Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Wednesday, 24 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Data Privacy Day 2024: Part 1

Ahead of this year's Data Privacy Day (28th January 2024), our Gurus spoke to industry experts about data privacy trends.

by Guru Writer
January 26, 2024
in Featured
Data Privacy Day 2024: Part 1
Share on FacebookShare on Twitter

With Data Privacy Day coming up, we spoke to cybersecurity industry experts about the latest data privacy trends…

Allon Mureinik, senior manager, software engineering at the Synopsys Software Integrity Group:

“In today’s world of social media and open-source development, sharing seems to be the social norm. After all, we were all taught that sharing is caring. This is true not only for individuals but for companies too – whether intentionally on their social media accounts and company websites or unintentionally by the actions of their employees, companies might share more than they ought to.

In a world where information is the hottest commodity and any small sliver of data could be used by a competitor or even an unlawful attacker, companies would be well advised to prioritise the protection of their and their employees’ data.

The first step in any such effort is defining a set of policies about what can be shared, how it can be shared, and by whom. These policies should cover both the actions of the company’s employees (e.g., defining what work-related aspects can be shared on social media) and the technical measures taken to support these policies (e.g., blocking social media sites on work-issued laptops). While it may be compelling to create a “share nothing, hide everything” policy, this often isn’t advisable, or even possible. Any such policy should assess the risk any data exposure would create and weigh it against the potential benefit.

Second, having such a policy in place is all but useless if it isn’t shared with the employees, and training isn’t offered so they understand their role in protecting the company’s (and their own!) private data. The important part of this training isn’t just memorising rules and regulations, but having the employees truly understand the intent behind them, and what they are supposed to achieve.”

 

Eric Schwake, Director of Cybersecurity Strategy at Salt Security says:

“Data Privacy Day allows organizations of all sizes to reflect on their critical data and assess ways to ensure its safety and security. Customers and internal stakeholders trust organizations with their data, but the digital transformation has exposed it to more significant threats. As APIs are now touching this data more than ever, it’s essential to understand how they utilize it and promptly identify any potential risks. When considering data privacy, it’s crucial to consider the people, processes, and policies involved and leverage tools like the Salt Security platform.

Here are some tips for robust data privacy and security:

  1. Understand your APIs: Have processes in place to understand APIs used in your environment, including what data they access. Knowing this will allow you to apply policy governance rules to API’s across your organization.
  2. Embrace Access Control: Implement strong authentication and authorization protocols to ensure only authorized applications and users can access data. Use multi-factor authentication, API keys, and granular access controls.
  3. Encryption is Everything: Encrypt data at rest and in transit, rendering it useless to any unauthorized eyes that might intercept it.
  4. Vulnerability Vigilance: Regularly scan your APIs for vulnerabilities and patch them promptly. Proactive monitoring is vital to staying ahead of evolving threats.
  5. Transparency Matters: Open communication is vital. Clearly document your API usage policies and data privacy practices. Let users know what data you collect, why, and how they can control its use.

These steps allow organizations to build a robust data privacy ecosystem where APIs become guardians, not vulnerabilities. Commit to securing these digital gateways and ensuring data travels safely in the online world this Data Privacy Day.”

 

Darren Guccione, CEO and Co-Founder of Keeper Security, says:

“This Data Privacy Day, industry experts may warn about the new and novel ways attackers are violating your privacy and breaching your data. From the threats that come with generative AI to the rise of attacks targeting genealogy companies like 23andMe that hold highly sensitive personal information, it’s certainly clear the tools in a cybercriminal’s arsenal are growing more sophisticated. But the fundamental rules of protecting oneself in the digital landscape remain as relevant as ever.  Basic cybersecurity measures, such as creating strong and unique passwords, enabling multi-factor authentication and keeping software up to date, are frequently overlooked. A recent study by Keeper found a quarter of IT leaders confessed  that they even use their pet’s name as a password! 

Take the following steps to proactively protect yourself in the evolving digital world:

  1. Use strong, unique passwords for every account
  2. Enable multi-factor authentication
  3. Regularly update software
  4. Employ strict privacy settings on apps and browsers
  5. Avoid oversharing on social media
  6. Back up your important data

Before finding yourself overwhelmed by all the ways cybercriminals can attack you, sit down and consider these basic cybersecurity measures and whether you are following them. Number one is critical, but difficult to achieve using just your memory, so consider using a password manager to safely and securely store and manage passwords. By taking these proactive steps, you can significantly strengthen your data privacy and reduce the risk of falling victim to both current and evolving cyber threats.”

Bhagwat Swaroop, President, Digital Security Solutions at Entrust, says:

“Data Privacy Week is a great reminder for organizations that privacy is personal. The so-called conflict between “seamless user experience” and security is over — the only answer is that security has to be welcomed as part of the experience. Breaches affect our livelihoods, reputations, and  families, so a little friction is a feature, not a bug.  
 
Challenges are rising. Even the most highly-trained security professionals may miss increasingly realistic AI-generated phishing scams. Phishing resistant MFA technology is critical because it requires more authentication than just a click or a compromised password to put you at risk. And phishing resistant MFA is a good foundation for implementing Zero Trust principles. Win-win solutions are here today so that organizations can offer the kind of user experiences people really want – fast, easy, and secure. ”

 

Steve Bradford, Senior Vice President EMEA, SailPoint says:

“Organisations need to get on the front foot with protecting their data – not wait to be led by government regulation or red tape. As more data is created, the attack surface grows. 

“Ahead of regulation like NIS2 later this year, UK companies are making headway, but three-quarters still need to complete preparations to better protect themselves and their customers. As the threat landscape grows more sophisticated, the stakes have never been higher. The operational downtime, reputational damage, customer loss, and system restoration that follow any data breach can come at a huge cost for businesses. Protecting sensitive information and ensuring access is granted only to those who absolutely need it is essential.”

 

 

ShareTweet
Previous Post

Nineteen Group acquires SASIG

Next Post

Data Privacy Day 2024: Part 2

Recent News

Security Training Needs Google Maps, Not Christopher Columbus

Security Training Needs Google Maps, Not Christopher Columbus

June 24, 2026
Quantum computing: The data security conundrum

Trump Sets Post-Quantum Security Deadlines as White House Warns of Advanced Cryptographic Threats

June 23, 2026

Experts Warn: Passwords Still Winning Despite Passwordless Push

June 23, 2026
How Do Online Gaming Sites Keep Players and Their Data Safe?

KnowBe4 awarded in the email security industry

June 23, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol