Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - News & Analysis - The Privacy Revolution: Unleash the Power of Privacy to Protect the Organization
News & Analysis

The Privacy Revolution: Unleash the Power of Privacy to Protect the Organization

ISBuzz TeamBy ISBuzz TeamSeptember 4, 2014Updated:July 8, 20244 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
privacy
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

As part of our transformation from an industrial to an information society, we are witnessing a global privacy revolution. The sophistication and proliferation of smartphones, the pervasiveness of social media, the “always-on” ethos that has emerged, and the blurred lines between our personal and professional lives mean there are opportunities for our privacy to be compromised every day, both at work and at home. As information security and privacy professionals, we have a unique opportunity to change the security industry forever by collaborating and championing privacy as the security enabler it truly is.

Featured Download: A New Approach to Managing Employees’ Personal Internet Use at Work

As lawmakers play catch up with the technological shifts taking place that put our privacy in the crosshairs, a groundswell of public awareness is rising around personal privacy that has profound economic, political, civil liberty and security implications.The right to privacy in all spheres of life is pretty solidly protected in Europe, which is leading the way with a revamp of the Data Protection Directive to accommodate modern technology and globalization.

But one year after the Snowden revelations, the US is still struggling to define the scope of personal privacy protection and has stood up budding, fragile legislation such as the USA Freedom Act. Thankfully, the proposed “Consumer Privacy Bill of Rights” and the recent Supreme Court’s decision in Riley vs. California foreshadow broader privacy legislation, which may well bleed over into the workplace.

Personal web use at the workplace gives rise to 90% of malware threats, exposing companies to loss of trade secrets, data breaches, and financial theft. And cyber threats are up.[i] Increased experience and training of hackers has led to record numbers of malware incidents and data breaches, resulting in record high losses and related costs.[ii]Additionally, companies facing inappropriate web use (e.g., cyber loafing, gambling, or accessing pornography) increase their liability, which is costing US businesses $178 billion annually in lost productivity.[iii]

As global privacy laws continue to evolve, one of the most difficult challenges companies face remains the different, sometimes conflicting privacy-related obligations across jurisdictions. Complicating the situation is that the line between personal and work life continues to blur. People are conducting personal business at work and professional business at home. A constant barrage of work-related messages is becoming a “new normal,” according to recent research from the Center for Creative Leadership (CCL). The CCL recently surveyed approximately 500 executives, managers, and business professionals, more than three-quarters of whom used smartphones for flexible-work situations. Respondents who had smartphones used them for work purposes an average of 13.5 hours per day and nearly five hours on weekends, for a total of 72 hours per week.[iv] This “new normal”[v]is driving an unspoken, intensifying tension around security and workplace privacy.

Faced with trying to secure organizations in light of these realities, the information security community is developing tools to “lock down” and monitor employees and implement stricter Acceptable Use Policies, but the employee threat surface continues to expand, while trust between employers and employees erodes.

As an information security professional, what can you do? You can become an advocate for employee privacy as part of the security solution. Embrace the reality that employees are going to access the corporate network for personal use and grant them access to a contained but easy-to-use personal network that complies with privacy requirements, reduces corporate liability and strengthens organizational security. By giving them a private, secure space to conduct web browsing at work, you can avoid monitoring, restore their trust, reduce your employer’s liability and empower employees to become the greatest tool in protecting the organization – more effectively than even the best security awareness program ever could.

By David Melnick, Founder & CEO, WebLife Balance | @themelnick

david_melnickBio: David has worked for 25 years with US and global companies, advising them on strategy, risk-based priorities, and effective governance of highly sensitive and regulated data. He is a CIPP/E/US, CISA, and CISSP and has authored several books through McGraw-Hill Publishing and Macmillan Publishing including PDA Security: Incorporating Handhelds Into Your Enterprise.

 

References:

[i] See 2013 Internet Threat Report, Volume 18

[ii] See www.datalossdb.org

[iii] See

[iv] See http://www.ccl.org/leadership/pdf/research/AlwaysOn.pdf

[v] See
[wp_ad_camp_5]

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Visual data is the blind spot in enterprise security: that’s about to change

May 4, 20267 Mins Read

Making stolen data worthless: why security must start with the data

March 30, 20265 Mins Read

Meta’s Smart Glasses Privacy Scandal Expands After Sama Credentials Found on the Dark Web

March 10, 20264 Mins Read
ISB-Bora-Side-Bar

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}