The term “data breach” generally refers to the unauthorized or unintentional exposure, disclosure, or loss of sensitive information. A data breach can leave individuals vulnerable to identity theft or other fraudulent activity. Although federal agencies have taken steps to protect personally identifiable information (PII), breaches continue to occur on a regular basis. The book’s objectives are to determine the extent to which selected agencies have developed and implemented policies and procedures for responding to breaches involving PII and assess the role of DHS in collecting information on breaches involving PII and providing assistance to agencies. The book also identifies the federal laws and guidance issued to protect personally identifiable information from unauthorized use or disclosure and describes agencies’ progress in developing policies and documented procedures that respond to recent guidance from the Office of Management and Budget (OMB) to protect personally identifiable information that is either accessed remotely or physically transported outside an agency’s secured physical perimeter.
{{comment.content}}