The bMighty Blog -- Storage

Our Readers Speak: Get Even Smarter About Storage

Posted by Naomi Grossman Thursday, Jun 5, 2008, 11:04 AM ET

We posted an article on "Storage Smarts" last week which examined various data storage options -- one of which is outsourcing your data storage. One of our readers, though, pointed out that there are liability issues that smaller businesses need to be aware of if they choose that option. We are listening.

Deb Berchem is the virtual office manager for Biewer & Associates, certified identity theft risk management specialists. (Bercham says she is working on getting her certification.)

Berchem points out that if smaller businesses outsource their data storage they are still liable for the protection of that data, especially with recent legislation.

She writes that with outsourced data, "you have passed on the headaches to some extent, but really in essence you have inherited more problems, as of November 1st 2008 you will be held accountable for all your data and your liability follows your data. You need to be sure that the businesses that you partner with are in compliance with the new Red Flag Rules, and not just partially, but fully compliant."

The Red Flag Rules were passed to minimize incidents of identity theft and fraud. The Federal Trade Commission issued its Red Flag Rules last October and the release indicated that "final rules are effective on January 1, 2008. Covered financial institutions and creditors must comply with the rules by November 1, 2008."

Berchem notes that it's a "common misconception that the Red Flag Rules from the Federal Trade Commission only applies to financial institutions." Far from it, she notes. "It deals with all areas of business, how you maintain, gather, and disseminate that information is all liable to get a business in HOT water, both criminal as well as civil penalties are in place for enforcement."

But IT guys can take some comfort as she adds: "The best part about this, it is no longer just the IT departments' problem, the penalties are looking at the CEO’s and Boards of Directors to make sure that their business is following these rules."

Berchem recommends that readers concerned with compliance check out ID Theft 101, a site that addresses many of these concerns.

Her final note: "I am not sure why this has not been more in the news for businesses, the IT and HR Departments have in the past rarely passed on the information claiming “not my problem” and with their being a new Data Breach in the news nearly everyday, I personally would think that CEO’s would be waking up, but so far they have their heads in the sand believing that they don’t have to deal with it since they have an IT department, or a Security officer, that person is only responsible for things that have been passed by the CEO’s and Boards for implementation."

And, she adds: "Remember, 'ignorance of the law is no defense' when dealing with the Red Flag Rules."

Are you aware of the Red Flag Rules? How have they impacted what you do with your business' data? Let us know in the comments.


Government | IT | Storage




This is a public forum. CMP Media and its affiliates are not responsible for and do not control what is posted herein. CMP Media makes no warranties or guarantees concerning any advice dispensed by its staff members or readers.

Community standards in this comment area do not permit hate language, excessive profanity, or other patently offensive language. Please be aware that all information posted to this comment area becomes the property of CMP Media LLC and may be edited and republished in print or electronic format as outlined in CMP Media's Terms of Service.

Important Note: This comment area is NOT intended for commercial messages or solicitations of business.


Spotlight on Solutions
(Sponsored By Cisco)


Explore the bMighty Blog
Most Recent Posts
bMighty Blog Topics
     
bMighty Bloggers
bMighty Blog Roll



Browse by Category
Imaging How-To Center

Document imaging basics, plus how to select a solution

go

FREE Technology Services Locator!

Search our database of 200,000 solution- provider locations by business activity, technology, vertical market, and customer size. Find a technology partner NOW.

go

Tech Term of the Day: system development cycle

TechEncyclopedia gives you the meaning of today's word, plus more than 20,000 additional IT terms and definitions.


InformationWeek Business Technology Network
InformationWeekInformationWeek 500InformationWeek 500 ConferenceInformationWeek AnalyticsInformationWeek CIO
InformationWeek EventsInformationWeek ReportsInformationWeek MagazinebMightyByte and SwitchDark Reading
Digital LibraryIntelligent EnterpriseInternet EvolutionNetwork ComputingNo Jitter
space
Techweb Events Network
InteropVoiceConWeb 2.0 ExpoWeb 2.0 SummitEnterprise 2.0 ConferenceMobile Business ExpoSoftware ConferenceCSI - Computer Security Institute
Black HatGTECEnergy CampMashup CampStartup Camp
space
Light Reading Communications Network
Light ReadingLight Reading EuropeUnstrungLight Reading's Cable Digital NewsConstantinopleInternet Evolution
Heavy ReadingLight Reading Live!Light Reading InsiderEthernet ExpoOptical ExpoTeleco TVTower Technology Summit
space
Financial Technology Network
Advanced TradingBank Systems & TechnologyInsurance & TechnologyWall Street & TechnologyAccelerating Wall StreetBank Systems & Technology Executive SummitBuyside Trading SummitInsurance & Technology Executive Summit
space
Microsoft Technology Network
MSDN MagazineTechNetThe Architecture Journal
space