fhs
Volume 10, Number 17 -- May 4, 2010

New State Privacy Laws Clamp Down on Data

Published: May 4, 2010

by Alex Woodie

Companies that do business in the states of Nevada, Massachusetts, and Washington are some of the first to come under the jurisdiction of new data security laws that require the use of encryption. Backup data that leaves the data center for the purpose of disaster recovery is a big concern for these companies, and SafeData, which provides options for on-site and cloud-based back up, says it can provide the necessary level of encryption for System i shops.

Washington is the latest state to enact a data security and payment card law covering companies that do business with citizens in the state. The law, which was signed into law in early April and goes into effect July 1, requires companies that originate or process debit or credit card transactions to take "reasonable steps" to prevent a data breach. Experts say this requires the use of encryption technology.

The Massachusetts Privacy Law, which went into effect January 1, 2010, is expected to become a model law followed by other states. This law, which was enacted because of the continued high rate of identity theft caused by corporate data breaches, requires companies to use encryption when personally identifiable information (PII) is taken outside of a company's internal systems.

One state has gone further than any other state: Nevada. The Silver State has taken a leadership position in regards to data security with two laws. The first, called the Nevada Electronic Transmission Encryption Law, went into effect October 1, 2008, and requires the use of encryption for all PII that is transmitted electronically (except for fax). A second Nevada law, which went into effect January 1, 2010, requires all companies in Nevada to comply with the provisions of the Payment Card Industry (PCI) Data Security Standard (DSS), when it comes to card transactions.

However, Nevada's second law goes further than PCI DSS and requires the use of encryption technology that is compliant with the National Institute of Standards and Technology (NIST). The PCI standards council is strongly leaning toward requiring NIST-certified encryption software as part of its PCI DSS standard, security experts say.

SafeData welcomes the new laws, and is ready to help customers comply with them. The vendor, which provides disaster recovery (DR) and high availability (HA) hosting and services for organizations that use the System i server, recently announced that it provides the necessary level of encryption to comply with the new state laws.

"These laws are essential steps to ensuring the protection of personally identifiable information and I believe more states will pass similar laws in months to come," states SafeData president Peter Briggs in a press release. "Our SafeData/DR solution ensures that our clients' data is double encrypted and in compliance with these laws. Our clients can sleep well at night knowing that their data is not at risk of being lost or stolen and maliciously used."

SafeData stores backup data from all customers, including System i shops, on its Windows-based SAN infrastructure. The encryption utilized on the SAN is NIST certified, a company spokesperson confirmed.


RELATED STORIES

SafeData Delivers Backup Appliance for System i and Windows

SafeData Makes Backup and Recovery Deal with Omni Solutions

SafeData Promotes Managed HA in White Paper

SafeData Now Protects AIX Data, Too

SafeData White Paper Discusses iSeries Rapid Recovery

Poor Economy Driving DR Business, SafeData Says



                     Post this story to del.icio.us
               Post this story to Digg
    Post this story to Slashdot


Sponsored By
HELP/SYSTEMS

Stop worrying about disk space usage...

                                          Robot/SPACE-IBM i disk storage management:

                                         Monitors ASPs, IASPs, libraries, IFS objects, and active storage levels
                                         Provides flexible storage thresholds for temporary storage
                                         Notifies you when a storage threshold is met
                                         Reduces disk drive usage by running cleanup tasks
                                         Collects disk space usage statistics
                                         Predicts future disk storage needs

Learn more about Robot/SPACE now!


Editor: Alex Woodie
Contributing Editors: Dan Burger, Joe Hertvik,
Shannon O'Donnell, Timothy Prickett Morgan
Publisher and Advertising Director: Jenny Thomas
Advertising Sales Representative: Kim Reed
Contact the Editors: To contact anyone on the IT Jungle Team
Go to our contacts page and send us a message.

Sponsored Links

Botz & Associates, Inc.:  Set up a FREE one hour security Q&A session with Patrick Botz
BOSaNOVA:  Limited time e-Twinax Controller REBATE for new Power System customers
Computer Keyes:  KeyesOverlay rapidly converts standard *SCS printer files into PDF documents


 

IT Jungle Store Top Book Picks

Easy Steps to Internet Programming for AS/400, iSeries, and System i: List Price, $49.95
The iSeries Express Web Implementer's Guide: List Price, $49.95
The System i RPG & RPG IV Tutorial and Lab Exercises: List Price, $59.95
The System i Pocket RPG & RPG IV Guide: List Price, $69.95
The iSeries Pocket Database Guide: List Price, $59.00
The iSeries Pocket SQL Guide: List Price, $59.00
The iSeries Pocket Query Guide: List Price, $49.00
The iSeries Pocket WebFacing Primer: List Price, $39.00
Migrating to WebSphere Express for iSeries: List Price, $49.00
Getting Started With WebSphere Development Studio Client for iSeries: List Price, $89.00
Getting Started with WebSphere Express for iSeries: List Price, $49.00
Can the AS/400 Survive IBM?: List Price, $49.00
Chip Wars: List Price, $29.95


 
The Four Hundred
Better Than a Sharp Stick in the i

Power7 Blades: The i/DB2 Combo Versus AIX/Oracle

EMC Keeps i/OS Business Moving Forward with New IBM Agreement

As I See It: Life Logging

Global Perspective Requires CIO to Think in Transitional Terms

Four Hundred Guru
Files in Subprocedures

Let One Row Represent a Group

Admin Alert: Diary of a Production System Upgrade, Part 1

Four Hundred Monitor
Four Hundred Monitor's
Full iSeries Events Calendar

System i PTF Guide
May 1, 2010: Volume 12, Number 18

April 24, 2010: Volume 12, Number 17

April 17, 2010: Volume 12, Number 16

April 10, 2010: Volume 12, Number 15

April 3, 2010: Volume 12, Number 14

March 27, 2010: Volume 12, Number 13

TPM at The Register
IBM's Unix poaching slows in Q1

Feeds and speeds on HP's Tukwila blades

Brazil shells out for 244 teraflop Cray super

Red Hat bags NTT as cloud partner

Red Hat goes commercial on Amazon's cloud

Software makers fall in behind Lucid Lynx

IBM gooses dividend, share buybacks

Unisys services sales down in Q1

Reg HPC CommunityHP dons blades to scale Superdome 2

Ubuntu floats 12,000 clouds (and counting)

Platform kicks out HPC Enterprise Edition

HP: last Itanium man standing

THIS ISSUE SPONSORED BY:

Help/Systems
PowerTech
Patrick Townsend Security Solutions
BOSaNOVA
VAULT400


Printer Friendly Version


TABLE OF CONTENTS
PTSS First to Achieve NIST Compliance for DB2/400 Encryption

IBM Unveils i/OS CMS Upgrades and Migration Promotions

m-Power Gets Better Record Filtering, Other Goodies

Bsafe Launches Compliance Software for PCI

Aldon Goes 64-Bit with Service Desk Software

News Briefs and Product Shorts:

New State Privacy Laws Clamp Down on Data . . . Unitrends to Add Deduplication to D2D Backup Appliances . . . Datawatch Updates Data Integration Tool for Monarch BI Suite . . . ACOM Adds New Workflow Features to EZCM . . . Zend Studio Gets New Code Tracing Capabilities . . .

Four Hundred Stuff

BACK ISSUES




 
Subscription Information:
You can unsubscribe, change your email address, or sign up for any of IT Jungle's free e-newsletters through our Web site at http://www.itjungle.com/sub/subscribe.html.

Copyright © 1996-2010 Guild Companies, Inc. All Rights Reserved.
Guild Companies, Inc., 50 Park Terrace East, Suite 8F, New York, NY 10034

Privacy Statement