"The healthcare and pharmaceutical industries are among the most heavily regulated in the world. They have to ensure compliance with HIPAA, HITECH and numerous other state and federal consumer privacy regulations, and also ensure that sensitive data is protected and kept private. These two objectives pose significant challenges, and organizations need solutions that will mitigate the risks as well as ease, simplify and reduce costs associated with both,” said Michael Osterman, principal of Osterman Research, Inc. “Healthcare and pharmaceutical organizations should be encouraged by the fact that regulated businesses are finding success with the BIOWRAP solution. It promises to be technology that will allow them to achieve security, privacy and compliance goals while reducing costs and complexity.”
“Protecting data and remaining within the confines of compliance are indispensible pillars of our IT security strategy. Finding a cost-effective solution, implementing it and training employees on how to use it are challenges we are faced with on a daily basis,” said Tom Mason, vice president of IT, Insurance Office of America. “BIOWRAP’s ability to provide protection and compliance over the full lifespan of sensitive data through an easy-to-use interface has improved our security and compliance posture, and allowed us to eliminate many costs and user-related issues.”
Powerful Data Protection - Anywhere
BIOWRAP is a powerful solution for protecting, tracking and managing sensitive electronic information, wherever it may be located and however it may be delivered, whether it is in transit or at rest, or inside or outside the trusted network.
BIOWRAP incorporates file management for access rights, file retention, file information and real-time notification of all access, including unsuccessful access attempts.
Users can define access rights in multiple ways:
o Personal files: Only the creator of the file can open it.
o Reader Identity: A GlobalSign Digital Certificate (Digital ID) is required to access the file.
o Company/Group Only: Only members of the company or group can access the file.
o Security code: The file is password protected.
o Username/password: A registered Reader can open the file.
o Public: Anyone can access the file.
Users can instantly change the lifespan of an active file, expire an active file to prevent future access and reactivate expired files in real time.
Forensic auditing of all file activity is automatically recorded and provides information such as time and date of access, user identity and IP address; it also tracks unauthorized activity.
“A recent survey demonstrates that a high percentage of healthcare IT teams are spending over 50 percent of their work days dealing with regulatory compliance issues. In some cases, IT security teams are devoting up to 100 percent of their time to compliance issues. Compliance is certainly necessary in today’s IT environment, but it can defocus organizations away from the critical importance of security,” said Lila Kee, chief product officer for GlobalSign. “With BIOWRAP, organizations are striking a successful balance. They are addressing everything that HIPAA, HITECH, the FDA and other regulations and agencies require while at the same time ensuring protection and privacy of sensitive information.”
| To upload an avatar photo, first complete your Disqus profile. | View the list of supported HTML tags you can use to style comments. | Please read our commenting policy. |
Monitoring And Measuring Cloud Providers' Security Performance
There is no ignoring the cloud, which means that IT professionals must find ways to monitor and measure the performance of cloud providers. While moving even in part to a cloud model is a big change for many reasons, the most significant difference is a loss of direct control. Just as security groups often struggle with managing security inside a corporation when in a governance role, we struggle even more with governing the security of assets that no longer sit within our own data centers. The challenge is to develop and implement a strong governance model for these cloud offerings that ensures that security is part of the conversation.
How to Manage Identity in the Public Cloud
Use of the public cloud for enterprise applications complicates what was already a complicated task: identity management. As companies increase their use of cloud-based applications, IT and security professionals must make some tough and far-reaching decisions about how to provision, deprovision and otherwise manage user access. This Dark Reading report examines the options and provides recommendations for determining which one is right for your organization.
Spot Trouble In The Cloud: Adapting Security Monitoring & Incident Response.
Security monitoring, incident response and forensics are essential, even in the cloud. But the cloud by definition implies relinquishing at least some control, which can make these practices problematic. In this report, we identify the challenges of detecting and responding to security issues in the cloud and discuss the most effective ways to address them.
Other reports from the Cloud Security Tech Center:
MORE NEWSFEED >>>