Localization Mandates, AI Regs to Pose Major Data Challenges in 2024

Companies should expect to face a trio of trends in 2024 that make data security, protection, and compliance more critical to operations and risk reduction.
Increasingly, governments worldwide are creating laws that govern the handling of data within their borders, with more than three-quarters of countries implementing data localization in some form, according to global consultancy McKinsey & Co. A second trend is the rush to govern the use of data for generative AI models, with the Biden administration's AI executive order and the European Union's AI Act likely having the greatest impact in the coming year.
Finally, enforcement of data protection regulations will continue to be used more often, impacting a wider variety of companies, according to experts.
For companies, 2024 will be the year they will have to be much more cognizant of where their data moves in the cloud, says Troy Leach, chief strategy officer for the Cloud Security Alliance.
European, Chinese, and US regulators put an exclamation mark on rules regarding data security with some major fines in 2023.
In May, the Irish Data Protection Commission fined Meta, the company behind Facebook, €1.2 billion for violating localization regulations by transferring personal data about European users to the United States.
In July, Chinese authorities fined ride-sharing firm Didi Global more than 8 billion yuan for violation of the country's privacy and data security regulations.
Data Localization Takes Off Following the European Union's passage of the General Data Protection Regulation in 2016, which replaced the Data Protection Directive of 1995, more nations have focused on keeping data protected under local regulations.
Such data localization will continue, and by the end of next year, three-quarters of people will live in a country that has privacy protections, according to business intelligence firm Gartner.
For businesses, such regulations are a burden but also an opportunity, says TCS Cybersecurity's Singh.
Adapting to the localization regimes in each part of the world will allow companies to offer personalization, reduce the risk of data leaks and breaches, and benefit from a reputation for cybersecurity, says Singh.
AI Concerns Lead to Changing Landscape While data localization is happening through the fabric of the cloud, the major change that will affect businesses and how they handle data in the coming year will be the fast adoption of AI services and nations' attempts to regulate the new technology.
Many organizations, for example, may use a private instance of a GenAI model to protect their data, but the data will still be in the cloud, he says.
The fast adoption of AI is problematic because data is the lifeblood of AI models - a vast amount of data is going to be fed into, consumed, and output from machines and services - and the companies behind the top AI products are not transparent about how they train their models and use data.
Business analyst firm Forrester Research forecasts major changes wrought by AI that will affect the data landscape.
Six in 10 employees will use their own AI for their jobs in 2024, hoping to become more productive.
At the same time, there will be significant legal, privacy, and security risks, with at least three major breaches caused by code generated by AI in 2024, Forrester analysts predict.
The data privacy and compliance risks of AI topped a listing of 2024 trends for businesses published by Kiteworks, a regulatory compliance software firm.
The estimates of how much private data flows into ChatGPT and other GenAI models are pretty consistent: Data security firm Cyberhaven found 4% of monitored workers submitted sensitive data, while Kiteworks cites a study that found 15% of workers have submitted information to ChatGPT, and a quarter of those - about 4% overall - considered the data to be sensitive.
There are still a lot of question marks, such as the liability of AI models operating across borders, says CSA's Leach.


This Cyber News was published on www.darkreading.com. Publication date: Tue, 02 Jan 2024 15:55:20 +0000


Cyber News related to Localization Mandates, AI Regs to Pose Major Data Challenges in 2024

Localization Mandates, AI Regs to Pose Major Data Challenges in 2024 - Companies should expect to face a trio of trends in 2024 that make data security, protection, and compliance more critical to operations and risk reduction. Increasingly, governments worldwide are creating laws that govern the handling of data within ...
6 months ago Darkreading.com
Building a Sustainable Data Ecosystem - Finally, I outline future research and policy refinement directions, advocating for a collaborative and responsible approach to building a sustainable data ecosystem in generative AI. In recent years, generative AI has emerged as a transformative ...
3 months ago Feeds.dzone.com
Navigating the World of Data Anonymization, Part 1 - In today's data-driven world, ensuring individual data privacy has become critical as organizations rely on extensive data for decision-making, research, and customer engagement. Data anonymization is a technique that transforms personal data to ...
6 months ago Feeds.dzone.com
Securing Student Data in Cloud Services - In today's educational landscape, securing student data in cloud services is of utmost importance. One key aspect of securing student data in cloud services is ensuring proper data encryption. This article explores the various challenges and best ...
6 months ago Securityzap.com
7 Lessons Learned From Designing DefCon's Cloud Village CTF - Well-designed CTFs expose individuals and teams to operational challenges, novel attack paths, and creative scenarios that can be later applied in their work both as offensive and defensive security professionals. Not all CTFs are created equal, and ...
5 months ago Darkreading.com
Tech Security Year in Review - In this Tech Security Year in Review for 2023, let's look into the top data breaches of the past year. Each factor contributes to the growing threatscape, demanding a proactive and adaptable cybersecurity approach to safeguard your organization ...
6 months ago Securityboulevard.com
Top 7 Enterprise Cybersecurity Challenges in 2024 - Cybercriminals aren't going to let up, and neither should enterprise security teams' efforts to protect networks, systems, applications and data. Cyberthreats aren't the only security challenge for 2024, however. Here's a look at the top seven trends ...
5 months ago Techtarget.com
Three security data predictions for 2024 - New and updated regulations, along with increased scrutiny from the SEC, put a strain on governance, risk and compliance teams to manage an organization's security, risk and compliance posture. At the end of the day, security teams' jobs are to ...
6 months ago Helpnetsecurity.com
Data Privacy and Security - Organizations are gradually becoming concerned regarding data security in several instances, such as collecting and retaining sensitive information and processing personal information in external environments, which include information sharing and ...
7 months ago Feeds.dzone.com
Decoding the data dilemma: Strategies for effective data deletion in the age of AI - Businesses today have a tremendous opportunity to use data in new ways, but they must also look at what data they keep and how they use it to avoid potential legal issues. Forrester predicts a doubling of unstructured data in 2024, driven in part by ...
3 months ago Venturebeat.com
Cybersecurity Challenges in Remote Learning - The increasing prevalence of remote learning in the education sector has brought about new cybersecurity challenges that must be addressed. This article aims to delve into the various cyber threats faced in remote learning and provide practical ...
6 months ago Securityzap.com
New Microsoft Purview features use AI to help secure and govern all your data - More than 90% of organizations use multiple cloud infrastructures, platforms, and services to run their business, adding complexity to securing all data.1Microsoft Purview can help you secure and govern your entire data estate in this complex and ...
6 months ago Microsoft.com
Developing Software Applications Under the Guidance of Data-Driven Decision-Making Principles - To architect and cultivate an application that yields precise outputs in alignment with business requirements, paramount emphasis must be given to the foundational data and the pertinent data scenarios shaping the application. Software application ...
4 months ago Feeds.dzone.com
CVE-2024-26589 - In the Linux kernel, the following vulnerability has been resolved: bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS For PTR_TO_FLOW_KEYS, check_flow_keys_access() only uses fixed off for validation. However, variable offset ptr alu is not ...
4 months ago Tenable.com
CVE-2021-47586 - In the Linux kernel, the following vulnerability has been resolved: ...
2 weeks ago
Aim for a modern data security approach - Risk, compliance, governance, and security professionals are finally realizing the importance of subjecting sensitive workloads to robust data governance and protection the moment the data begins traversing the data pipeline. Why current data ...
6 months ago Helpnetsecurity.com
Data Loss Prevention for Business: Strategies and Tools - Data Loss Prevention has become crucial in today's data-driven business landscape to protect sensitive information. This discussion aims to provide valuable insights into DLP strategies and tools for business, helping mitigate data loss risks ...
5 months ago Securityzap.com
CVE-2021-47428 - In the Linux kernel, the following vulnerability has been resolved: powerpc/64s: fix program check interrupt emergency stack path Emergency stack path was jumping into a 3: label inside the __GEN_COMMON_BODY macro for the normal path after it had ...
1 month ago Tenable.com
When a Data Mesh Doesn't Make Sense - The data mesh is a thoughtful decentralized approach that facilitates the creation of domain-driven, self-service data products. Data mesh-including data mesh governance-requires the right mix of process, tooling, and internal resources to be ...
3 months ago Feeds.dzone.com
Data Classification: Your 5 Minute Guide - Data classification has become a vital component of data security governance. With the rise of virtual data networks, organizations must take necessary measures to protect and secure confidential information. Data classification is the process of ...
1 year ago Tripwire.com
Data Classification Software Features to Look Out For - For organizations looking to improve their data protection and data compliance strategies, technology is essential. Implementation of the right software can help you gain visibility into your company's data, improving your ability to protect customer ...
6 months ago Securityboulevard.com
Netskope rolls out NewEdge's seamless localized experience - Netskope has unveiled the completion of the rollout of Localization Zones to its NewEdge security private cloud offering a localized experience for 220 countries and territories, including every non-embargoed UN member state. While a move to a cloud ...
6 months ago Helpnetsecurity.com
GAO Urges Action to Address Critical Cybersecurity Challenges Facing U.S. - A report from the Government Accountability Office highlighted an urgent need to address critical cybersecurity challenges facing the nation. The report also highlighted the escalating frequency and sophistication of cybersecurity incidents, which ...
1 week ago Securityboulevard.com
Edge Computing: Data and Connectivity - Edge computing is a distributed computing model that brings processing capabilities closer to the data source, be it IoT devices, sensors, or end-user devices, rather than relying on centralized data centers. By decentralizing data processing, edge ...
6 months ago Feeds.dzone.com
Data Protection in Educational Institutions - This article delves into the significance of data protection in educational institutions, emphasizing three key areas: the types of educational data, data privacy regulations, and data protection measures. Lastly, robust data protection measures are ...
6 months ago Securityzap.com

Latest Cyber News


Cyber Trends (last 7 days)


Trending Cyber News (last 7 days)