5-2 Project Two Submission Report Stephanie M. Latham Southern New Hampshire University
Report Evaluate whether the company has an ethical and/or legal obligation to report the breach to its customers. Your evaluation should be framed as a report for the owner, Clare, that includes the following sections and information. Introduction The moral standards that guide a person's actions are referred to as ethics. These guidelines are frequently arbitrary and differ significantly throughout nations, faiths, and people. Unlike laws, which are subject to external enforcement, ethics are determined by an individual's conscience and good judgment. On the other hand, law is a body of rules and regulations that are established and upheld by a nation's administrative authority to control behavior among its citizens for the benefit of all. The term "corporate social responsibility" (CSR) describes an organization's self-imposed obligation to the community in areas such the economics, environment, worker welfare, and competitive ethics. CSR is the responsibility placed on businesses to behave whenever possible in the best interests and for the benefit of the community. A corporation has a social obligation to make moral choices that benefit society. Team, what is Corporate Social Responsibility (CSR)? 2023, has helped us understand that companies use internal CSR policies as a moral compass to direct the moral expansion of their business. Analysis The responsibility of corporations to avoid and remedy the repercussions of data breaches is just one of the ethical and legal concerns surrounding data breaches. The privacy of anybody who is affected by the exposed data will be one of the additional obligations of the data breach. It
is necessary to notify the affected parties and the appropriate regulatory organizations. The business's reaction to the lawsuits and fines related to security breaches. Expecting legal problems. The ethical responsibilities of attorneys in the event of a data breach include keeping an eye out for potential breaches, putting an end to them, restoring systems, and figuring out what went wrong. There are several considerations to make in the event of a breach. Beginning with the pertinent parties affected by a data leak. The information security team, operations team, investor relations team, legal counsel, IT team, cybersecurity team, HR team, communications team, forensics team, and customers are a few examples of this. Any security incident where unauthorized parties obtain sensitive or private information such as Social Security numbers, bank account numbers, medical records, or corporate information, such as customer data records, intellectual property, or financial information is referred to as a data breach. A data breach may have long-term consequences for a corporation. Unintended repercussions from a data leak could include the CEO and CISO becoming adversaries. Additionally, it may result in tainted search results for your business name, a drop in sales after a data breach, unexpected expenses, a decrease in your company's appeal to potential hires- especially for tech roles-and legal ramifications. Data loss is another potential consequence of a data breach, which could include personal, financial, and health information. Via stolen data,