Games | Software 
Search

Home|Channels|Hot news|Most visited|Highest rated|
Technology index
Hardware
Interviews
IT Companies
Security
Tech Weblogs
Technology
Set this page as your
home page
Add this page to your
favorites

Home Technology SlashDot IT

National Data Breach Law Advances
November 6, 2009, 9:00 pm


Trailrunner7 writes "Two separate bills that would require organizations to notify consumers when their personal information has been compromised have made their way out of committee in the Senate, a critical step toward the creation of a national data-breach notification bill. But the Data Breach Notification Act, S.139, exempts federal agencies and other organizations subject to the bill from disclosing a breach if the data involved in the breach was encrypted. This is a clause that has caused some controversy, as some experts say that simply encrypting data does not render it useless. Also, S.139 would grant an exemption for data that 'was rendered indecipherable through the use of best practices or methods, such as redaction, access controls, or other such mechanisms, that are widely accepted as an effective industry practice, or an effective industry standard.' That is a very broad exemption that could become a sticking point as the bill moves along. The terms 'access controls' and 'other such mechanisms' encompass a huge number of technologies."

Read more of this story at Slashdot.


Read more...
E-mailE-mail  Printer friendlyPrinter friendly version


Rate this article: 1 2 3 4 5  

Related stories...
Tech Lobbyist Named to DHS Top Security Post
Zero-Day IE Exploit In the Wild
Top Five Causes of Data Compromise
Pipeline Worm Floods AIM With Botnet Drones
Hotel Minibar Key Opens Diebold Voting Machines
The Engine of US Jobs
Draft Scheme Standard R6RS Released
CryptoDox: Encyclopedia on Cryptography & Info
Analyzing 20,000 MySpace Passwords
Code Posted For New IE Exploit
Powered by Apache, PHP, MySQL © 2006 Elerion, ltd.