 An increasing concern for today’s public and private sector organizations is the protection of proprietary data sent to third-party organizations. Recently publicized data breaches highlight the need for ensuring that safeguards are in place to minimize the risk of sharing data. Despite numerous policies and procedures that organizations dictate to their partners regarding data security, data breach incidents continue to plague all industries, as well as the general public, which must face the consequences when such incidents occur. Deloitte Consulting LLP conducted an external review to understand the perceived threats and vulnerabilities associated with sharing sensitive data with third parties, as well as to gain insight into industry leading practices leveraged to ensure that third parties are appropriately safeguarding shared data. For purposes of this effort, shared data encompasses information sent from an originating entity to an unrelated entity or “third party” either electronically or in paper form for business purposes. The report consists of independent research, one-on-one interviews with key stakeholders and a roundtable discussion that brought together these key individuals. Providing a snapshot of today’s third-party data sharing landscape and emerging trends, the report focuses on the following three categories: - An Integrated Risk Approach – What techniques are used by external organizations to evaluate and measure the risk of sharing data with third parties?
- Third-Party Data Exchange Procedures – What internal processes are organizations implementing to manage third-party compliance of security policies and procedures?
- Tools & Technologies – What technologies are organizations deploying to support their risk evaluation and compliance processes?
Download the complete report below. Related Content: Podcast: Playing It Safe: How to Protect and Share Sensitive Data with Third Parties
Overview: Identity Theft
|