æå·åãã¢ã¯ã»ã¹å¶åŸ¡ãéããããã®ä»ãäžçäžã®çµç¹ãšå人åãã®å æ¬çãªææžä¿è·æŠç¥ã¬ã€ãã
å ç¢ãªææžä¿è·ïŒæ å ±ã»ãã¥ãªãã£ã®ããã®ã°ããŒãã«ã¬ã€ã
仿¥ã®ããžã¿ã«æä»£ã«ãããŠãææžã¯çµç¹ãšåäººåæ¹ã®çåœç·ã§ããæ©å¯æ§ã®é«ã財åèšé²ãããéå ¬éã®ããžãã¹æŠç¥ãŸã§ããããã®ãã¡ã€ã«ã«å«ãŸããæ å ±ã¯èšãç¥ããªã䟡å€ããããŸãããããã®ææžãäžæ£ã¢ã¯ã»ã¹ãæ¹ãããé åžããä¿è·ããããšã¯æ¥µããŠéèŠã§ãããã®ã¬ã€ãã§ã¯ãåºæ¬çãªã»ãã¥ãªãã£å¯Ÿçããé«åºŠãªããžã¿ã«èäœæš©ç®¡çæè¡ãŸã§ãã°ããŒãã«ãªèŠèŽè åãã«ææžä¿è·æŠç¥ã®å æ¬çãªæŠèŠãæäŸããŸãã
ãªãææžä¿è·ãã°ããŒãã«ã«éèŠãªã®ã
å ç¢ãªææžä¿è·ã®å¿ èŠæ§ã¯ãå°ççãªå¢çãè¶ ããŠããŸãã倧éžããŸããã§äºæ¥ãå±éããå€åœç±äŒæ¥ã§ããããšãå°å瀟äŒã«ãµãŒãã¹ãæäŸããå°èŠæš¡äŒæ¥ã§ããããšãããŒã¿äŸµå®³ãæ å ±æŒæŽ©ã®çµæã¯å£æ» çãšãªãå¯èœæ§ããããŸãããããã®ã°ããŒãã«ãªã·ããªãªãæ€èšããŠãã ããã
- æ³çã»èŠå¶éµå®ïŒå€ãã®åœã§ã¯ã欧å·é£åã®äžè¬ããŒã¿ä¿è·èŠåïŒGDPRïŒãç±³åœã«ãªãã©ã«ãã¢å·æ¶è²»è ãã©ã€ãã·ãŒæ³ïŒCCPAïŒãã¢ãžã¢ãåç±³ã®åæ§ã®æ³åŸãªã©ã峿 ŒãªããŒã¿ä¿è·æ³ããããŸãããããã®èŠå¶ãéµå®ããªãå Žåãé倧ãªçœ°éãè©å€ã®äœäžã«ã€ãªããå¯èœæ§ããããŸãã
- ç«¶äºåªäœæ§ïŒè²¿æç§å¯ãç¥ç財ç£ããã®ä»ã®æ©å¯æ å ±ãä¿è·ããããšã¯ãã°ããŒãã«åžå Žã§ç«¶äºåãç¶æããããã«äžå¯æ¬ ã§ããææžãä¿è·ã§ããªãäŒæ¥ã¯ã貎éãªè³ç£ãç«¶åä»ç€Ÿã«å€±ããªã¹ã¯ãè² ããŸãã
- è©å€ãªã¹ã¯ïŒããŒã¿äŸµå®³ã¯ã顧客ã®ä¿¡é Œãæãªããçµç¹ã®è©å€ãå·ã€ããããžãã¹ã®æå€±ãšé·æçãªè²¡åççµæã«ã€ãªããå¯èœæ§ããããŸãã
- 財åã»ãã¥ãªãã£ïŒéè¡æçŽ°æžãçšåç³åæžãæè³ããŒããã©ãªãªãªã©ã®è²¡åèšé²ãä¿è·ããããšã¯ãå人ããã³ããžãã¹è³ç£ãä¿è·ããããã«äžå¯æ¬ ã§ãã
- ãã©ã€ãã·ãŒãšå«ççèæ ®äºé ïŒå人ã«ã¯ãã©ã€ãã·ãŒã®æš©å©ããããçµç¹ã«ã¯ææžã«å«ãŸããæ©å¯æ§ã®é«ãå人æ å ±ãä¿è·ããå«çç矩åããããŸãã
äž»èŠãªææžä¿è·æŠç¥
广çãªææžä¿è·ã«ã¯ãæè¡çãªä¿è·ãæé 管çããŠãŒã¶ãŒæèãã¬ãŒãã³ã°ãçµã¿åãããå€å±€çãªã¢ãããŒããå¿ èŠã§ããèæ ®ãã¹ãäž»èŠãªæŠç¥ã以äžã«ç€ºããŸãã
1. æå·å
æå·åãšã¯ãããŒã¿ãèªã¿åãäžå¯èœãªåœ¢åŒã«å€æããäžæ£ãªãŠãŒã¶ãŒãã¢ã¯ã»ã¹ã§ããªãããã«ããããšã§ããæå·åã¯ææžä¿è·ã®åºæ¬çãªèŠçŽ ã§ããææžãäžæ£ãªæã«æž¡ã£ããšããŠãã匷åãªæå·åã«ããããŒã¿ãžã®ã¢ã¯ã»ã¹ãé²ãããšãã§ããŸãã
æå·åã®çš®é¡ïŒ
- å ±é鵿å·ïŒæå·åãšåŸ©å·åã«åãéµã䜿çšããŸããé«éã§ãããå®å šãªéµäº€æãå¿ èŠã§ããäŸãšããŠã¯ãAESïŒAdvanced Encryption StandardïŒãDESïŒData Encryption StandardïŒããããŸãã
- å ¬é鵿å·ïŒå ¬é鵿巿¹åŒïŒïŒæå·åçšã®å ¬ééµãšåŸ©å·åçšã®ç§å¯éµã®ãã¢ã䜿çšããŸããå ¬ééµã¯åºãå ±æã§ããŸãããç§å¯éµã¯ç§å¯ã«ããŠããå¿ èŠããããŸããäŸãšããŠã¯ãRSAãECCïŒElliptic Curve CryptographyïŒããããŸãã
- ãšã³ãããŒãšã³ãæå·åïŒE2EEïŒïŒéä¿¡è ãšåä¿¡è ã®ã¿ãã¡ãã»ãŒãžãèªã¿åããããã«ããŸããããŒã¿ã¯éä¿¡è ã®ããã€ã¹ã§æå·åãããåä¿¡è ã®ããã€ã¹ã§åŸ©å·åãããäžéãµãŒããŒã¯ãããªãæªæå·åããŒã¿ã«ãã¢ã¯ã»ã¹ã§ããŸããã
å®è£ äŸïŒ
- ãã¹ã¯ãŒãä¿è·ãããPDFãã¡ã€ã«ïŒå€ãã®PDFãªãŒããŒã¯ãçµã¿èŸŒã¿ã®æå·åæ©èœãæäŸããŠããŸããPDFãäœæããéã«ãææžãéããã倿Žãããããããã«ãŠãŒã¶ãŒãå ¥åããå¿ èŠã®ãããã¹ã¯ãŒããèšå®ã§ããŸãã
- Microsoft Officeæå·åïŒMicrosoft WordãExcelãPowerPointã§ã¯ããã¹ã¯ãŒãã§ææžãæå·åã§ããŸããããã«ããããã¡ã€ã«ã®å 容ãäžæ£ã¢ã¯ã»ã¹ããä¿è·ããŸãã
- ãã£ã¹ã¯æå·åïŒããŒããã©ã€ãå šäœãŸãã¯ç¹å®ã®ãã©ã«ããæå·åããããšã§ãããã«ä¿åãããŠãããã¹ãŠã®ææžãä¿è·ãããŸããBitLockerïŒWindowsïŒãFileVaultïŒmacOSïŒãªã©ã®ããŒã«ã¯ããã«ãã£ã¹ã¯æå·åãæäŸããŸãã
- ã¯ã©ãŠãã¹ãã¬ãŒãžæå·åïŒå€ãã®ã¯ã©ãŠãã¹ãã¬ãŒãžãããã€ããŒã¯ããµãŒããŒã«ä¿åãããŠããããŒã¿ãä¿è·ããããã®æå·åãªãã·ã§ã³ãæäŸããŠããŸãã転éäžã®æå·åïŒããŒã¿è»¢éæïŒãšä¿åäžã®æå·åïŒãµãŒããŒã«ããŒã¿ãä¿åãããŠããæïŒã®äž¡æ¹ãæäŸãããããã€ããŒãæ¢ããŠãã ããã
2. ã¢ã¯ã»ã¹å¶åŸ¡
ã¢ã¯ã»ã¹å¶åŸ¡ãšã¯ããŠãŒã¶ãŒã®åœ¹å²ãšæš©éã«åºã¥ããŠææžãžã®ã¢ã¯ã»ã¹ãå¶éããããšã§ããããã«ãããæ¿èªãããæ åœè ã®ã¿ãæ©å¯æ å ±ã«ã¢ã¯ã»ã¹ã倿ŽããŸãã¯é åžã§ããããšãä¿èšŒãããŸãã
ã¢ã¯ã»ã¹å¶åŸ¡ã¡ã«ããºã ïŒ
- ããŒã«ããŒã¹ã¢ã¯ã»ã¹å¶åŸ¡ïŒRBACïŒïŒãŠãŒã¶ãŒã®åœ¹å²ã«åºã¥ããŠæš©éãå²ãåœãŠãŸããããšãã°ã財åéšéã®åŸæ¥å¡ã¯è²¡åèšé²ã«ã¢ã¯ã»ã¹ã§ããå ŽåããããŸãããããŒã±ãã£ã³ã°éšéã®åŸæ¥å¡ã¯ã¢ã¯ã»ã¹ã§ããªãå ŽåããããŸãã
- 屿§ããŒã¹ã¢ã¯ã»ã¹å¶åŸ¡ïŒABACïŒïŒãŠãŒã¶ãŒã®å Žæãæé垯ãããã€ã¹ã®çš®é¡ãªã©ã®å±æ§ã«åºã¥ããŠã¢ã¯ã»ã¹ãä»äžããŸããããã«ãããææžãžã®ã¢ã¯ã»ã¹ããã现ããå¶åŸ¡ã§ããŸãã
- å€èŠçŽ èªèšŒïŒMFAïŒïŒãŠãŒã¶ãŒããã¹ã¯ãŒããæºåž¯é»è©±ã«éä¿¡ãããã¯ã³ã¿ã€ã ã³ãŒããªã©ãè€æ°ã®èªèšŒæ¹æ³ãæäŸããŠæ¬äººç¢ºèªãè¡ãå¿ èŠããããŸãã
- æå°æš©éã®ååïŒãŠãŒã¶ãŒã«ã¯ãè·åãéè¡ããããã«å¿ èŠãªæå°éã®ã¢ã¯ã»ã¹æš©ã®ã¿ãä»äžããŸããããã«ãããäžæ£ã¢ã¯ã»ã¹ãããŒã¿æŒæŽ©ã®ãªã¹ã¯ã軜æžãããŸãã
å®è£ äŸïŒ
- SharePointã®æš©éïŒMicrosoft SharePointã§ã¯ãææžãã©ã€ãã©ãªã«è©³çŽ°ãªæš©éãèšå®ã§ãã誰ããã¡ã€ã«ãé²èЧãç·šéããŸãã¯åé€ã§ããããå¶åŸ¡ã§ããŸãã
- ãããã¯ãŒã¯ãã¡ã€ã«å ±æïŒãããã¯ãŒã¯ãã¡ã€ã«å ±æã§æš©éãèšå®ãããŠãŒã¶ãŒã°ã«ãŒããšåœ¹å²ã«åºã¥ããŠæ©å¯ææžãžã®ã¢ã¯ã»ã¹ãå¶éããŸãã
- ã¯ã©ãŠãã¹ãã¬ãŒãžã®ã¢ã¯ã»ã¹å¶åŸ¡ïŒã¯ã©ãŠãã¹ãã¬ãŒãžãããã€ããŒã¯ãç¹å®ã®å人ãŸãã¯ã°ã«ãŒããšã®ãã¡ã€ã«ã®å ±æãå ±æãªã³ã¯ã®æå¹æéã®èšå®ãã¢ã¯ã»ã¹ã«å¿ èŠãªãã¹ã¯ãŒãã®èŠæ±ãªã©ãããŸããŸãªã¢ã¯ã»ã¹å¶åŸ¡æ©èœãæäŸããŸãã
3. ããžã¿ã«èäœæš©ç®¡çïŒDRMïŒ
ããžã¿ã«èäœæš©ç®¡çïŒDRMïŒæè¡ã¯ãææžãå«ãããžã¿ã«ã³ã³ãã³ãã®äœ¿çšãå¶åŸ¡ããããã«äœ¿çšãããŸããDRMã·ã¹ãã ã¯ãææžã®å°å·ãã³ããŒã転éãå¶éããããæå¹æéãèšå®ãããã䜿çšç¶æ³ã远跡ãããã§ããŸãã
DRMæ©èœïŒ
- ã³ããŒé²æ¢ïŒãŠãŒã¶ãŒãææžããã³ã³ãã³ããã³ããŒïŒããŒã¹ãããã®ãé²ããŸãã
- å°å·å¶åŸ¡ïŒææžã®å°å·èœåãå¶éããŸãã
- æå¹æéïŒææžã«ã¢ã¯ã»ã¹ã§ããªããªããŸã§ã®æéãèšå®ããŸãã
- éããïŒææè ãŸãã¯æ¿èªããããŠãŒã¶ãŒãç¹å®ããããã«ãææžã«è¡šç€ºããããŸãã¯è¡šç€ºãããªãéããã远å ããŸãã
- 䜿çšç¶æ³ã®è¿œè·¡ïŒãŠãŒã¶ãŒãææžã«ã©ã®ããã«ã¢ã¯ã»ã¹ãã䜿çšããŠããããç£èŠããŸãã
å®è£ äŸïŒ
- Adobe Experience Manager DRMïŒAdobe Experience Managerã¯ãPDFããã³ãã®ä»ã®ããžã¿ã«è³ç£ãä¿è·ããããã®DRMæ©èœãæäŸããŸãã
- FileOpen DRMïŒFileOpen DRMã¯ãææžãžã®ã¢ã¯ã»ã¹ãšäœ¿çšãå¶åŸ¡ããããã®å æ¬çãªãœãªã¥ãŒã·ã§ã³ãæäŸããŸãã
- ã«ã¹ã¿ã DRMãœãªã¥ãŒã·ã§ã³ïŒçµç¹ã¯ãç¹å®ã®ããŒãºã«åãããŠã«ã¹ã¿ãã€ãºãããã«ã¹ã¿ã DRMãœãªã¥ãŒã·ã§ã³ãéçºã§ããŸãã
4. éãã
éãããšã¯ãææžã®åºæãæææš©ããŸãã¯æå³ãããäœ¿çšæ³ãèå¥ããããã«ãææžã«è¡šç€ºããããŸãã¯è¡šç€ºãããªãããŒã¯ãåã蟌ãããšã§ããéããã¯ãäžæ£ãªã³ããŒãææ¢ããæŒæŽ©ããææžã®åºæã远跡ããã®ã«åœ¹ç«ã¡ãŸãã
éããã®çš®é¡ïŒ
- 衚瀺éããïŒææžã®è¡šé¢ã«è¡šç€ºãããããã¹ããããŽããŸãã¯ç»åãå«ãŸããå ŽåããããŸãã
- é衚瀺éããïŒææžã®ã¡ã¿ããŒã¿ãŸãã¯ãã¯ã»ã«ããŒã¿ã«åã蟌ãŸããèçŒã§ã¯èŠããŸãããç¹æ®ãªãœãããŠã§ã¢ã䜿çšããŠæ€åºã§ããŸãã
å®è£ äŸïŒ
- Microsoft Wordã®éããïŒMicrosoft Wordã§ã¯ãå®çŸ©æžã¿ã®ãã³ãã¬ãŒãã䜿çšããããã«ã¹ã¿ã éãããäœæããŠãææžã«ç°¡åã«éããã远å ã§ããŸãã
- PDFéããããŒã«ïŒå€ãã®PDFãšãã£ã¿ãŒã¯éããæ©èœãæäŸããŠãããPDFææžã«ããã¹ããç»åããŸãã¯ããŽã远å ã§ããŸãã
- ç»åéãããœãããŠã§ã¢ïŒç»åããã®ä»ã®ããžã¿ã«è³ç£ã«éãããé©çšããããã®å°éãœãããŠã§ã¢ãå©çšå¯èœã§ãã
5. ããŒã¿æå€±é²æ¢ïŒDLPïŒ
ããŒã¿æå€±é²æ¢ïŒDLPïŒãœãªã¥ãŒã·ã§ã³ã¯ãæ©å¯ããŒã¿ãçµç¹ã®ç®¡çå€ã«åºãã®ãé²ãããã«èšèšãããŠããŸããDLPã·ã¹ãã ã¯ããããã¯ãŒã¯ãã©ãã£ãã¯ããšã³ããã€ã³ãããã€ã¹ãã¯ã©ãŠãã¹ãã¬ãŒãžãç£èŠããŠæ©å¯ããŒã¿ãæ€åºããäžæ£ãªããŒã¿è»¢éãæ€åºãããå Žåã«ãããã¯ãããã管çè ã«èŠåãããã§ããŸãã
DLPæ©èœïŒ
- ã³ã³ãã³ãæ€æ»ïŒææžããã®ä»ã®ãã¡ã€ã«ã®ã³ã³ãã³ããåæããŠãã¯ã¬ãžããã«ãŒãçªå·ã瀟äŒä¿éçªå·ãæ©å¯æ§ã®é«ãããžãã¹æ å ±ãªã©ã®æ©å¯ããŒã¿ãèå¥ããŸãã
- ãããã¯ãŒã¯ç£èŠïŒæ©å¯ããŒã¿ãçµç¹å€ã«éä¿¡ãããŠãããããã¯ãŒã¯ãã©ãã£ãã¯ãç£èŠããŸãã
- ãšã³ããã€ã³ãä¿è·ïŒæ©å¯ããŒã¿ãUSBãã©ã€ãã«ã³ããŒãããããå°å·ããããããšã³ããã€ã³ãããã€ã¹ããEã¡ãŒã«ã§éä¿¡ããããããã®ãé²ããŸãã
- ã¯ã©ãŠãããŒã¿ä¿è·ïŒã¯ã©ãŠãã¹ãã¬ãŒãžãµãŒãã¹ã«ä¿åãããŠããæ©å¯ããŒã¿ãä¿è·ããŸãã
å®è£ äŸïŒ
- Symantec DLPïŒSymantec DLPã¯ãå æ¬çãªããŒã¿æå€±é²æ¢ããŒã«ã®ã¹ã€ãŒããæäŸããŸãã
- McAfee DLPïŒMcAfee DLPã¯ããããã¯ãŒã¯ããšã³ããã€ã³ããã¯ã©ãŠãäžã®æ©å¯ããŒã¿ãä¿è·ããããã®ããŸããŸãªDLPãœãªã¥ãŒã·ã§ã³ãæäŸããŸãã
- Microsoft Information ProtectionïŒMicrosoft Information ProtectionïŒæ§Azure Information ProtectionïŒã¯ãMicrosoft Office 365ããã³ãã®ä»ã®MicrosoftãµãŒãã¹åãã®DLPæ©èœãæäŸããŸãã
6. ã»ãã¥ã¢ãªææžã¹ãã¬ãŒãžãšå ±æ
ææžãå®å šã«ä¿åããã³å ±æããããã®ãã©ãããã©ãŒã ãéžæããããšã¯æ¥µããŠéèŠã§ããæå·åãã¢ã¯ã»ã¹å¶åŸ¡ãç£æ»ãã°ãªã©ã®å ç¢ãªã»ãã¥ãªãã£æ©èœãæã€ã¯ã©ãŠãã¹ãã¬ãŒãžãœãªã¥ãŒã·ã§ã³ãæ€èšããŠãã ãããææžãå ±æããéã¯ããã¹ã¯ãŒãä¿è·ããããªã³ã¯ãæå·åãããEã¡ãŒã«æ·»ä»ãã¡ã€ã«ãªã©ã®å®å šãªæ¹æ³ã䜿çšããŠãã ããã
ã»ãã¥ã¢ã¹ãã¬ãŒãžã®èæ ®äºé ïŒ
- ä¿åæããã³è»¢éæã®æå·åïŒã¯ã©ãŠãã¹ãã¬ãŒãžãããã€ããŒãããµãŒããŒã«ããŒã¿ãä¿åããéãšãããã€ã¹ãšãµãŒããŒéã§ããŒã¿ã転éããéã®åæ¹ã§ããŒã¿ãæå·åããŠããããšã確èªããŠãã ããã
- ã¢ã¯ã»ã¹å¶åŸ¡ãšæš©éïŒãŠãŒã¶ãŒã®åœ¹å²ãšæš©éã«åºã¥ããŠæ©å¯ææžãžã®ã¢ã¯ã»ã¹ãå¶éããããã«ã¢ã¯ã»ã¹å¶åŸ¡ãæ§æããŸãã
- ç£æ»ãã°ïŒèª°ãææžã«ã¢ã¯ã»ã¹ãã倿ŽããŠãããã远跡ããããã«ãç£æ»ãã°ãæå¹ã«ããŸãã
- ã³ã³ãã©ã€ã¢ã³ã¹èªèšŒïŒISO 27001ãSOC 2ãHIPAAãªã©ã®ã³ã³ãã©ã€ã¢ã³ã¹èªèšŒãååŸããŠããã¯ã©ãŠãã¹ãã¬ãŒãžãããã€ããŒãæ¢ããŠãã ããã
ã»ãã¥ã¢ãªå ±æãã©ã¯ãã£ã¹ïŒ
- ãã¹ã¯ãŒãä¿è·ããããªã³ã¯ïŒãªã³ã¯ãä»ããŠææžãå ±æããéã¯ãã¢ã¯ã»ã¹ã«ãã¹ã¯ãŒããèŠæ±ããŠãã ããã
- æå¹æéïŒå ±æãªã³ã¯ã®æå¹æéãèšå®ããææžã«ã¢ã¯ã»ã¹ã§ããæéãå¶éããŸãã
- æå·åãããEã¡ãŒã«æ·»ä»ãã¡ã€ã«ïŒæ©å¯ããŒã¿ãå«ãEã¡ãŒã«æ·»ä»ãã¡ã€ã«ã¯ãéä¿¡åã«æå·åããŠãã ããã
- å®å šã§ãªããã£ãã«ã§ã®æ©å¯ææžã®å ±æãé¿ããïŒå®å šã§ãªããã£ãã«ãããšãã°å ¬å ±ã®Wi-Fiãããã¯ãŒã¯ãå人ã®Eã¡ãŒã«ã¢ã«ãŠã³ããä»ããŠæ©å¯ææžãå ±æããããšã¯é¿ããŠãã ããã
7. ãŠãŒã¶ãŒ ãã¬ãŒãã³ã°ãšæèåäž
æãé«åºŠãªã»ãã¥ãªãã£æè¡ã§ããããŠãŒã¶ãŒãã»ãã¥ãªãã£ãªã¹ã¯ãšãã¹ããã©ã¯ãã£ã¹ãèªèããŠããªãå Žåã¯å¹æããããŸããããã¹ã¯ãŒãã»ãã¥ãªãã£ããã£ãã·ã³ã°å¯Ÿçãå®å šãªææžåŠçãªã©ã®ãããã¯ã«ã€ããŠãåŸæ¥å¡ã«å®æçãªãã¬ãŒãã³ã°ãæäŸããŠãã ãããçµç¹å ã«ã»ãã¥ãªãã£æåãéžæããŠãã ããã
ãã¬ãŒãã³ã°ãããã¯ïŒ
- ãã¹ã¯ãŒãã»ãã¥ãªãã£ïŒåŒ·åãªãã¹ã¯ãŒãã®äœææ¹æ³ãšãè€æ°ã®ã¢ã«ãŠã³ãã§åããã¹ã¯ãŒãã䜿çšããªãæ¹æ³ããŠãŒã¶ãŒã«æããŸãã
- ãã£ãã·ã³ã°å¯ŸçïŒãã£ãã·ã³ã°ã¡ãŒã«ããã®ä»ã®è©æ¬ºãèªèããåé¿ããæ¹æ³ããŠãŒã¶ãŒã«ãã¬ãŒãã³ã°ããŸãã
- å®å šãªææžåŠçïŒé©åãªä¿åãå ±æãç Žæ£ã®ãã©ã¯ãã£ã¹ãå«ããæ©å¯ææžãå®å šã«åŠçããæ¹æ³ã«ã€ããŠãŠãŒã¶ãŒãæè²ããŸãã
- ããŒã¿ä¿è·æ³ããã³èŠå¶ïŒGDPRãCCPAãªã©ã®é¢é£ããããŒã¿ä¿è·æ³ããã³èŠå¶ã«ã€ããŠãŠãŒã¶ãŒã«æ å ±ãæäŸããŸãã
8. 宿çãªã»ãã¥ãªãã£ç£æ»ãšè©äŸ¡
ææžä¿è·æŠç¥ã®è匱æ§ãç¹å®ããããã«ã宿çãªã»ãã¥ãªãã£ç£æ»ãšè©äŸ¡ã宿œããŸããããã«ã¯ããããã¬ãŒã·ã§ã³ãã¹ããè匱æ§ã¹ãã£ã³ãã»ãã¥ãªãã£ã¬ãã¥ãŒãå«ãŸããŸããç¹å®ããã匱ç¹ã¯ã匷åãªã»ãã¥ãªãã£äœå¶ãç¶æããããã«ãéããã«å¯ŸåŠããŠãã ããã
ç£æ»ããã³è©äŸ¡æŽ»åïŒ
- ãããã¬ãŒã·ã§ã³ãã¹ãïŒã·ã¹ãã ãšã¢ããªã±ãŒã·ã§ã³ã®è匱æ§ãç¹å®ããããã«ãçŸå®äžçã®æ»æãã·ãã¥ã¬ãŒãããŸãã
- è匱æ§ã¹ãã£ã³ïŒèªååãããããŒã«ã䜿çšããŠãæ¢ç¥ã®è匱æ§ããªããã·ã¹ãã ãã¹ãã£ã³ããŸãã
- ã»ãã¥ãªãã£ã¬ãã¥ãŒïŒã»ãã¥ãªãã£ããªã·ãŒãæé ãããã³ç®¡ççã广çã§ææ°ã®ãã®ã§ããããšã確èªããããã«ã宿çãªã¬ãã¥ãŒã宿œããŸãã
- ã³ã³ãã©ã€ã¢ã³ã¹ç£æ»ïŒé¢é£ããããŒã¿ä¿è·æ³ããã³èŠå¶ãžã®æºæ ã確èªããããã«ç£æ»ã宿œããŸãã
ã°ããŒãã«ã³ã³ãã©ã€ã¢ã³ã¹ã®èæ ®äºé
ææžä¿è·æŠç¥ãå®è£ ããéã«ã¯ãäºæ¥ãå±éããåœã®æ³çããã³èŠå¶äžã®èŠä»¶ãèæ ®ããããšãäžå¯æ¬ ã§ããããã€ãã®äž»èŠãªã³ã³ãã©ã€ã¢ã³ã¹ã®èæ ®äºé ã以äžã«ç€ºããŸãã
- äžè¬ããŒã¿ä¿è·èŠåïŒGDPRïŒïŒGDPRã¯ã欧å·é£åã®å人ã®å人ããŒã¿ãåŠçããçµç¹ã«é©çšãããŸããäžæ£ã¢ã¯ã»ã¹ã䜿çšãé瀺ããå人ããŒã¿ãä¿è·ããããã«ãé©åãªæè¡çããã³çµç¹ç察çãå®è£ ããããšãçµç¹ã«èŠæ±ããŸãã
- ã«ãªãã©ã«ãã¢å·æ¶è²»è ãã©ã€ãã·ãŒæ³ïŒCCPAïŒïŒCCPAã¯ãã«ãªãã©ã«ãã¢å·ã®äœæ°ã«ãå人æ å ±ãžã®ã¢ã¯ã»ã¹ãåé€ãããã³è²©å£²ããã®ãªããã¢ãŠãããæš©å©ãä»äžããŸããCCPAã®å¯Ÿè±¡ãšãªãçµç¹ã¯ãå人ããŒã¿ãä¿è·ããããã«åççãªã»ãã¥ãªãã£å¯Ÿçãå®è£ ããå¿ èŠããããŸãã
- å»çä¿éºã®æºè¡æ§ãšèª¬æè²¬ä»»ã«é¢ããæ³åŸïŒHIPAAïŒïŒHIPAAã¯ãç±³åœã§ä¿è·å¯Ÿè±¡å»çæ å ±ïŒPHIïŒãåŠçããå»çæäŸè ããã³ãã®ä»ã®çµç¹ã«é©çšãããŸããPHIã®äžæ£ã¢ã¯ã»ã¹ã䜿çšãé瀺ããä¿è·ããããã«ã管çäžãç©ççãããã³æè¡çãªä¿è·æªçœ®ãå®è£ ããããšãçµç¹ã«èŠæ±ããŸãã
- ISO 27001ïŒISO 27001ã¯ãæ å ±ã»ãã¥ãªãã£ãããžã¡ã³ãã·ã¹ãã ïŒISMSïŒã®åœéæšæºã§ããISMSã確ç«ãå®è£ ãç¶æãããã³ç¶ç¶çã«æ¹åããããã®ãã¬ãŒã ã¯ãŒã¯ãæäŸããŸãã
çµè«
ææžä¿è·ã¯ãäžçäžã®çµç¹ããã³å人ã«ãšã£ãŠæ å ±ã»ãã¥ãªãã£ã®éèŠãªåŽé¢ã§ããæå·åãã¢ã¯ã»ã¹å¶åŸ¡ãDRMãéãããDLPãã»ãã¥ã¢ãªã¹ãã¬ãŒãžãšå ±æãã©ã¯ãã£ã¹ããŠãŒã¶ãŒ ãã¬ãŒãã³ã°ãããã³å®æçãªã»ãã¥ãªãã£ç£æ»ãçµã¿åãããå€å±€çãªã¢ãããŒããå®è£ ããããšã«ãããããŒã¿äŸµå®³ã®ãªã¹ã¯ãå€§å¹ ã«è»œæžãã貎éãªæ å ±è³ç£ãä¿è·ã§ããŸããã°ããŒãã«ãªã³ã³ãã©ã€ã¢ã³ã¹èŠä»¶ã«ã€ããŠã®æ å ±ãåžžã«ææ¡ããŠããããšã¯ãææžä¿è·æŠç¥ãäºæ¥ãå±éããåœã®æ³çããã³èŠå¶åºæºãæºãããŠããããšãä¿èšŒããããã«ãäžå¯æ¬ ã§ãã
ææžä¿è·ã¯äžåºŠéãã®ã¿ã¹ã¯ã§ã¯ãªããç¶ç¶çãªããã»ã¹ã§ããããšãå¿ããªãã§ãã ãããã»ãã¥ãªãã£äœå¶ãç¶ç¶çã«è©äŸ¡ããé²åããè åšã«é©å¿ããææ°ã®ã»ãã¥ãªãã£æè¡ãšãã¹ããã©ã¯ãã£ã¹ãææ°ã®ç¶æ ã«ä¿ã€ããšã§ãå ç¢ã§å¹æçãªææžä¿è·ããã°ã©ã ãç¶æã§ããŸãã