5 Steps to handle data properly post safe harbor
Keeping your cloud data inside the EU is harder than it seems. Now safe harbor is dead you cannot legally send data outside the EU without negotiating individual contracts with each supplier, and even when data is hosted in the EU you need to consider the risk of the US government demanding access (see Microsoft vs US government) Does […]
Microsoft vs the United States of America – the risk of using US based services
Since December 2013 Microsoft have been fighting US efforts to make them export data, arguing that a U.S. judge has no authority to issue a warrant for information stored abroad. What does this mean for European business? Even if you use a US firm that hosts in Europe, they are still likely to export that […]
iStorage USBs and why we use them
If you don’t know already here at Projectfusion we’re all about security. Our infrastructure, processes and personnel are fully ISO27001 compliant. So what happens when we send you data and rely on couriers to do their job correctly? Will your data be safe until it reaches your hands? Don’t worry, the answer is always a […]
ISO27001 – template – Applicable legislation for a UK SAAS Cloud company
One small but important aspect of an ISMS* is applicable legislation and regulation. When first starting our ISMS I struggled to come up with this list, so have posted it to give someone else a starting point and save them some time. This is a good starting point for UK cloud businesses on their way to ISO27001 […]
CIA boss has his personal email account hacked…
The hacker, has posted what is purported to be the CIA director’s contacts list, as well as call logs of Deputy National Security Advisor Avril Haines, amongst other information. This information was stored in an AOL account… More at Graham Cluleys site
Europe has killed the Safe Harbor agreement.
The European Court of Justice (ECJ) today ruled that the self-certified protections promised by Safe Harbor weren’t worthy of Europe’s ideal of privacy “as a human right”. The court declared the data-transfer agreement immediately invalid. The rules hugely affects Cloud services, where the majority of US firms rely on safe harbor to move information. Personal data […]
The future of UK courts – video is here, but is it the answer
In September I had an interesting morning at Criminal Justice Management 2015. Natalie Ceeney CEO HM Courts and Tribunals service gave a great overview on where the electronic court is going. She started by noting that whilst she hears lots of complaints, very rarely are they about unfairness or impartiality, and we are blessed to […]
Updates – sorting
We’ve rolled out over 60 changes in the last month, most were security related or minor bug fixes, but here’s a few you need to know about. We’ve added room customisation options, so you can now change the footer on the login page, and on all pages of the site (Go to the ‘More’ menu, then […]
Useful UK Security acronyms and terminology
Security has it’s own set of acronyms and terms. Here’s a great list you will find useful for your ISO 27001 and other security work, Security and IT – Common acronyms: Accept (related to risks) These are risks you have decided as an organistion to accept. So you may choose to accept that as a […]