<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Mass Law Blog &#187; Data Security</title>
	<atom:link href="http://masslawblog.com/tag/data-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://masslawblog.com</link>
	<description>Lee Gesmer</description>
	<lastBuildDate>Tue, 27 Dec 2011 02:47:40 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Presentation Materials on Massachusetts Data Regulations</title>
		<link>http://masslawblog.com/data-security/1171/</link>
		<comments>http://masslawblog.com/data-security/1171/#comments</comments>
		<pubDate>Tue, 17 Mar 2009 15:58:32 +0000</pubDate>
		<dc:creator>Lee Gesmer</dc:creator>
				<category><![CDATA[Data Security]]></category>
		<category><![CDATA[mass regs]]></category>
		<category><![CDATA[webinar]]></category>

		<guid isPermaLink="false">http://www.masslawblog.com/?p=1171</guid>
		<description><![CDATA[Recently my partner Joseph Laferrera has given a series of presentations and webinars on the controversial new Massachusetts data security regulations. Information on his upcoming webinar with Ntirety (a database administrator and client of our firm), on April 2, 2009 at 10:00 a.m., is available at this link. A copy of the slides Joe is using now (they change often, based on developments), is on scribed.com, here: The New Standard &#8211; Massachusetts&#8217; Sweeping New Data Protection Rules Publish at Scribd or explore others: Science &#38; Engineerin data protection]]></description>
			<content:encoded><![CDATA[<p></p><p>Recently my partner Joseph Laferrera has given a series of presentations and webinars on the controversial new Massachusetts data security regulations. Information on his upcoming webinar with Ntirety (a database administrator and client of our firm), on April 2, 2009 at 10:00 a.m., is <a href="http://www.ntirety.com/webinars.php" target="_blank">available at this link</a>.</p>
<p>A copy of the slides Joe is using now (they change often, based on developments), is on scribed.com, here:</p>
<p><a style="margin: 12px auto 6px auto; font-family: Helvetica,Arial,Sans-serif; font-style: normal; font-variant: normal; font-weight: normal; font-size: 14px; line-height: normal; font-size-adjust: none; font-stretch: normal; -x-system-font: none; display: block; text-decoration: underline;" title="View The New Standard - Massachusetts' Sweeping New Data Protection Rules on Scribd" href="http://www.scribd.com/doc/13352923/The-New-Standard-Massachusetts-Sweeping-New-Data-Protection-Rules">The New Standard &#8211; Massachusetts&#8217; Sweeping New Data Protection Rules</a> <object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="100%" height="500" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="id" value="doc_520410053307627" /><param name="name" value="doc_520410053307627" /><param name="align" value="middle" /><param name="quality" value="high" /><param name="play" value="true" /><param name="loop" value="true" /><param name="scale" value="showall" /><param name="wmode" value="opaque" /><param name="devicefont" value="false" /><param name="bgcolor" value="#ffffff" /><param name="menu" value="true" /><param name="allowFullScreen" value="true" /><param name="allowScriptAccess" value="always" /><param name="salign" /><param name="src" value="http://d.scribd.com/ScribdViewer.swf?document_id=13352923&amp;access_key=key-s41rq65r3g70gw947u2&amp;page=1&amp;version=1&amp;viewMode=" /><embed id="doc_520410053307627" type="application/x-shockwave-flash" width="100%" height="500" src="http://d.scribd.com/ScribdViewer.swf?document_id=13352923&amp;access_key=key-s41rq65r3g70gw947u2&amp;page=1&amp;version=1&amp;viewMode=" allowscriptaccess="always" allowfullscreen="true" menu="true" bgcolor="#ffffff" devicefont="false" wmode="opaque" scale="showall" loop="true" play="true" quality="high" name="doc_520410053307627" align="middle"></embed></object></p>
<div style="margin: 6px auto 3px auto; font-family: Helvetica,Arial,Sans-serif; font-style: normal; font-variant: normal; font-weight: normal; font-size: 12px; line-height: normal; font-size-adjust: none; font-stretch: normal; -x-system-font: none; display: block;"><a style="text-decoration: underline;" href="http://www.scribd.com/upload">Publish at Scribd</a> or <a style="text-decoration: underline;" href="http://www.scribd.com/browse">explore</a> others: <a style="text-decoration: underline;" href="http://www.scribd.com/browse/eBooks/Science-Engineering">Science &amp; Engineerin</a> <a style="text-decoration: underline;" href="http://www.scribd.com/tag/data">data</a> <a style="text-decoration: underline;" href="http://www.scribd.com/tag/protection">protection</a></div>
]]></content:encoded>
			<wfw:commentRss>http://masslawblog.com/data-security/1171/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New Massachusetts Rules on Data Security a Game Changer</title>
		<link>http://masslawblog.com/data-security/new-massachusetts-rules-on-identity-theft/</link>
		<comments>http://masslawblog.com/data-security/new-massachusetts-rules-on-identity-theft/#comments</comments>
		<pubDate>Wed, 24 Sep 2008 21:59:52 +0000</pubDate>
		<dc:creator>Lee Gesmer</dc:creator>
				<category><![CDATA[Data Security]]></category>

		<guid isPermaLink="false">http://www.masslawblog.com/?p=259</guid>
		<description><![CDATA[The department of consumer affairs and business regulation shall adopt regulations relative to any person that owns or licenses personal information about a resident of the commonwealth. Such regulations shall be designed to safeguard the personal information of residents of the commonwealth &#8230; M.G.L. Chapter 93H: Section 2 Here is a link to the Executive Order signed by Governor Patrick on September 19, 2008. The Executive Order applies to State agencies; the regulations apply to the private sector. The regulations are of particular interest. They require private sector entities who keep personal information about individuals to meet &#8220;minimum&#8221; security standards for paper and electronic records. They apply broadly to &#8220;persons who own, license, store or maintain personal information about a resident of the Commonwealth of Massachusetts&#8221;. They require the creation of a &#8220;written information security program&#8221; which must be &#8220;reasonably consistent with industry standards.&#8221; The most minimal requirements of such a program are (to my eye) quite extensive (and burdensome). I think it is an understatement to say that the regulation and Executive Order will attract a great deal of attention and preparation between now and year-end, and will likely spawn a new (or expanded) industry of compliance consultants. &#160;]]></description>
			<content:encoded><![CDATA[<p></p><blockquote><p><em>The department of consumer affairs and business regulation shall adopt regulations relative to any person that owns or licenses personal information about a resident of the commonwealth. Such regulations shall be designed to safeguard the personal information of residents of the commonwealth &#8230;</em></p>
<p><a href="http://www.mass.gov/legis/laws/mgl/93h-2.htm" target="_blank">M.G.L. Chapter 93H: Section 2</a></p></blockquote>
<p>Here is a link to the<a href="http://www.mass.gov/governor/legislationeexecorder/executiveorder/executive-order-no-504.html" target="_blank"> Executive Order signed by Governor Patrick on September 19, 2008</a><a href="Order Regarding the Security and Confidentiality of Personal Information " target="_blank" class="broken_link">.</a></p>
<p><a href="Order Regarding the Security and Confidentiality of Personal Information " target="_blank" class="broken_link"><br />
</a>The Executive Order applies to State agencies; the regulations apply to the private sector.</p>
<p>The regulations are of particular interest. They require private sector entities who keep personal information about individuals to meet &#8220;minimum&#8221; security standards for paper and electronic records. They apply broadly to &#8220;persons who own, license, store or maintain personal information about a resident of the Commonwealth of Massachusetts&#8221;. They require the creation of a &#8220;written information security program&#8221; which must be &#8220;reasonably consistent with industry standards.&#8221; The most minimal requirements of such a program are (to my eye) quite extensive (and burdensome). I think it is an understatement to say that the regulation and Executive Order will attract a great deal of attention and preparation between now and year-end, and will likely spawn a new (or expanded) industry of compliance consultants.</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://masslawblog.com/data-security/new-massachusetts-rules-on-identity-theft/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk: basic
Page Caching using disk: enhanced
Database Caching 4/20 queries in 0.007 seconds using disk: basic
Object Caching 251/273 objects using disk: basic

Served from: masslawblog.com @ 2012-02-09 00:59:15 -->
