SMBs Don’t Understand Cyberbreach Notification Laws

Meanwhile, 14% said they were not confident at all that they new their state’s policies on what to do should they be a victim of a cyberbreach.

Time is definitely of the essence after an attack occurs. “Most of the time, when [valuable] information leaks out of a company, it is instantly being monetized on underground forums,” Bogdan Botezatu, senior e-threat analyst for antivirus firm Bitdefender, told Software Advice.

Having different laws in different states is confusing for business leaders, and having a single law across the entire company would certainly make it easier to create and implement a strategy. Until that happens, there is some clarification at hand.

Heather Buchta, partner at legal firm Quarles & Brady and an expert in e-commerce, software and technology law, told the study authors that “although state laws vary, they do share common features. When defining personally identifiable information, the statutes “almost always” include a combination of an individual’s name together with any “sensitive data elements,” such as SSN, driver’s license numbers, credit card PINs and account passwords, for instance.” However, she says, the definition of sensitive data elements is what can vary across states.

Less than 50% of respondents said they had breach response plans, while 29% reported having insurance.

Your first line of defense, the report cautions, is always your employees. Fully 74% responded that their staff was trained in security, but the report notes that training can mean different things to different people. Most companies simply communicate statements such as “never leave your laptop in a public area” and “change your password monthly.”

Arlie Hartman, security advisor for IT security solutions provider Rook Security, tells Software Advice that training should “incorporate cautionary tales of what regular users have done that led to a breach. The material must have metaphors that make it relatable to users. Institute a culture of security: It’s not a job position, it is a duty for all employees.”

Read the full report here.


Chief Executive

Chief Executive magazine (published since 1977) is the definitive source that CEOs turn to for insight and ideas that help increase their effectiveness and grow their business. Chief Executive Group also produces e-newsletters and online content at chiefexecutive.net and manages Chief Executive Network and other executive peer groups, as well as conferences and roundtables that enable top corporate officers to discuss key subjects and share their experiences within a community of peers. Chief Executive facilitates the annual “CEO of the Year,” a prestigious honor bestowed upon an outstanding corporate leader, nominated and selected by a group of peers, and is known throughout the U.S. and elsewhere for its annual ranking of Best & Worst States for Business. Visit www.chiefexecutive.net for more information.

Share
Published by
Chief Executive

Recent Posts

Best & Worst States for Business 2024 Survey Finds Unsettled CEOs Ready To Roam

Latest Chief Executive survey of Best & Worst States for Business demonstrates upward mobility is…

15 hours ago

Best & Worst States: CEO Poll Finds 49% ‘More Open’ To New Locations Than A Year Ago

Our 2024 Best & Worst States for business survey finds chief executives settling into new…

15 hours ago

Best & Worst States: ‘Mr. Wonderful’ Is Now Endorsing Entire States, Not Just Startups

Shark Tank celebrity investor O’Leary really loves Oklahoma and other 'flyover' states while training specific…

15 hours ago

Best & Worst States: How An Office Megacenter Is Adjusting To New Realities

Arlington County, Virginia, takes creative and multipronged approach to cutting its high office-vacancy rate.

15 hours ago

Best & Worst States: Why An Indian Graphite Manufacturer Chose North Carolina

Epsilon Advanced Materials is tapping into American EV transition by siting a $650-million plant.

15 hours ago

Will Delaware Stay Supreme?

How did the nation’s second-smallest state become a business mecca—and will it stay that way?

5 days ago