What Is the Information Security Risk Management Process of ISO 27005?

iso 27005 featured

Businesses undergoing ISO certification are probably aware of the 27000 series and its focus on comprehensive cybersecurity. What many organizations don’t know, however, is that the series itself provides guidelines for risk managers to better implement Information Security Management Systems (the core process of ISO 27001) following best risk management practices. 

 

Read More

What Is the Europrivacy Hybrid Certification Model?

europrivacy certification model featured

GDPR has needed a centralized assessment and certification model for some time now. Still, with the plethora of certifications and standards covering different business contexts, there has yet to be a single approach that has risen to the top of the heap. However, the governing bodies of GDPR have authorized the new Europrivacy standard to forego this certification balkanization in favor of a new, hybrid process.

 

Read More

Do GDPR Regulations Apply to Businesses in the U.S.?

gdpr regulations featured

With the growth of the EU as an economic power, businesses in the United States are working to make headway into this lucrative commercial market. However, they are rapidly learning that the IT and data-driven practices standard in the U.S. will not stand in the GDPR-regulated European Union. 

There are some basic preparations that any U.S. business must undertake even to consider getting ready for business in the EU. 

 

Read More