Compass IT Compliance Blog / Government (4)

New York Files First 23 NYCRR 500 Enforcement Action

New York Files First 23 NYCRR 500 Enforcement Action

On July 21st, 2020, the New York Department of Financial Services (NYDFS) announced that it had filed its first enforcement action under the 23 NYCRR 500 cybersecurity regulation against First American Title Insurance, a large title insurance provider headquartered in Santa Ana, Calif …

Read Story

CMMC: Moving Away from Self-Assessments

A woman takes notes next to a laptop

The Cybersecurity Maturity Model Certification (CMMC) is a certification procedure developed by the Department of Defense (DoD) to certify that contractors working with the DoD have the controls in place to protect sensitive data, also referred to as controlled unclassified informatio …

Read Story

CMMC – What Is It, and Why Does It Matter?

A rounded loop of a factory's assembly line

There has been a lot of discussion around the cybersecurity interwebs lately about something called CMMC. CMMC stands for Cybersecurity Maturity Model Certification, which sounds super fancy and important, but what does it really mean?

Read Story

How China's TikTok Spies On You & Your Kids

How China's TikTok Spies On You & Your Kids

I have recently joined the ranks of people that aren’t really on social media anymore. So, much like veganism or cross-fit I have a responsibility to champion my new cause. I can’t claim to be an early un-adopter of social media and I left it for largely the same reasons as everyone e …

Read Story

Colorado Protections for Consumer Data Privacy Act - What to Know

denver-69207_1920

Last spring, Colorado followed the actions of several other states and countries by taking steps to enact legislation that helps consumers protect their data. The state passed the Protections for Consumer Data Privacy Act (HB18-1128). Signed into law on May 29, 2018, and taking effect …

Read Story

CCPA – Compliance Before Consequence

golden-gate-bridge-1549662_1920

Becoming compliant with new laws can be frustrating. Companies are finally making it over the curve of being completely compliant under the recent General Data Protection Regulation (GDPR), and now there is yet another regulation that needs to be complied with. As of June 2018, The Ca …

Read Story

Subscribe by email