Data Security new Threats to Water and Wastewater. Regulatory & Legislative Fixes on the Horizon.

IN March 2019 hackers got into a small Colorado water utility.

Are there regualtory parallels that can be made to secure the water and waste water systems? Yes, Water utilities & power distributors share similar industrial control systems

Which states have taken water security measures forward? NJ, NY 

E& E News | Hackers force water utilities to sink or swim

New Report. Key to State Data Security is Procurement.

Why is procurement key?

  • Procurement contracts can set the tone for state data security standards

  • Telecom infratructure is key to data security

  • States should offensively say what the data standards are, rather than what cannot be done

  • Private-public cooperation is the key for leading global solutions

  • Strengthen cyber security workforces

  • Contracted cloud solutions can fill in when funding does not exist for state data security experts

 

The Kosciuszko Institute| CYBE…

Lege Trend. An internet bill of rights? Hello all tech & telecom: this one is for you. Marketing and data limits.

Activists are promoting an Internet bIll of Rights, the kind of bill state legislatures love. What would it do?

  • Keeping your “browsing history” private
    • Except: fraud or potential crimes  
  • Full disclosure when being monitored, and the right to opt out
  • Preserving the privacy of your social media accounts.
  • Ownership of your personal, digital content
  • Notification of injurious data breaches
  • Fair play on social media platforms and/or internet providers
  • Protecting children on social media

Hidden costs of data breaches. Business Costs.

Case Study: Target. Target’s Securities & Exchange Commission filings show:

  • costs thus far of $290 Million
  • estimated future costs will total $370 Million

Case Study: Anthem Insurance. Anthem’s SEC filings show it cannot estimate the cost of its data breach because:

  • ongoing investigation
  • early stage of legal proceedings progress
  • unknown damages
  • uncertain number of lawsuits that will be filed

In additional to actual costs, there are soft costs to a data breach such as:

  • lost contract…

INTERIM. Millions in Costs for Data Breach in Dallas County

When did Dallas County have a data breach? In December 2015, it came to light that Dallas County had left personally identifiable information from 10s of 1000s accessible online for more than a decade.

How much does an average data breech cost to remediate? $80 per record. If it exposed 50,000 records that is a $4 million remediation minimum.

How does the remediation cost cover for Dallas County?

  • information technology experts to investigate, repair, and secure data (Procurement…

West Coast State New Data Security Agency. Key Informed Intel. Read the Legislation. Find Procurement Opportunities for Texas.

  • The Bill creating the Washington State’s new Office of Privacy and Data Protection: Washington State House Bill 2875
  • What will be the purpose of the new Office of Privacy & Data Protection?
    • ​Determine what information state agencies are collecting
      • Do we know in Texas? No
    • Work with agencies to reduce the amount of consumer data being collected
    • Monitor & assist wit citizen complaints
    • Annual privacy review of state data collection
    • Educate Washington State residents about…

All the State Budget Data Security Items. Procurement. Procurement. Procurement.

In Legislative Appropriation Request Trends:

  • 3rd party contracts to assess security at agencies
  • HB 2783 (2013) required a study to see if agency computer systems were legacy.
    • Hello, 3rd party contracts to replace or upgrade legacy systems
    • Legacy systems are a higher security risk
    • Over 1/2 agency computer systems are

In 2015’s State Budget:

  • Article IX, Section 9.10 : DIR prioritization of state agencies’ cybersecurity projects
  • Article IX, Section 9.11, Cybersecurity…

3 Points Informed Intel. Why Hackers Target Healthcare Over All Other Industries.

Hacking incidents by industry:

  • 23% of data breaches occured in healthcare
  • 18% of data breaches occured in financial services
  • 16% of data breaches occured in education

34% of healthcare data breaches are caused by employee error

The average notification timeline after a breach:

  • 69 days to detect the incident
  • 7 days to contain it
  • 43 days to analyze what happened
  • 40 days to notify potentially affected individuals

Health IT Security | Healthcare Data Breaches Most Common in 2015…

Data Security Procurement Opportunity

Which governmetnal entity is seeking contractors for data security? Department of Defense

What is the data security objective? $600 million in computer system for background checks

Can similar procument opportunities present itself in Texas? Absolutely, keep your eyes open and subscribed to informedintel.com

Reuters | Pentagon to tap private industry for background check IT system