Find White Papers
Home
About Us
List Your Papers
    
> Trend Micro, Inc. > Addressing Compliance Requirements for Privacy, Data Retention, and e-Discovery

Addressing Compliance Requirements for Privacy, Data Retention, and e-Discovery

White Paper Published By: Trend Micro, Inc.

Protecting individual and financial data, retaining data, and meeting e-discovery requirements are common compliance requirements across geographies and industries. Finding accurate, usable, and cost-effective solutions for meeting these requirements can make the difference between achieving compliance goals or leaving the organization vulnerable through unsecured use of sensitive data. Trend Micro Data Protection solutions for endpoint data leak protection, email encryption, and email archiving help organizations meet their compliance requirements – easily and cost-effectively.



Tags : 
trend micro, trend, it, information technology, security, security requirements, compliance, e-discovery

Trend Micro, Inc.
Published:  Apr 29, 2009
Type:  White Paper
Length:  8 pages

Trend Micro Data Protection
Trend Micro, Incorporated
Addressing Compliance Requirements for Privacy, Data Retention, and e-Discovery
A Trend Micro White Paper I March 2009Trend Micro Data Protection: Addressing Compliance
Table of CONTENTs
I. Privacy, Data Retention, and e-Discovery . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .3
II. Identifying Sustainable Compliance Solutions  . . . . . . . . . . . . . . . . . . . . . . . . . . .4
III. The Trend Micro Advantage . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .6
IV. Trust a Security Industry Leader  . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .8
2 White Paper | Trend Micro Data ProtectionTrend Micro Data Protection: Addressing Compliance
Protecting individual and financial data, retaining data, and meeting e-discovery requirements are common compliance requirements across geographies and industries. Finding accurate, usable, and cost-effective solutions for meeting these requirements can make the difference between achieving compliance goals or leaving the organization vulnerable through unsecured use of sensitive data. Trend Micro security solutions for endpoint data leak protection, email encryption, and email archiving help organizations meet their compliance requirements - easily and cost-effectively.
I. Privacy, Data Retention, and e-Discovery
At its simplest, "compliance" is the adherence to an accepted policy or set of requirements. Policies can range from those that help the business avoid worst-case scenarios - such as customer churn, litigation, and fines for noncompliance - to the "should haves," including IT security standards and corporate mandates to protect its brand and stakeholder confidence.
Meeting compliance regulations requires protecting specific types of data and establishing controls to ensure that requirements are met on an ongoing basis. For more information about the regulatory landscape and specific requirements, please see Protecting Information in an Increasingly Leaky World, a Trend Micro white paper.
Figure 1: Protected data types and data requirementsProtected Data Types and Requirements DescriptionPII: Personally Identifiable Information Social security number/national identification number, drivers license number, address, phone numberPCI: Payment Card Industry Credit card numbers, Card Verification Value (CVV), expiration datePHI: Protected Health Information Medical diagnosis codes, disease names, medication names, patient namesPFI: Personal Financial Information Financial account number, credit scorePFI Access Control Monitor privileged user access to company financial data, separation of duties for data and processes impacting financial reportingAudit Covers best practices to validate controls to address regulation
3 White Paper | Trend Micro Data ProtectionTrend Micro Data Protection: Addressing Compliance
Privacy RequirementsPrivacy of an individual's personal, medical, and financial data is of utmost concern to enterprises for regulatory compliance. Regulations in place to protect individuals' privacy usually require that data associated with that individual is not visible to unauthorized users. This requires an ability to detect sensitive content, and report, block, or encrypt it. For example, protecting email and attachments from unwanted eavesdropping, tampering, and spoofing requires encryption, recently mandated by the state of Nevada to protect PII associated with Nevada residents. Solutions for Data Leak Prevention (DLP) that perform content monitoring and filtering can also be used for helping to meet a wide range of compliance requirements.
Data Retention RequirementsData retention laws vary greatly, but many specify that certain types of data be stored for specific periods of time. For example, the European Union Directive 2006/24/EC requires Member States to ensure that communica-tions providers retain data for anywhere from six months to two years. In addition, records must only be produced to entitled parties, and if they contain sensitive data, they should be kept confidential through encryption.
e-Discovery RequirementsElectronic discovery has become critical in a wide range of applications, such as litigation support, when evidence must be produced i... [download for more]

Browse Technology Topics

Data Center

Virtualization, Cloud Computing, Infrastructure, Design and Facilities, Power and Cooling, Green Computing  
    

Data Management

Application Integration, Analytical Applications, Business Intelligence, Configuration Management, Database Development, Data Integration, Data Mining, Data Protection, Data Quality, Data Replication, Database Security, EDI, SOAP, Service Oriented Architecture, Web Service Management, Data Warehousing  
    

Enterprise Applications

Application Integration, Application Performance Management, Best Practices, Business Activity Monitoring, Business Analytics, Business Integration, Business Intelligence, Business Management, Business Metrics, Business Process Automation, Business Process Management, Call Center Management, Call Center Software, Change Management, Corporate Governance, Customer Interaction Service, Customer Relationship Management, Customer Satisfaction, Customer Service, EBusiness, Enterprise Resource Planning, Enterprise Software, EProcurement, Extranets, Groupware Workflow, HIPAA Compliance, IP Faxing, IT Spending, Marketing Automation, Performance Testing, Product Lifecycle Management, Project Management, Return On Investment, Risk Management, Sales & Marketing Software, Sales Automation, Server Virtualization, Simulation Software, Supply Chain Management, System Management Software, Total Cost of Ownership, Video Conferencing, Voice Recognition, Voice Over IP, Workforce Management, Incentive Compensation, Spend Management, Manufacturing Execution Systems, International Computing  

Human Resource Technology

Human Resources Services, Payroll Software, Time and Attendance Software, Workforce Management Software, Financial Management, Employee Monitoring Software, Employee Training Software, Recruiting Software/Services, Employee Performance Management, ELearning, Benefits Management, Expense Management  
    

IT Career Advancement

Cisco Certification, Microsoft Certification, Linux Certification, Network Security Certification, Software Development Certification  

IT Management

Employee Performance, ITIL, Productivity, Project Management, Software Compliance, Sarbanes Oxley Compliance, Service Management, Desktop Management  
    

Knowledge Management

Collaboration, Collaborative Commerce, Contact Management, Content Delivery, Content Integration, Content Management System, Corporate Portals, Customer Experience Management, Document Management, Information Management, Intranets, Messaging, Records Management, Search And Retrieval, Search Engines, Secure Content Management, SLA  

Networking

Active Directory, Bandwidth Management, Convergence, Distributed Computing, Ethernet Networking, Fibre Channel, Gigabit Networking, Governance, Grid Computing, Infrastructure, Internetworking Hardware, Interoperability, IP Networks, IP Telephony, Local Area Networking, Load Balancing, Migration, Monitoring, Network Architecture, Network Management, Network Performance, Network Performance Management, Network Provisioning, Network Security, OLAP, Optical Networking, Quality Of Service, Remote Access, Remote Network Management, Server Hardware, Servers, Small Business Networks, TCP/IP Protocol, Test And Measurement, Traffic Management, Tunneling, Utility Computing, VPN, Wide Area Networks, Green Computing, Cloud Computing, Power and Cooling, Data Center Design and Management, Colocation and Web Hosting  
    

Platforms

AS/400, Domino, Linux, Microsoft Exchange, Oracle, PeopleSoft, SAP, Siebel, Solaris, Tivoli, Unix, Web Sphere, Windows, Windows Server  

Security

Access Control, Anti Spam, Anti Spyware, Anti Virus, Application Security, Auditing, Authentication, Biometrics, Business Continuity, Compliance, DDoS, Disaster Recovery, Email Security, Encryption, Firewalls, Hacker Detection, High Availability, Identity Management, Internet Security, Intrusion Detection, Intrusion Prevention, IPSec, Network Security Appliance, Password Management, Patch Management, Phishing, PKI, Policy Based Management, Security Management, Security Policies, Single Sign On, SSL, Secure Instant Messaging, Web Service Security, PCI Compliance, Vulnerability Management  
    

Software Development

.NET, C++, Database Development, Java, Middleware, Open Source, Software Outsourcing, Quality Assurance, Scripting, SOAP, Software Testing, Visual Basic, Web Development, Web Services, Web Service Security, XML  

Storage

Backup And Recovery, Blade Servers, Clustering, IP Storage, ISCSI, Network Attached Storage, RAID, Storage Area Networks, Storage Management, Storage Virtualization, Email Archiving, Data Deduplication  
    

Wireless

802.11, Bluetooth, CDMA, GPS, Mobile Computing, Mobile Data Systems, Mobile Workers, PDA, RFID, Smart Phones, WiFi, Wireless Application Software, Wireless Communications, Wireless Hardware, Wireless Infrastructure, Wireless Messaging, Wireless Phones, Wireless Security, Wireless Service Providers, WLAN  
Search