Quick Navigation
Best Practices for Preventing a Data Breach
There is a renewed awareness of the vulnerability of personally identifiable information (PII) collected by businesses and governments as a result of the increasing number of security breaches leading to data loss.
According to the Identity Theft Resource Center, the number of data breaches reported in 2008 rose almost 50% over those reported in 2007.
To address the growing number of breaches where PII is compromised, states across the U.S. have passed laws calling for businesses and other entities that collect PII to notify individuals of breaches where their personal or financial information may have been put at risk.
Compliance is only one piece of the puzzle when it comes to protecting PII. While civil penalties and fines may result from non-compliance, there are a multitude of other costs - both tangible and intangible - that make the protection of PII a critical component of any security strategy including:
- Customer notification, record recovery, and investigation
- Legal fees
- Loss of brand and shareholder value
- Loss of customer confidence
RSA, EMC and various RSA partners have developed a comprehensive solution to help organizations address the most challenging aspects of complying with the U.S. Data Breach Notification Laws for protecting PII and mitigating the risk of a security breach.
RSA® Data Loss Prevention RiskAdvisor is a service that provides automated discovery of PII and a high-level mapping of business functions to sensitive data to help organizations identify areas of potential exposure.
RSA® Data Loss Prevention Suite enables organizations to discover PII across the infrastructure and prevent PII from loss or misuse.
RSA SecurID® provides strong two-factor authentication to ensure PII is protected against unauthorized access.
RSA® Adaptive Authentication utilizes a risk-based authentication platform to offer strong protection for Web portals, SSL VPN applications, and web access management solutions.
RSA® Access Manager enables organizations to centrally manage access rights to Web applications, intranets, extranets, portals and exchange infrastructures.
RSA® Encryption and Key Management Suite offers encryption solutions to protect sensitive information, such as PII, within the IT infrastructure.
RSA enVision® provides an enterprise-wide solution for collecting, analyzing and reporting on security and compliance information.
EMC Physical Security Solutions enable organizations to manage, archive, protect, authenticate, and scale security systems and video surveillance information.
The RSA US Data Breach Notification State Laws (PII) Resource Center
RSA's PII educational library provides organizations with tools and information that will help you navigate the U.S. Data Breach Notification Laws - now and over time.


