Back
Compliance - meeting the standards of laws, policies, and regulations
- Penalties: fines, incarceration, fired
- Varied in scope: state, local, international
Data localization - data from a region or county must be stored there
- Laws may enforce data localization, such as the EU's GDPR
GDPR - General Data Protection Regulation
- Provides data protection and privacy for people in the EU
- Individuals have more control over their own data
PCI DSS - Payment Card Industry Data Security Standard
- Build and maintain a secure network and systems
- Protect cardholder data
- Maintain a vulnerability management program
- Implement strong access control measures
- Regularly monitor and test networks
- Maintain an InfoSec policy