Compliance and third-party risk
Compliance
Compliance means adhering to laws, regulations, standards and internal rules (e.g. GDPR, PCI DSS, HIPAA), where compliance proves that the organization meets the prescribed obligations, while security protects systems and data from threats, so a system can be secure yet non-compliant and vice versa. The consequences of non-compliance include fines, lawsuits, loss of licenses, business interruption and reputational damage.
Related terms
Get CertOwl on the App Store
Free download · A+ and Network+ completely free
+ daily lessons, flashcards and full exam simulations