Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary Β» ISO 27001 Β» Personal Data Protection Act

Personal Data Protection Act

Any corporate body that deals with possesses, or handles any “sensitive personal data” or such information should maintain standard security practices and procedures relating to such data.

Additional reading

Cybersecurity for Small Businesses: Practical Security Strategies

There are several myths and misconceptions surrounding cybersecurity for small businesses. Why would the attackers target small businesses? They aren’t large enough.  Small businesses often do not have big budgets for cybersecurity. But they do have valuable data. So, cybersecurity isn’t just an IT issue. In reality, 48% of small businesses faced an attack by…

ISO 27001 Vendor Management: Identify, Assess & Control Supplier Risk

Did you know that over 60% of data breaches involve third-party vendors?  Every time you work with an external vendor, you’re giving them access to your systems, infrastructure, or data. Too much access, outdated contracts, or lack of oversight often go unnoticed until there’s a breach. ISO 27001 tackles this in Control A.15, which covers…

A Cautionary Tale: Lessons from the Star Health Insurance Data Breach

In August 2024, a cyberattack on Star Health Insurance made headlines by becoming the victim of a staggering data breach. Over 31 million customersβ€”roughly the population of Malaysiaβ€”saw their personal data exposed. Names, addresses, tax records, medical historiesβ€”information meant to remain private was suddenly at the mercy of threat actors.  This incident isn’t an anomaly….

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.