Hearing of yet another
data breach is uncomfortable for all of us. I think most people can relate to this sentiment. After having been in the
Hosting Industry for several years, I am well aware of the importance of
Data Protection Laws with respect to
Hosting Websites.
Data Protection Laws have a direct impact on how your website is hosted, as well as what actions may be taken if your data is compromised or lost.
Why Data Protection Laws are Important to Hosting
Traditionally, hosting was very straightforward. All you had to do was buy a few servers and upload your website without a care in the world. Those days are over. Today, thanks to laws such as
GDPR,
CCPA, and
DPDP (
Data Protection Act), hosting providers are expected to comply with established standards. They have to follow those regulations regarding
data privacy and
user protection in the event of any type of data compromise.
Data Protection Laws require hosting companies to:
- Store data in a secure manner
- Obtain consent from users
- Protect users' personally identifiable information (PII).
If a hosting company fails to comply with these regulations, the penalties are significant. No kidding.
Today, when an incident occurs from the breach of data, your response time is essential. I’ve seen many teams rush into action to comply with laws that require immediate response, within 72 hours sometimes. Doesn't that seem like such a short time to respond?
How Breach Response Works Today
There are four things that need to happen for successful incident response:
- To Discover the problem quickly.
- To Mitigate the harm;
- To Notify the users and the authorities.
- To Maintain appropriate documentation.
What Leading Hosting Providers Do Right
Leading providers of web hosting services protect data as part of their hosting offerings. Whether or not your web host understands how to protect your data according to its security and compliance requirements, if they are unable to do so, then you should begin looking at another hosting provider.
Most Good Quality Hosts will provide:
- Encoding of data
- Strong Access Control; and
- Clear Breach Recovery Plans.
Conclusion
In conclusion, the Laws governing the Protection of Data have a huge impact on Hosting Providers and the Incident Response process. To ignore these Major Laws = Money lost and Trust lost. To Respect them = Stay Safe and Protected. Since the next time you need to choose a host, ask yourself if they would respond quickly and adequately if there is an incident? This is a Question to consider when selecting a Host.