← Security+ glossary

Compliance and third-party risk

Compliance

Compliance means adhering to laws, regulations, standards and internal rules (e.g. GDPR, PCI DSS, HIPAA), where compliance proves that the organization meets the prescribed obligations, while security protects systems and data from threats, so a system can be secure yet non-compliant and vice versa. The consequences of non-compliance include fines, lawsuits, loss of licenses, business interruption and reputational damage.

All Security+ guides →

Related terms

Get CertOwl on the App Store

Free download · A+ and Network+ completely free
+ daily lessons, flashcards and full exam simulations