Investments in advanced authentication and encryption set to rise in 2018
In today’s data-driven society, privacy, security and trust are more vital and intertwined than ever before. But many organisations are not doing all they can to protect data privacy, according to new findings released today from PwC PwC’s 2018 Global State of Information Security® Survey (GSISS).
Less than half of respondents (49%) say their organisation limits collection, retention, and access of personal information to the minimum necessary to accomplish the legitimate purpose for which it is collected. Only 51% of respondents have an accurate inventory of where personal data for employees and customers are collected, transmitted, and stored. And only 53% require employees to complete training on privacy policy and practices.
The survey draws on responses of 9,500 senior business and technology executives from 122 countries.
Says Sean Joyce, PwC’s US Cybersecurity and Privacy Leader:
“Using data in more innovative ways opens the door to both more opportunities and more risks. There are very few companies are building cyber and privacy risk management into their digital transformation. Understanding the most common risks, including lack of awareness about data collection and retention activities, is a starting point for developing a data-use governance framework."