Attend IT Blog

Attend IT Limited has been serving the Brentford area since 2003, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

The FTC Has New Cybersecurity Rules… Is Your Business Compliant?

The FTC Has New Cybersecurity Rules… Is Your Business Compliant?

The Federal Trade Commission has spent years providing businesses with guidance and advice concerning their security. Now, this guidance has converted into enforceable mandates.

In short, your business needs to have systems and protections in place—not plans—in order to abide by last month’s executive order that focuses on the prevention of cybercrime and fraud. Let’s touch on what needs to be accomplished in order for you to do so. 

FTC Guidelines Apply to More Industries than You’d Think

While the FTC does have specific guidelines for some industries (like financial and HR service providers), there are plenty of rules and regulations intended to protect a consumer’s privacy and data security.

In essence, if you collect, store, and/or manage personal data in any form, you need to meet a few key baseline requirements.

What Does a Business Need to Comply with These Updated Guidelines?

The Federal Trade Commission’s new guidelines require SMBs to follow a few processes: 

  • Businesses must clearly inform customers and clients about their data collection policies and how this data will be used.
  • Businesses must have explicit consent from the customer/client to collect or share their personal information.
  • Businesses must maintain up-to-date privacy policies to ensure compliance with these guidelines and beyond.

In addition, there are some more technical safeguards that every business must have in place moving forward:

  • The FTC also requires that any access to customer data be protected by multi-factor authentication, which requires more than just a password or passcode. 
  • All data should be encrypted—scrambled beyond recognition if the right key isn’t present—both while it is being stored and while it is being shared.
  • It is also necessary for businesses to have a designated person in charge of their security program, per the FTC. This can either be an internal team member or an outsourced professional.

The Federal Trade Commission also requires businesses to maintain particular documentation regarding their cybersecurity. These documents include the likes of:

  • A written information security program, which outlines where your data is stored and who has the ability to access it.
  • An incident response plan, which is a simplified guide to lead your team through the appropriate processes if a hack or other cyber incident should be discovered… from detection and containment, progressing through your investigation, and closing with notification and recovery.

What Happens if You Neglect These Rules, Regulations, and Requirements?

Let’s say you don’t meet the standards required of you by the FTC. You can unfortunately expect a few pretty severe penalties… as in $51,000 per violation. This assumes you haven’t been breached. If you have been, and the FTC discovers that you lacked encryption or hadn’t implemented MFA, these fines can potentially swell into the millions.

You Can’t Afford Noncompliance

Failing to meet the rules that the FTC (or any applicable regulatory agency or body) holds you to simply isn’t an option for a business that plans for success. Not only is it expensive and risky, but it also signals to your prospective customers that your business is lax in essential protections. In comparison, remaining compliant shows you are invested in protecting yourself and your clientele.

We can help you ensure that your business meets its essential technology requirements in compliance with the standards expected of it. Give us a call at 020 8626 4485 to learn more.

4 Steps to Prepare Your Business for AI
From “Surviving” IT to Opening New Revenue Streams
 

Mobile? Grab this Article!

Qr Code

Tag Cloud

Security Technology Best Practices Productivity Business Computing Business Cloud Network Security Data Tip of the Week Software IT Support Hackers Efficiency Managed IT Services Data Recovery IT Services Innovation Backup Data Backup Privacy Disaster Recovery Hosted Solutions communications Phishing Saving Money Malware VoIP Small Business Hardware Email Computer Cybersecurity Collaboration Mobile Devices Internet User Tips Outsourced IT Workplace Strategy Business Continuity Ransomware Cloud Computing Business Management AI Quick Tips Microsoft Users Upgrade Workplace Tips Compliance Training BDR Remote Gadgets Passwords Automation Information Technology Productivity Communication Smartphones Internet of Things IT Support Smartphone Server Managed Service Artificial Intelligence Current Events Risk Management Wi-Fi Mobile Device Spam Employee-Employer Relationship Social Media BYOD Mobile Device Management Managed Service Provider Network Managed IT Mobility Managed IT services Budget Android Meetings Covid-19 Microsoft Office Google Save Money Wireless Password Networking Printers Human Resources Avoiding Downtime Document Management Office Printing Information Windows 7 Remote Workers VPN Remote Computing Chrome History Hosted Solution Windows Router Instant Messaging Encryption Firewall Content Filtering Computers Data Management Cost Management Windows 10 Project Management MSP Tech Term Monitoring Virtual Private Network Help Desk Time Management Remote Work Video Conferencing Laptop Physical Security Marketing Recovery Telephone Systems Government End of Support Facebook Hacker Personal Information Hard Drives Solid State Drive Virtualization Battery Automobile Telephony Holiday Big Data Two-factor Authentication Audit Employer-Employee Relationship Value Saving Time Data Breach Data Storage Data Security Mobile Software as a Service Conferencing Redundancy Maintenance Devices Proactive Computing Wireless Internet Hybrid Cloud Business Technology Vendor IT Service Machine Learning Paperless Office Backup and Disaster Recovery Voice over Internet Protocol Mobile Office Manufacturing Customer Relationship Management Printer Managed Services Mobile Computing Proactive IT Social Engineering Transportation Going Green Browser Miscellaneous Applications Private Cloud Operating System iPhone Health Money Administration Colocation Windows 10 Advertising PDF Apps Legal Wireless Technology Flexibility Update Cybercrime Black Market Shadow IT Disaster Education Application Save Time Work/Life Balance Office 365 Antivirus Entertainment HIPAA Phone System Analytics Electronic Medical Records Cleaning Hacking Smart Technology Vendor Management Samsung Company Culture App SaaS Upgrades Vulnerability The Internet of Things Dark Web Nanotechnology OneNote Business Intelligence Managed IT Service Data Protection Commerce Patch Management Regulation Professional Services Travel Word Apple User Error Data Loss File Sharing Storage Lifestyle Evernote Workers Spyware intranet Blockchain IoT Analysis Chromebook Smart Tech Connectivity Streaming Media Content Filter Management Financial Technology Gamification Students Unified Communications Remote Monitoring Wasting Money Amazon Virtual Assistant Alexa for Business WPA3 File Storage Bandwidth Telephone Access Control Utility Computing Payroll SMB Downtime E-Commerce Payment Cards Break/Fix e-waste Employees Smartwatch Development Azure Active Directory Windows Server Cybersecurty Window 10 Online Storage Fiber Optics Windows Server 2008 Copiers Voiceover Internet Protocol Business Telephone Computer Repair Troubleshooting CRM Workstations Outsource IT PCI DSS Regulations Compliance Cost Remote Working Leadership Bitcoin Finance Infrastructure Videoconferencing Streaming Customer Service Copier Authentication Hiring/Firing RMM Windows 11 Cabling Going Paperless Inventory Management Employer/Employee Relationships Outsourcing How To Microsoft Outlook Files 2FA Regulations Paperless Solutions Microsoft 365 Strategy Consulting Decision Making Ergonomics Signage Customer Experience Support Compliance IT Robot Google Drive Alert Law Enforcement Reputation Social Relocation Search Internet Exlporer Text Messaging Office Tips HaaS Video Games Scalability Humor How To Best Practice USB Virtual Reality Managing Stress Point of Sale Identity Theft Worker Commute Politics Experience Music Books Safety Emergency Worker Scam Computer Accessories Charger Computer Care Unsupported Software Television Business Strategy WiFi Unified Threat Management Consultant Touchscreen Emails Webinar IT solutions Windows 10s Hard Disk Drive iOS Computer Fan Root Cause Analysis Augmented Reality CrashOverride Settings Screen Mirroring Cast HBO IT Management IT Solutions WIndows Server 2008 Outlook Shortcut Excel Sync Adobe Licensing Tablets NFL Windows Ink Google Maps Google Docs Microsoft Excel Sports Cortana Legislation Comparison Specifications Sales Retail Gifts Credit Cards FAQ Wireless Charging WannaCry Updates Microsoft Word eWaste Device Security Tech Support Fraud Edge Ciminal IT budget Identities Language Virus Websites Data Theft App store Mobile Security Identity Data Privacy Hard Drive Google Assistant Twitter Computer Forensics Gmail PowerPoint Memory Financial Bring Your Own Device Testing Camera Projects Display Co-Managed Services Hyperlink Wasting Time Accessory Peripheral Admin Keyboard Shortcuts Security Cameras Employee 5G Medical IT YouTube OneDrive Sabotage PC Server Maintenance Investment ROI Windows Server 2008 R2 Micrsosoft Digital Signage Processor Benchmarks Myths Threats Scams Managed Services Provider Facebook Privacy eCommerce Holidays Inventory Communitications Hosted Desktop Smart Devices Keyboard Net Neutrality Internet Service Provider Workstation Telework Audits Solutions Policy Procedure Organization Innovations Reviews Biometrics Computer Tips Work Windows 8.1 Voice Supply Chain Environment Workplace Strategies Print Management Healthcare SSD Remote Management Telephone System Print Database Virtual Desktop Proactive Management eSignature Cyberattack Cameras Digital Cameras Mixed Reality Displays Stories Learning Windows PICK 3