Current Campaign


Latest Archives

  1. August 23, 2010 Getting Serious about Risk Monitoring Posted in: Daily News with: 0 comments

  2. August 17, 2010 Y211? And other Risks . . . Posted in: Daily News with: 0 comments

  3. August 10, 2010 Video Spills on Government Fraud Posted in: Daily News with: 0 comments

  4. August 5, 2010 Re-Inventing the Internal Auditor? Posted in: Daily News with: 0 comments

  5. August 3, 2010 The Guidance Gauntlet Posted in: Daily News with: 0 comments

  6. July 30, 2010 Stopping the Spreadsheet Scourge Posted in: Daily News with: 1 comment

  7. July 21, 2010 Robbing Risk Management to Pay Receivables Posted in: Daily News with: 0 comments

  8. July 15, 2010 Trailblazing Uncle Sam Posted in: Daily News with: 0 comments

  9. July 13, 2010 CCM Momentum Posted in: Daily News with: 0 comments

  10. July 8, 2010 Introducing Approva One On Demand Posted in: Daily News with: 0 comments

Recent Articles

Data-Minding

Posted on April 6th, 2010 by Katina »Permalink

It’s been awhile since we talked here about Data Privacy (time flies when the economy’s imploding!), but Compliance Week’s piece last week on steps to better privacy compliance got us thinking again about the myriad regulations and rules that govern how companies manage personal information – and the risks involved for businesses (not to mention the customers and employees who’ve shared their personal information with those businesses) if those rules and regs aren’t followed to the letter.

On the heels of Massachusetts’s passage of new data privacy regs believed to be among the strongest in the U.S., the piece does a nice job laying out strategies for preventing data breaches in the first place.

Color us surprised (okay, just coy, really) to read among the first recommendations this one from Richard Davis of Grant Thornton, who said in a recent webcast that

    “Compliance officers should pull in their financial and IT departments as well, to understand how they handle privacy and data security in their functions; all that can then be applied to the company’s overall risk assessment. Moving forward, he said, the internal audit department is “ideally suited to help organizations think through risk and control elements.”

Hmm. Bringing stakeholders in at the outset of a program to strategize on how to account for specific risks (in this case data security) across the enterprise? GENIUS.

Speaking of Compliance Week, we couldn’t help but notice that their homepage helpfully features (okay, with a little help from yours truly) a complimentary copy of Gartner’s recent Magic Quadrant for CCM. It’s awfully interesting reading, if we do say so ourselves.

Bookmark and Share

Leave a Reply