Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Compliance

Compliance Guide: Australia & its New Telco Regulation (2022)

Of the many lessons that can be learned from how the Optus data breach was handled, one stands out - Australia’s privacy laws are not equipped to support Aussie data breach victims. To change this, the Australian Government is amending its Telecommunications Regulations 2021 Act. APRA-regulated financial entities can now be involved in efforts to mitigate financial fraud following a data breach.

Brace yourself - ISO27001 changes are coming

If you’re not aware already, then be prepared for change, because a new version of ISO27001 was published in October 2022! It’s all very exciting! The last change to the standard was in 2017. The changes made back then were fundamentally cosmetic, with a few minor tweaks to wording. The changes barely caused a ripple and, even today, organisations are still certified to ISO27001:2013, meaning that no fundamental changes to the standard have taken place for around ten years.

A picture speaks a thousand words

Deep within data lies stories that can help businesses of all shapes and sizes see hidden detail – and act on it. Take a US healthcare provider, for example, who came to us with a pressing issue: the greatest cause of its patient dissatisfaction was due to waiting times. When were the longest peaks? Where was the epicenter of the backlog? And once this was known, what targeted processes could be introduced to speed things up?

Workflow Automation: Intelligent Task Delegation for Groups and Users

We believe compliance should be a team sport. With Workflow Automation, your team can be segmented into “groups”, including DevOps, Engineering, HR, and Legal. TrustOps intelligently delegates tasks, controls, tests, and systems into these groups. Group have owners, who assign each component of your company’s compliance program to the right person within their group.

Workflow Automation: Smart Inventory Management

You can now connect TrustOps to multiple SaaS vendors that you use to run your product and business, and we automatically collect inventory lists from these vendors to satisfy audit requirements. With this new release, TrustOps intelligently creates the following inventory lists for you: Databases in AWS RDS Logs from AWS Cloudwatch Alerts from AWS Cloudwatch Alerts IT assets from Jamf and Duo HR lists from BambooHR and TriNet.

Smart Custom Policies

Kintent policies now offer a new Edit Policy menu option, allowing you to customize existing text, write your own, or bring in the contents of an existing policy by pasting its text. Once in the editor, you will be able to format your policy, choose whether or not (and where) to insert its approval log and related control list, as well as add Kintent control texts. TrustOps also supports Smart Variables — dynamic, auto-updating values representing key attributes of a policy such as its owner, which you can use when composing your policy.

Customizing your controls

We know that your business is unique, and you may already have security and privacy programs in place, so we’ve made customization a focus and a pillar in our platform, making it effortless for you to craft custom controls and policies that are integral to your business. On the control details page in TrustOps, you now have the ability to edit a control and customize the control statement language, policy mappings and frequency of the control to accurately reflect your business practices.

Add Your Brand Identity to Your TrustShare

With this update, we’ve made it easy for your team to customize your TrustShare portal to reflect your brand identity. As part of the most recent update to the TrustShare Admin app, we’re excited to introduce a “Branding” section where you can select your brand’s color palette and add your logo. Your TrustShare will reflect your branding in the appropriate places as soon as you publish your selections. You also have the ability to preview changes before publishing, so you can ensure that everything looks and feels right.

TrustShare

As with everything we do at Kintent, we wanted to make it effortless for you to develop and share your information security program! Automatically Share Your Compliance Documents TrustShare is part of Kintent’s Trust Management Platform. It automatically pulls details from the platform, such as your controls, policies, security questionnaires, and subprocessors. Whenever a change is made to the underlying information, Trust Share is automatically updated, so you won’t ever have to worry about the validity of the compliance data you are sharing with your customers.

Automotive Software - ISO 21434 Compliance Simplified

The modern vehicle comes equipped with a variety of software systems. Especially features that connect it to the outside world, such as online updates, fleet management and communication between vehicles, offer attack surface. The security of automotive software is crucial, not only because bug-induced call-backs are costly, but also because the well-being of passengers depends on it.