Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » GDPR » Council Working Party on Data Protection

Council Working Party on Data Protection

The Council Working Party on Data Protection is a body responsible for the execution of data protection laws and policies applied specifically to the field of law enforcement. It collaborates closely with Europol on their Information Management Strategy (IMS). The main aim of the council is to to facilitate smoother information exchange across borders in line with the latest principles and rules of personal data protection. The council comprises of one expert representatives from each of the member states and is chaired by the member holding the rotational position of Council President.

Additional reading

Risk Exposure for Assessment, Impact, and Control

TL,DR: Risk exposure is quantified using the formula: Probability of Occurrence x Total Potential Loss. For example, a breach with 30% probability and $500,000 potential loss equals $150,000 in calculated risk exposure 7 types exist by nature: operational (process failures), market (economic fluctuations), reputational (brand damage), geopolitical (political changes), compliance (regulatory violations), strategic (poor decisions),…

FISMA Requirements: List of Official Mandates and Practices

TL,DR: FISMA requires federal agencies and contractors to develop, document, and maintain security programs through 7 core activities: system inventory, risk categorization, baseline controls, risk assessments, security plans, certification/accreditation, and continuous monitoring Agency officials and CIOs must report annual reviews to the OMB. FISMA references FIPS 199 (categorization), FIPS 200 (minimum requirements), NIST SP 800-53…

HIPAA Guidelines for Telehealth Companies

A CDC report states, ‘the number of telehealth service providers in the United States went up by 154% in 2020 compared to 2019’. This radical spike kept climbing even after the COVID-19 pandemic. Large volumes of medical data were transmitted over electronic mediums in this period alone. With this unexpected influx of ePHI (e- Protected…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.