DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

FTC Kicks Off “Start With Security” Business Education Initiative

Posted on July 2, 2015 by Dissent

The Federal Trade Commission is expanding its efforts to help businesses protect consumers’ information through a new initiative that will provide them with more information on data security.

Called “Start With Security,” the initiative includes new guidance for businesses that draws on the lessons learned in the more than 50 data security cases brought by the FTC through the years, as well as a series of conferences to be held across the country, with the first event set for Sept. 9 in San Francisco.

“Promoting good data security practices has long been a priority for the FTC,” said Jessica Rich, Director of the FTC’s Bureau of Consumer Protection. “The new Start with Security initiative shares lessons from the FTC’s 53 data security cases. Although we bring cases when businesses put data at risk, we’d much rather help companies avoid problems in the first place.”

The first conference will take place Sept. 9 and be hosted and co-sponsored by the University of California Hastings College of the Law in San Francisco, and will be the first in a series of events held across the country aimed at small- and medium-sized businesses in various industries. The second event, co-sponsored by the University of Texas Robert C. Strauss Center for International Security and Law, is slated for Nov. 5 in Austin, Texas.

Aimed at start-ups and developers, the September event will bring together experts to provide information on security by design, common security vulnerabilities, strategies for secure development, and vulnerability response.

The business guidance, published today, lays out ten key steps to effective data security, drawn from the alleged facts in the FTC’s data security cases. The document is designed to provide an easy way for companies to understand the lessons learned from those previous cases. It includes references to the cases, as well as plain-language explanations of the security principles at play.

In addition to the new guidance, the FTC has also introduced a one-stop website that consolidates the Commission’s data security information for businesses. It can be found at www.ftc.gov/datasecurity.

The guidance builds on the advice the FTC has provided to businesses in other publications, including “Protecting Personal Information,” “Mobile App Developers:  Start with Security,” and “Careful Connections: Building Security in the Internet of Things,” as well as ongoing posts on data security issues on the FTC’s business blog.

The new publication is available online, and print copies are available through the FTC’s publication bulk order site.

SOURCE: Federal Trade Commission

Related posts:

  • HIPAA Security Rule Facility Access Controls – What are they and how do you implement them?
  • FTC Takes Action Against Drizly and its CEO James Cory Rellas for Security Failures that Exposed Data of 2.5 Million Consumers
Category: Business SectorCommentaries and Analyses

Post navigation

← Harvard Investigates IT Security Breach
UK: Privacy watchdog ICO slashes its fines in half →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Integrated Oncology Network victim of phishing attack; multiple locations affected (2)
  • HHS’ Office for Civil Rights Settles HIPAA Privacy and Security Rule Investigation with Deer Oaks Behavioral Health for $225k and a Corrective Action Plan
  • HB1127 Explained: North Dakota’s New InfoSec Requirements for Financial Corporations
  • Credit reports among personal data of 190,000 breached, put for sale on Dark Web; IT vendor fined
  • Five youths arrested on suspicion of phishing
  • Russia Jailed Hacker Who Worked for Ukrainian Intelligence to Launch Cyberattacks on Critical Infrastructure
  • Kentfield Hospital victim of cyberattack by World Leaks, patient data involved
  • India’s Max Financial says hacker accessed customer data from its insurance unit
  • Brazil’s central bank service provider hacked, $140M stolen
  • Iranian and Pro-Regime Cyberattacks Against Americans (2011-Present)

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • On July 7, Gemini AI will access your WhatsApp and more. Learn how to disable it on Android.
  • German court awards Facebook user €5,000 for data protection violations
  • Record-Breaking $1.55M CCPA Settlement Against Health Information Website Publisher
  • Ninth Circuit Reviews Website Tracking Class Actions and the Reach of California’s Privacy Law
  • US healthcare offshoring: Navigating patient data privacy laws and regulations
  • Data breach reveals Catwatchful ‘stalkerware’ is spying on thousands of phones
  • Google Trackers: What You Can Actually Escape And What You Can’t

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.