Robert J. Johnson, CSDS, CIPP/US, CIPP/E

The Robert Johnson Lifetime Achievement Award R. Stephen Richards

i-SIGMA Honors R. Stephen Richards with Lifetime Achievement Award

April 5, 2024
Posted in

Against the backdrop of its annual conference in Nashville, i-SIGMA presented R. Stephen Richards with the Robert Johnson Lifetime Achievement Award, an honor reserved for professionals who have a career-long track record of outstanding contributions to the advancement of records and information management. In commenting on the recognition, Richards said, “My reaction was complete surprise…

Read More
A globe that is patterned with business-related photos is floating in an orbit and being hit with a sharp beam of light.

How AI Tools Could Compromise Intellectual Property Rights

March 1, 2024
Posted in

For close to 70 years, case law and regulatory enforcement have firmly established that in order to defend its intellectual property (IP) rights, an organization must demonstrate that it has appropriately protected the information from unauthorized and unnecessary access. In other words, courts and regulators decided long ago that they were not going to defend…

Read More
Closeup photo of two people shaking hands

Data Controller/Data Processor Contracts #3:
Indemnification

January 15, 2024
Posted in

There may be no more confusing and misunderstood area of controller-processor contracts than insurance and indemnification. Controllers often expect processors to accept liability, while ignoring the quality (or existence) of processors’ underlying insurance coverage. Processors, on the other hand, often buy insurance products that provide minimal or no protection to meet those controller expectations. This…

Read More
A More Secure Future By Bob Johnson of Privata Vox

Article by PV Leader Descibes How New Regulations Impact ITAD

November 13, 2023
Posted in

The recent edition of Recycling Today features an article by Bob Johnson titled, “A More Secure Future,” (pg. 46) explaining how emerging breach notification requirements will change the way organizations manage IT asset disposition.  

Read More
Closeup image of a computer keyboard that has one key marked "Vendor Management" in red letters

Contractually Defining Information Custody Transfers

November 7, 2023
Posted in

KEY TAKEAWAYS: Information custody transfers are far more ubiquitous and riskier than most organizations appreciate. From a legal and regulatory perspective, “access to” equals “custody of.” There are specific elements and contractual assurances upon which all organizations should insist when transferring personal or proprietary information. Failure to obtain the appropriate assurances from any vendor accessing…

Read More
Businessman hands typing on laptop with triangular malware caution warning sign.

Flawed ITAM: Known Cyber Security Risks Spell Trouble for CISOs and Boards

October 31, 2023
Posted in

Yesterday’s SEC release alleging that software developer SolarWinds Corp. and its Chief Information Security Officer (CISO) T. Brown misled investors about known cybersecurity risks and vulnerabilities is yet another in a series of Commission actions regarding cybersecurity that should be setting off alarms for CISOs, CIOs, and the boards at all publicly traded companies and…

Read More
iapp The flawed IT asset management paradigm: Key considerations for privacy professionals

Privata Vox® Principal Advocate Forecasts a New ITAM/ITAD Paradigm

September 2, 2023
Posted in

In an article published today by the International Association of Privacy Professionals (IAPP), Privata Vox® founder and Principal Advocate Robert Johnson, CSDS, CIPP/US, describes the trends and forces that will soon alter the prevailing enterprise IT asset disposal (ITAD) model. Access the full article here: The flawed IT asset management paradigm: Key considerations for privacy professionals  

Read More
A closeup image of a person's hands holding a pen and signing a document. A lock icon floats in the foreground.

Data Controller/Data Processor Contracts #2:
Regulatory Alignment

August 17, 2023
Posted in

This is the second blog in an ongoing series examining the often-overlooked nuances of data controller/data processor contracts. Regulatory alignment is one of the primary reasons regulations require contracts between data controllers and data processors. And, yet, despite its primacy, many contracts make the mistake of establishing this linkage with an overly simplistic clause stating…

Read More
A closeup image of a person holding a pen and preparing to sign a document

Data Controller/Data Processor Contracts #1:
Applicability

July 17, 2023
Posted in

This blog explains why and when organizations should require contracts with service providers that have access to customer or employee personal information. One of the most underappreciated aspects of data controller/data processors contracts is when they are needed. This results from either 1) a lack of awareness of their necessity, or 2) the failure to…

Read More
Shred America Truck

Shred America Selects Privata Vox® as Data Protection Officer

June 21, 2023
Posted in

Veteran-owned Shred America, LLC, one of the largest and fastest growing isecure data destruction service providers in the US, has selected Privata Vox, LLC to fulfill its Data Protection Officer (DPO) obligation. According to Ryan Richard, Shred America’s founder and CEO, retaining Privata Vox® exemplifies the company’s ongoing commitment to aggressive regulatory compliance and to superior…

Read More