Now Available:

line

Featured Resources:

line

Newsletter

Email Address:


line

Ask the Expert

Have a question for our resident expert? Email your questions to Rebecca.

« France Fines Tyco Healthcare: U.S. Companies, You MUST Know and Follow International Data Protection Laws | Main | Two U.S. Federal Data Protection Bills Approved: One May Actually Make It Through »

Deadline is Today for Submitting Comments to the DHS About Draft REAL ID Rules

The Department of Homeland Security (DHS) published draft rules regarding REAL ID. Comments are due by 5:00 PM Eastern Time *TODAY*.

As indicated within the draft rules, submit comments today in the following ways:

"You may submit comments, identified by the DHS docket number DHS-2006-0030 that corresponds to this rulemaking, using any one of the following methods: • Federal Rulemaking Portal: http://www.regulations.gov. Follow the instructions for submitting comments. • Fax: 866-466-5370."

A few of the proposed requirements include, as listed on C|Net News:

"• The Real ID cards must include all drivers' home addresses and other personal information printed on the front and in a two-dimensional barcode on the back. The barcode will not be encrypted because of "operational complexity," which means that businesses like bars and banks that require ID would be capable of scanning and recording customers' home addresses.

• A radio frequency identification (RFID) tag is under consideration. Homeland Security is asking for input on how the licenses could incorporate "RFID-enabled vicinity chip technology, in addition to" the two-dimensional barcode requirement.

• States must submit a plan of how they'll comply with the Real ID Act by October 7, 2007. If they don't, their residents will not be able to use IDs to board planes or enter federal buildings starting on May 11, 2008.

• Homeland Security is considering standardizing a "unique design or color for Real ID licenses," which would effectively create a uniform national ID card."

As you can see, these would cause dramatic changes in traveling, doing business, as well as accumulating a huge repository of personally identifiable information (PII) susceptible to misuse if the same lack of controls exist that are within other government repositories.

You can also submit your comments at the Privacy Coalition site.

To see Richard Forno's and Bruce Schneier's analysis see the C|Net News article, "National ID card a disaster in the making."

The requirements, if enacted, will significantly impact not only individuals but businesses as well.

If this concerns you, make your opinions heard by submitting a comment.

TrackBack

TrackBack URL for this entry:
http://www.realtime-itcompliance.com/type/mt-tb.cgi/402

Comments

Nice site man! This will be my first time visiting. Keep up the great work. Thanks much!

Post a comment

(All comments are approved by site leader before appearing here. Thanks for commenting!)

line

Rebecca Herold's Bio:

Rebecca Herold,CISSP, CIPP, CISM, CISA, FLMI, has been providing information security, privacy and regulatory assistance and services to organizations from a wide range of industries for over 18 years. Rebecca was instrumental in building the information security and privacy program while at Principal Financial Group, which was awarded the CSI Information Security Program of the Year Award in 1998. IT Security ranked Rebecca as one of the top 59 IT security influencers, and Computerworld put Rebecca their list of the 25 top privacy experts and on their list of the 9 best privacy consulting firms. Rebecca has been CPO for two consulting organizations, and has had her own information privacy, security and compliance business since 2004. Rebecca has written chapters for several books, dozens of articles, and has been writing a monthly privacy column for the CSI Alert newsletter since the beginning of 2001, and is working on her 11th book. Some of her other books include The Privacy Papers, Managing an Information Security and Privacy Awareness and Training Program, The Definitive Guide to Security Inside the Perimeter (Realtime Publishers), The Shortcut Guide to Improving IT Service Support through ITIL (Realtime Publishers), and The Practical Guide to HIPAA Privacy and Security Compliance. In addition, Rebecca is the leader of The Realtime IT Compliance Community where she posts to her IT Compliance weblog. You can contact Rebecca at: rebecca_herold@realtimepublishers.net.