Management Liability Update

Archive for the ‘IT Consultants’ Category

Tech Vendors Need Strong Hybrid Mix of Legal and Risk Management Counsel to Avoid Fraud Lawsuits

Icon July 12, 2010 – 9:34 am

A growing list of technolgy vendor settlements should be a wake up call to tech vendors both large and small.   For example, last month, HP resolved a legacy EDP lawsuit to the tune of $460 million.  The facts of the case are not very complicated.  A decade ago, British firm BSkyB retained EDS to provide a CRM system for BSkyB’s help [...]



New MA Data Protection Law Impacts Companies Around the Country

Icon March 2, 2010 – 7:20 am

As of March 1, 2010, any company, organization, association or entity that has any sensitive personal information of a Massachusetts resident must now comply with a new law – Standards for the Protection of Personal Information of Residents of the Commonwealth (201 CMR 17.00).  This new law impacts an entity even if it is not [...]



FTC Points Out P2P Risk

Icon February 23, 2010 – 7:40 am

In a February 22, 2010 press release, the Federal Trade Commission states that it notified “almost 100 organizations that personal information, including sensitive data about customers and/or employees, has been shared from the organizations’ computer networks and is available on peer-to-peer (P2P) file-sharing networks to any users of those networks, who could use it to commit identity [...]



OCR Website Posts List of Breaches As Required Under HITECH Act

Icon February 23, 2010 – 7:03 am

On February 22, 2010, as required by section 13402(e)(4) of the HITECH Act, the Office of Civil Rights (OCR) website posted a list of the covered entities that have reported breaches of unsecured protected health information affecting more than 500 individuals.  By posting this information on the OCR website, OCR has met its HITECH Act obligation, which required [...]



Google Attacks Provide a Valuable Lesson

Icon January 26, 2010 – 8:22 am

The facts are starting to surface regarding the recent attacks against Google, Yahoo! and Microsoft – all of which have been linked to Chinese interests.  According to one recent report, the attackers selected employees with access to proprietary data, determined their social networking friends and then hacked into those accounts.  Once in control of the friends’ [...]



Virtualization Security Risk

Icon December 16, 2009 – 4:28 pm

If you are a larger middle-market company, another “below the radar” IT risk factor that may be impacting you may be driven by the cost savings inherent in using virtualized servers and desktops.  A security breach in a virtualized environment can have greater consequences than the same breach in a traditional IT environment because it is [...]