PogoWasRight.org

Menu
  • About
  • Privacy
Menu

Lacking in Facts, Independence, and Credibility: The 2011 NAI Annual Compliance Report

Posted on July 11, 2012 by pogowasright.org

Bob Gellman has responded to NAI’s  2011 Annual Compliance Report with his own analysis: Lacking in Facts, Independence, and Credibility:  The 2011 NAI Annual Compliance Report.  From his summary:

The NAI report provides carefully selected and edited information about its members, the audit process, the qualification of its auditors, and the independence of its auditors. The NAI report fails to provide enough context for the few facts that it does provide, uses weasel worded statements that obscure the degree of compliance or non-compliance by NAI members, and claims credit for compliance with laws that are independent of NAI standards.

Any audit of privacy standards applicable to multiple organizations inevitably will find some examples of non-compliance with those standards. Perfection is not expected by anyone. A fair measure of self-regulation is regular reporting, independently conducted audits, and credibly reported results. Applying this standard, the NAI satisfies only the first element. It is difficult for a careful reader of the 2011 NAI report to determine how the NAI conducted its audits, to understand what facts the audit produced (as distinguished from broad and unsupported generalizations), or to give much credibility to the report’s broad and overstated conclusions.

Read his full analysis here.

Category: Business

Post navigation

← Even candidates deserve privacy at home
Markey Queries Justice Dept. About Mobile Phone Data Requests, Privacy Protections →

Now more than ever

Search

Contact Me

Email: info@pogowasright.org

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

Categories

Recent Posts

  • License Plate Reader Company Flock Is Building a Massive People Lookup Tool, Leak Shows
  • FTC dismisses privacy concerns in Google breakup
  • ARC sells airline ticket records to ICE and others
  • Clothing Retailer, Todd Snyder, Inc., Settles CPPA Allegations Regarding California Consumer Privacy Act Violations
  • US Customs and Border Protection Plans to Photograph Everyone Exiting the US by Car
  • Google agrees to pay Texas $1.4 billion data privacy settlement
  • The App Store Freedom Act Compromises User Privacy To Punish Big Tech

RSS Recent Posts on DataBreaches.net

  • Turkish Group Hacks Zero-Day Flaw to Spy on Kurdish Forces
  • Cyberattacks on Long Island Schools Highlight Growing Threat
  • Dior faces scrutiny, fine in Korea for insufficient data breach reporting; data of wealthy clients in China, South Korea stolen
  • Administrator Of Online Criminal Marketplace Extradited From Kosovo To The United States
  • Twilio denies breach following leak of alleged Steam 2FA codes
©2025 PogoWasRight.org. All rights reserved.
Menu
  • About
  • Privacy