A look at foreign countries’ practice shows that under the General Data Protection Regulation (GDPR), companies are generally subject to fines for failing to implement inadequate security measures which then lead to the leaking of personal data. Also, data subjects can now demand compensation from companies for leaking their data. The Ecovis consultants recommend that start-ups in particular should deal with the issue, and set up the appropriate protective mechanisms, right from the word “go”.

The ECOVIS ProventusLaw Data Protection, Cyber, and IT Security, Operational Risk Team has drawn up the following list of recommendations on how to increase cyber resiliency, both for businesses and consumers.

Recommendations for Business

  • Implement breach detection, investigation, and internal reporting procedures at your company. You will be prepared in advance for crisis management and this will facilitate decision-making, responsibilities etc.
  • Keep a record of any personal data breaches, and an investigation report.
  • Report known personal data breaches to the relevant supervisory authority. This must be done within 72 hours of becoming aware of the breach.
  • Where feasible, ensure fair communication with affected data subjects and explain to them how to mitigate the risks.
  • Ensure both external and internal communication about what has happened.
  • Make an action plan on how to prevent similar issues in the future.
  • Train your staff.
  • Use the salt (cryptographic) method for passwords, where certain characters are inserted in each password during encryption. This makes stealing the password hashes worthless.
  • Ensure continuous monitoring of IT systems and improvement of cybersecurity systems.
  • Perform regular IT security tests and/or audits.

Recommendations for Consumers

  • Change a leaked e-mail password.
  • Do not use the same passwords for different logins on different systems.
  • Do not use work e-mail accounts for personal services.
  • Use a password manager to create different passwords for all sites.
  • Consider changing personal documents (to prevent your data from being used for fraudulent purposes).
  • Warn relatives of possible cases of fraud and false reports against them.
  • Do not distribute or share stolen personal data or references to it, as such behaviour only adds to the crime committed.

Implementing these requirements will help organisations to ensure compliance with the General Data Protection Regulation, explain the Ecovis experts.

For further information please contact:

Loreta Andziulytė, Attorney at Law, Partner, ECOVIS ProventusLaw, Vilnius, Lithuania

Email: loreta.andziulyte@ecovisproventuslaw.com  

Über ECOVIS AG Steuerberatungsgesellschaft

Ecovis is a leading global consulting firm with its origins in Continental Europe. It has almost 8,500 people operating in nearly 80 countries. Its consulting focus and core competencies lie in the areas of tax consultation, accounting, auditing and legal advice.

The particular strength of Ecovis is the combination of personal advice at a local level with the general expertise of an international and interdisciplinary network of professionals. Every Ecovis office can rely on qualified specialists in the back offices as well as on the specific industrial or national know-how of all the Ecovis experts worldwide. This diversified expertise provides clients with effective support, especially in the fields of international transactions and investments – from preparation in the client’s home country to support in the target country.

In its consulting work Ecovis concentrates mainly on mid-sized firms. Both nationally and internationally, its one-stop-shop concept ensures all-round support in legal, fiscal, managerial and administrative issues.

The name Ecovis, a combination of the terms economy and vision, expresses both its international character and its focus on the future and growth.

Firmenkontakt und Herausgeber der Meldung:

ECOVIS AG Steuerberatungsgesellschaft
Ernst-Reuter-Platz 10
10587 Berlin
Telefon: +49 89 5898-266
Telefax: +49 (30) 310008556
http://www.ecovis.com

Ansprechpartner:
Gudrun Bergdolt
ECOVIS AG Steuerberatungsgesellschaft*
Telefon: +49 (89) 5898-266
E-Mail: gudrun.bergdolt@ecovis.com
Für die oben stehende Pressemitteilung ist allein der jeweils angegebene Herausgeber (siehe Firmenkontakt oben) verantwortlich. Dieser ist in der Regel auch Urheber des Pressetextes, sowie der angehängten Bild-, Ton-, Video-, Medien- und Informationsmaterialien. Die United News Network GmbH übernimmt keine Haftung für die Korrektheit oder Vollständigkeit der dargestellten Meldung. Auch bei Übertragungsfehlern oder anderen Störungen haftet sie nur im Fall von Vorsatz oder grober Fahrlässigkeit. Die Nutzung von hier archivierten Informationen zur Eigeninformation und redaktionellen Weiterverarbeitung ist in der Regel kostenfrei. Bitte klären Sie vor einer Weiterverwendung urheberrechtliche Fragen mit dem angegebenen Herausgeber. Eine systematische Speicherung dieser Daten sowie die Verwendung auch von Teilen dieses Datenbankwerks sind nur mit schriftlicher Genehmigung durch die United News Network GmbH gestattet.

counterpixel