How compliance training promotes a safe company culture
Workplace safety
If your company accepts credit or debit card transactions, you’re likely familiar with the Payment Card Industry Data Security Standard (PCI-DSS). But how confident are you that your employees understand their role in keeping sensitive cardholder data secure? With 70% of consumers preferring to pay with credit and debit cards over cash when making purchases, it’s the responsibility of businesses accepting this convenient form of customer payment to comply with rules protecting cardholder data. Annually training your employees on how to properly accept, transmit and store card transactions protects your business against fraud and data breaches, penalties and reputational harm. […]
Risk Management Magazine — In a bylined article, John Brushwood, Legal Counsel at Traliant, examines the rapidly evolving data privacy landscape. To avoid the risks of noncompliance, he says organizations must continually review and revise their privacy program and ensure their employees are current on the latest training.
“While data privacy laws are evolving rapidly, the amount of data organizations collect and how they process it evolves more quickly. The best position an organization can take is a comprehensive approach to understanding the full global landscape.” — John Brushwood, Legal Counsel at Traliant
Failure to protect and process personal data without violating privacy rights can have serious consequences, including reputational harm, monetary loss and legal entanglement. Brushwood cites the 2023 case in which the European Union fined a social media company over $1.2 billion for failing to protect personal data according to the requirements under the GDPR. The fine was the largest of its kind.
While noncompliance risks may seem daunting, there are many resources available to manage risk and protect people’s privacy rights. Brushwood points to a comprehensive privacy framework set forth by the National Institute of Standards and Technology as a helpful guide to strengthening an organization’s privacy program, managing risk and protecting people’s privacy rights.
Data privacy laws are evolving rapidly, but the amount of data organizations collect and how they process it evolves more quickly. Organizations must continually review and revise their privacy program and ensure their employees are current on the latest training, as not being armed with the latest privacy requirements can have detrimental impacts for an organization. Data privacy laws will only continue to expand and the best position an organization can take is a comprehensive approach to understanding the full global landscape.
Click here to read the full article.