Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

FCC Wants New data Breach Reporting Rules for Telecom Carriers

FCC Wants New data Breach Reporting Rules for Telecom Carriers

The Federal Communications Commission (FCC) has proposed more rigorous data breach reporting requirements for telecom carriers in response to breaches that recently hit the telecommunications industry.

On Wednesday, Chairwoman Jessica Rosenworcel shared the proposal in the form of a Notice of Proposed Rulemaking (NPRM), the first step in changing the FCC’s rules for alerting federal agencies and customers of data breaches.

Also Read: 12 Benefits of Data Protection for Business Success

“Customers deserve to be protected against the increase in frequency, sophistication, and scale of these data leaks, and the consequences that can last years after an exposure of personal information,” Chairwoman Rosenworcel said [PDF].

“I look forward to having my colleagues join me in taking a fresh look at our data breach reporting rules to better protect consumers, increase security, and reduce the impact of future breaches.”

Updates proposed by the FCC to its current data breach reporting rules for mobile carriers include:

  • Eliminating the current seven business day mandatory waiting period for notifying customers of a breach
  • Expanding customer protections by requiring notification of inadvertent breaches
  • Requiring carriers to notify the Commission of all reportable breaches in addition to the FBI and U.S. Secret Service

The FCC also wants feedback regarding the inclusion of specific categories of information in breach alerts carriers sent to customers, which would help ensure the breach notifications come with actionable info for consumers.

The NPRM also proposes revisions to the Commission’s telecommunications relay services (TRS) data breach reporting requirements.

“Current law already requires telecommunications carriers to protect the privacy and security of sensitive customer information,” Rosenworcel added.

“But these rules need updating to fully reflect the evolving nature of data breaches and the real-time threat they pose to affected consumers.”

As part of this same effort, the FCC proposed new rules to fend off SIM-swapping attacks and port-out fraud in September to further reduce the risk of telecom customers’ information being improperly exposed.

Also Read: Privacy policy template important tips for your business

In February, T-Mobile learned of a data breach following reports from multiple customers who became victims of SIM-swapping attacks.

In August, the same carrier disclosed a massive data breach after attackers brute-forced their way through its network and gained access to testing environments, allowing them to steal records belonging to 54.6 million current, former, or prospective customers.

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us