With identity theft a widespread issue in the financial services industry, banks and ARM companies are under increased pressure to ensure consumers’ sensitive identification, contact, and financial information is kept safe. In fact, a number of recent state and federal laws and regulations codify certain requirements for handling financial data. Firms in the ARM industry must adhere to a host of standards, including the Payment Card Industry Data Security Standard (PCI DSS), the financial privacy and safeguards rules in the Gramm–Leach–Bliley Act (GLBA), the FTC’s Red Flags Rule for identity theft, information security standard ISO 27002, HIPAA and the HITECH Act for the healthcare sector, and the Federal Information Security Management Act of 2002 (FISMA) for those collecting on government contracts. Auditing standard SAS 70 is also required for many in the financial services industry that use outside vendors such as debt collection agencies.

See all Topics

PCI Group Meets NIST FISMA Compliance Standards for Enhanced Risk Management and Data Protection

23 August 2011

New Best-Practices Guide to Debt Collection Information Security Attestation

19 August 2011

Sentry Credit Achieves Tech Lock Certified Program

16 August 2011

Stoneleigh Recovery Associates Announces the Successful Completion of SSAE 16 Certification

3 August 2011

Contract Callers Achieves SSAE 16 Compliance

28 July 2011

Constar Financial Services Achieves SSAE16 Type II Audit Compliance

22 July 2011

Vital Solutions Successfully Completes ISO 27002 Security Assessment

15 July 2011

Citi Credit Card Hack Larger than Initially Thought

16 June 2011

Citigroup Discloses Hack Attack on Credit Card Accounts

9 June 2011

ACA Announces ISO 27001:2005 Consulting Service Endorsement

31 May 2011

Call it Dooty: Sony's Ongoing Failures Imperil Consumer Finances

26 May 2011

RGS Financial Joins PCI Security Standards Council as Participating Organization

10 May 2011

FTC Panel 4: That Time My Mind Was Blown or Is Email Considered Mail?

28 April 2011

Debt Collection 2.0: Opening Remarks; "Take my wife, please!"

28 April 2011

Data Impact Announces PCI Level 1 Re-Certification of its Flagship e-Invoicing Solution

27 April 2011

WebRecon Announces Compliance With PCI DSS and SAS70 Standards

22 April 2011

Columbia Ultimate Now PCI 2.0 Compliant

14 April 2011

Stephens & Michaels Associates Joins Tech Lock Certified Program

22 March 2011

PSC Info Group Achieves SAS 70 Type II Certification for 3rd Consecutive Year

9 March 2011

Collection Sciences Joins Tech Lock Certified Program

9 February 2011