Firstpost
  • Home
  • Video Shows
    Vantage Firstpost America Firstpost Africa First Sports
  • World
    US News
  • Explainers
  • News
    India Opinion Cricket Tech Entertainment Sports Health Photostories
  • Asia Cup 2025
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit
Trending:
  • Nepal protests
  • Nepal Protests Live
  • Vice-presidential elections
  • iPhone 17
  • IND vs PAK cricket
  • Israel-Hamas war
fp-logo
How Compliance Controls Can Minimise Data Loss
Whatsapp Facebook Twitter
Whatsapp Facebook Twitter
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit
  • Home
  • Business
  • Biztech
  • How Compliance Controls Can Minimise Data Loss

How Compliance Controls Can Minimise Data Loss

Vishal Dhupar • April 29, 2008, 14:32:38 IST
Whatsapp Facebook Twitter

This article looks at GRC practices that, if implemented correctly, can reduce the frequency of data loss.

Advertisement
Subscribe Join Us
Add as a preferred source on Google
On
Google
Prefer
Firstpost
How Compliance Controls Can Minimise Data Loss

It’s news that has been turning quite a few corporate heads lately.

According to a report released in July by the IT Policy Compliance Group, nine in 10 firms are exposed to financial risk from data loss and theft. These risks, which can cost organisations customers, reduced revenues, and even a decline in share price, could be significantly reduced by implementing core procedural and technical controls and monitoring those controls at least once every two weeks.

STORY CONTINUES BELOW THIS AD

“Among larger enterprises,” the report concluded, “the probability of a publicly disclosed data loss is likely once every three years if the firm is currently operating as a laggard. In contrast, organisations with the best results have delayed the probability of data loss to once in every 42 years. The benchmarks show that the organisations excelling at compliance are the same firms with the least data losses and the least business disruptions from IT downtime.”

More from Biztech
Future Group - Reliance Retail Deal approved by CCI Future Group - Reliance Retail Deal approved by CCI RBI ban on cryptocurrencies takes effect; prohibition could force investors to tap the black market RBI ban on cryptocurrencies takes effect; prohibition could force investors to tap the black market

Turning to the costs of data breaches, the IT Policy Compliance Group found that organisations experiencing a publicly reported data loss expect to see an 8% decline in customers and revenue, an 8% decline in the price per share for publicly traded firms, and additional expenses averaging $100 per lost customer record for firms experiencing publicly disclosed data losses and thefts.

This article looks initially at some of the implications of compliance spending. It then considers a number of compliance, risk, and governance practices that, if implemented correctly by financial institutions, can significantly reduce the frequency and impact of data loss.

The Return On Spending

In its report, the IT Policy Compliance Group found that, based on financial losses sustained after a publicly exposed data loss (including lost customers and revenues, stock price declines, and additional costs and total cumulative spending on compliance and data protection activities), the returns on compliance and data protection spending are positive for almost all organisations.

STORY CONTINUES BELOW THIS AD

“Perhaps most important,” the report continued, “the amount spent on improving compliance and data protection is a very small percentage of the financial value that is at risk. With returns on compliance spending for larger enterprises starting at 1,000% and climbing to 100,000%, it is obvious that compliance is good for business.”

The report also found that most large enterprises are auditing and monitoring IT compliance once every 140 days, “whereas the industry leaders are conducting these measurements once every 21 days.”

High-profile breaches in the news

The IT Policy Compliance Group’s report is particularly timely, coming as it does at a time of several high-profile financial services breaches. For example:

• TTD Ameritrade announced in September that a compromised computer at the company had leaked the email addresses of potentially all of its 6.3 million customers. A New York law firm has filed a class-action lawsuit against the brokerage, charging that the company knew that email addresses were leaking to spammers and failed to inform customers.
• Electronic payment processor Fidelity National Information Services Inc. fired an employee in its Certegy Check Services Inc. unit for allegedly stealing, then selling to marketers, bank and credit card data from as many as 2.3 million customers.
• MoneyGram International reported that approximately 79,000 people had their personal information – such as names, addresses, phone numbers, and, in a few cases, bank account information – stolen. The data was illegally accessed over the Internet.
Implementing Best Practices

STORY CONTINUES BELOW THIS AD

As many experts have observed, unfortunately there is no silver bullet when it comes to data loss prevention. But that doesn’t mean there is no solution. There is, but it requires much more than technology. It is really an issue that requires the combination of people, process, and technology.

Research by the IT Policy Compliance Group and Symantec shows that successful firms – i.e., those with the fewest data losses and thefts – are driving operational excellence in IT by improving compliance results, especially in IT general controls and IT security controls and procedures. More notably, perhaps, recent research shows the least data loss among firms that are monitoring and measuring controls against objectives consistently at least once every two weeks.

Based on what is working among organisations with the fewest data losses, the IT Policy Compliance Group report identified practices that will assist businesses with improving IT compliance results, reduce business downtime, and reduce data loss and theft. These include implementing more and appropriate IT controls; reducing control objectives, making it easier to communicate, measure, and report against; establishing higher standards for performance objectives; encouraging a culture of operational excellence in IT; conducting monitoring, measurement, and reporting of controls against objectives at least once every two weeks; and allocating more “spend” to the automating of controls.

STORY CONTINUES BELOW THIS AD

Symantec Information Foundation Prevents Data Loss

Last year, Symantec announced Information Foundation 2007, which is intended to help IT professionals prevent the risk of data loss and policy violations. Symantec Information Foundation offers consistent content controls with automatic classification and policy enforcement for effective risk management; integrated incident management and remediation for ensuring risk management compliance; and centralised archiving, audit, and discovery.

Conclusion

An effective IT governance process, along with concise IT control objectives and the right mix of built-in IT controls, allows financial institutions to set policies and measure against those policies in a consistent manner. By creating a measurable and repeatable IT compliance programme, these organisations are better able to adequately protect against data loss and ensure a high level of compliance. As the IT Policy Compliance Group’s latest report demonstrates, appropriate additional controls are not only warranted, they are essential to prevent theft and loss.

The author is managing director, Symantec India & SAARC

STORY CONTINUES BELOW THIS AD
Tags
Governance Security Risk data Compliance
End of Article
Latest News
Find us on YouTube
Subscribe
End of Article

Top Stories

Israel targets top Hamas leaders in Doha; Qatar, Iran condemn strike as violation of sovereignty

Israel targets top Hamas leaders in Doha; Qatar, Iran condemn strike as violation of sovereignty

Nepal: Oli to continue until new PM is sworn in, nation on edge as all branches of govt torched

Nepal: Oli to continue until new PM is sworn in, nation on edge as all branches of govt torched

Who is CP Radhakrishnan, India's next vice-president?

Who is CP Radhakrishnan, India's next vice-president?

Israel informed US ahead of strikes on Hamas leaders in Doha, says White House

Israel informed US ahead of strikes on Hamas leaders in Doha, says White House

Israel targets top Hamas leaders in Doha; Qatar, Iran condemn strike as violation of sovereignty

Israel targets top Hamas leaders in Doha; Qatar, Iran condemn strike as violation of sovereignty

Nepal: Oli to continue until new PM is sworn in, nation on edge as all branches of govt torched

Nepal: Oli to continue until new PM is sworn in, nation on edge as all branches of govt torched

Who is CP Radhakrishnan, India's next vice-president?

Who is CP Radhakrishnan, India's next vice-president?

Israel informed US ahead of strikes on Hamas leaders in Doha, says White House

Israel informed US ahead of strikes on Hamas leaders in Doha, says White House

Top Shows

Vantage Firstpost America Firstpost Africa First Sports
Latest News About Firstpost
Most Searched Categories
  • Web Stories
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Tech/Auto
  • Entertainment
  • IPL 2025
NETWORK18 SITES
  • News18
  • Money Control
  • CNBC TV18
  • Forbes India
  • Advertise with us
  • Sitemap
Firstpost Logo

is on YouTube

Subscribe Now

Copyright @ 2024. Firstpost - All Rights Reserved

About Us Contact Us Privacy Policy Cookie Policy Terms Of Use
Home Video Shorts Live TV