3 ms·
I worked for a telecomms/webcasting company for about 5 years as a product manager. I can tell you from personal experience that a significant portion of the Fo
by cols 5y ago
I worked for a telecomms/webcasting company for about 5 years as a product manager. I can tell you from personal experience that a significant portion of the Fortune 500 (if not all of them) required ISO 2700X certification to even be considered.
The certification burden increases in proportion to the level of PII you are storing. The burden was much higher for government or med/bio contracts (FedRAMP/HIPPA, etc.). It's also worth it to mention that we had whole teams dedicated to working through RFPs/RFCs as they can get VERY time consuming.
Bottom line is that if you are going to work with the big fish, you will probably need this level of certification to show them you are serious.
- GrumpyNl 5y agoMy experience is, you get to work with a company who "advices" you what to do and they also do the certification. In my opinion, this makes it worthless. The company i worked for got the certification like this every year.
- wglb 5y agoPII is not as toxic as many types of data that I have dealt with. Consider legal discovery processes involving many terabytes of documents. These contain e.g., ingestion of laptop, mail folders, document repositories that themselves contain all the kinds of toxic material that you have ever heard of.