Organization-Defined Parameters for NIST 800-171 r3

By Chris Abacon | April 23, 2025

The Department of Defense (DoD) published the organization-defined parameters for NIST 800-171 Revision 3. Organization-defined parameters (ODPs) allow organizations to…

Read More

Reassigned Numbers Playing a Role in Spike in TCPA Lawsuits

By Steve Gniadek | April 18, 2025

In an era where consumers are more protective of their privacy and phone numbers than ever before, the Telephone Consumer…

Read More

Blue Shield of California Says Google Analytics Behind PHI Data Breach

By Sarah Reckling | April 14, 2025

Blue Shield of California is notifying members of a potential data breach, which stemmed from the use of Google Analytics…

Read More

FCC Delays Part of the Consent Revocation Rule for One Year – But What Exactly is Being Delayed?

By Tony Jarnigan | April 9, 2025

On April 7, the Federal Communications Commission (FCC) issued a rather confusing order in which it says it is delaying…

Read More

HSCC Proposes Alternative to the HIPAA Security Rule Update

By Carol Amick | April 8, 2025

The Health Sector Coordinating Council (HSCC) Cybersecurity Working Group (CWG) is urging the Trump administration to halt proposed updates to…

Read More

FedRAMP 20x Unveiled

By Steve Haley | March 31, 2025

The Federal Risk and Authorization Management Program (FedRAMP) is the authoritative standard for cloud computing products and services that process…

Read More

FCC’s Consent Revocation Rule: Language Analysis and Compliance Insights

By Tony Jarnigan | March 28, 2025

***Update – On April 7th, 2025, the FCC delayed part of the Consent Revocation Rule for one year. Read this…

Read More

The FTC’s Negative Option Rule: Complying with the 2025 Amendments

By Ella Murphy | March 28, 2025

On May 14, 2025, the Federal Trade Commission (FTC) will implement crucial amendments to its Negative Option Rule. These amendments…

Read More

A QSA’s Perspective on Integrating AI into PCI Assessments Guidance

By Brandon Breslin | March 26, 2025

The PCI Security Standards Council (PCI SSC) released new guidance on integrating Artificial Intelligence (AI) into PCI assessments. This is…

Read More

GDPR Right to Erasure an Enforcement Priority in 2025

By Matt Dumiak | March 20, 2025

The European Data Protection Board (EDPB) announced the GDPR’s right to erasure, or “right to be forgotten,” will be the…

Read More

Finding a credible expert with the appropriate background, expertise, and credentials can be difficult. CompliancePoint is here to help.

Our Clients

Copyright © 2025 CompliancePoint, Inc. All Rights Reserved | Privacy Statement | Accessibility | Disclosure | Trust | Sitemap

PossibleNOW - a sister company

Connect with us on social media