacy, Public Policy, Regulations, Regulatory Requirements

The California State Legislature recently completed a data privacy/data security two-step by passing two new laws with significant third party risk management implications for a broad collection of companies. In late September, California enacted what some are referring to as the country’s firs ....

The Clock is Ticking …It’s Time to Focus on Maturing Vendor Risk Management Programs

by Sabine Zimmer | September 19, 2018 | Data & Cybersecurity, Data Breach, Public Policy, Regulations, Third Party Risk Management, Tools & Templates, Vendor Risk Management Maturity Model (VRMMM)

Tick Tock. It’s that time of year again. Summer’s heat waves are retreating, school is in session, and budget planning is well underway for 2019 and beyond. Each year organizations typically take focused time during Q3/Q4 to evaluate their strategic plans; monitor the evolving risk environment; ....

Expect the Unexpected: 5 Keys to Managing Third Party GDPR Risk

by Sabine Zimmer | August 31, 2018 | General Data Protection Regulation (GDPR), Public Policy

As the European Union’s (EU’s) General Data Protection Regulation (GDPR) May 25 effective date approached this spring, its sweeping compliance requirements socked U.S. companies with major surprises. The regulation’s global jurisdictional reach, EU-specific definition of “sensitive data,” ....

What Would Data Subjects Want?

by Sabine Zimmer | April 19, 2018 | Data, Data & Cybersecurity, General Data Protection Regulation (GDPR), Privacy, Public Policy

Last week at the Shared Assessments Annual Summit on third party risk, I had the chance to co-facilitate a half-day workshop on The Pivot to Codification of Best Practices of Third Party Risk Management Best Practices, plus moderate a discussion panel on the current privacy landscape.  Not surprisi ....

« Previous PageNext Page »