Digital Literacy Training

Explore top LinkedIn content from expert professionals.

  • View profile for Jeff Jockisch

    Partner @ ObscureIQ🔸Privacy Recovery for VIPs🔸Data Broker Expert

    7,953 followers

    You can have my data... but only on "MyTerms" Doc Searls is leading an initiative called MyTerms, a proposed IEEE standard (P7012). It is attempting to flip the script on privacy online. Instead of passively agreeing to sites' privacy policies, users would set their own privacy terms, in a machine-readable and portable format. When you visit websites or use services, the idea is that you are the first party in each interaction, not just a consenting bystander. 💡 The Gist: ♦️User-first privacy contracts: You tell websites your terms, not the other way around. ♦️Portable privacy preferences: Set once, apply across sites. ♦️Not a request like Do Not Track, it's a demand. ♦️Standardized templates you can apply. Like #NoStalking. This allow users to easily declare what data they’ll share. ♦️Sites can accept, negotiate, or refuse, just like any contract. There are speed bumps... 💩 Adoption hurdles: Sites can just say "no" or block users with strict terms. 💩 Voluntary compliance: No legal enforcement; relies on goodwill or market pressure. Ars Technica has a write up: https://lnkd.in/eJvkEghr Debbie Reynolds, Heidi Saas

  • View profile for Elie Matar

    Cybersecurity Specialist and Advisory @ Renault Group | Cyber Risk Management | GRC

    9,791 followers

    𝑷𝒓𝒊𝒗𝒂𝒄�� 𝒄𝒐𝒎𝒑𝒍𝒊𝒂𝒏𝒄𝒆 𝒊𝒔 𝒃𝒆𝒄𝒐𝒎𝒊𝒏𝒈 𝒉𝒂𝒓𝒅𝒆𝒓 𝒕𝒐 𝒎𝒂𝒏𝒂𝒈𝒆, 𝒏𝒐𝒕 𝒃𝒆𝒄𝒂𝒖𝒔𝒆 𝒓𝒆𝒈𝒖𝒍𝒂𝒕𝒊𝒐𝒏𝒔 𝒂𝒓𝒆 𝒖𝒏𝒄𝒍𝒆𝒂𝒓, 𝒃𝒖𝒕 𝒃𝒆𝒄𝒂𝒖𝒔𝒆 𝒐𝒑𝒆𝒓𝒂𝒕𝒊𝒐𝒏𝒂𝒍𝒊𝒛𝒊𝒏𝒈 𝒕𝒉𝒆𝒎 𝒊𝒔. This ISO/IEC 27701 Implementation Guide provides a structured and practical walkthrough for building a Privacy Information Management System (PIMS) on top of ISO/IEC 27001, with clear links to GDPR and other global privacy regulations 𝐖𝐡𝐚𝐭 𝐦𝐚𝐤𝐞𝐬 𝐭𝐡𝐢𝐬 𝐠𝐮𝐢𝐝𝐞 𝐯𝐚𝐥𝐮𝐚𝐛𝐥𝐞 𝐢𝐬 𝐢𝐭𝐬 𝐞𝐧𝐝-𝐭𝐨-𝐞𝐧𝐝 𝐩𝐞𝐫𝐬𝐩𝐞𝐜𝐭𝐢𝐯𝐞: -->It connects privacy governance, risk management, and operational controls --> It clarifies controller vs processor responsibilities --> It translates legal obligations into auditable processes and evidence --> It shows how privacy fits into existing ISMS structures rather than standing apart For organizations already working with ISO/IEC 27001, this is a logical next step to move from security compliance to accountable privacy management. For others, it highlights why privacy cannot remain a legal or documentation exercise only. Worth reading for CISOs, DPOs, risk managers, and anyone involved in turning privacy requirements into something that actually works in day-to-day operations. Thank you MoS & ETCISO | Khushi Malhotra | Niranjan V | Soumik Ghosh | Muqbil Ahmar #ISO27701 #PrivacyManagement #GDPR #DataProtection #GRC #InformationSecurity #PIMS

  • View profile for Angelique Dawnbringer

    Digital Trust | Information & Cybersecurity Advisor

    3,393 followers

    𝗣𝗲𝗼𝗽𝗹𝗲 𝗼𝗳𝘁𝗲𝗻 𝘁𝗮𝗹𝗸 𝗮𝗯𝗼𝘂𝘁 𝗯𝗲𝗶𝗻𝗴 𝗰𝗮𝗿𝗲𝗳𝘂𝗹 𝗼𝗻𝗹𝗶𝗻𝗲. 𝗙𝗲𝘄𝗲𝗿 𝗽𝗲𝗼𝗽𝗹𝗲 𝘁𝗮𝗹𝗸 𝗮𝗯𝗼𝘂𝘁 𝗯𝗲𝗶𝗻𝗴 𝗶𝗻𝘁𝗲𝗻𝘁𝗶𝗼𝗻𝗮𝗹. Today, during a security interview, the topic of my online presence came up. Since I am a visible person, the assumption was that I must be sharing a lot of private things publicly (unknowingly). 𝗧𝗵𝗮𝘁 𝗮𝘀𝘀𝘂𝗺𝗽𝘁𝗶𝗼𝗻 𝗶𝘀 𝘄𝗿𝗼𝗻𝗴. There is a difference between being visible and being careless. Despite having been a very visible person for many years, I actually have a very small digital footprint. Much smaller than most people expect. 𝗜 𝗱𝗶𝘃𝗶𝗱𝗲 𝗶𝗻𝗳𝗼𝗿𝗺𝗮𝘁𝗶𝗼𝗻 𝗶𝗻𝘁𝗼 𝘁𝗵𝗿𝗲𝗲 𝘃𝗲𝗿𝘆 𝗱𝗲𝗹𝗶𝗯𝗲𝗿𝗮𝘁𝗲 𝗰𝗮𝘁𝗲𝗴𝗼𝗿𝗶𝗲𝘀: • 𝗧𝗵𝗶𝗻𝗴𝘀 𝘁𝗵𝗲 𝘄𝗼𝗿𝗹𝗱 𝗺𝗮𝘆 𝗸𝗻𝗼𝘄, where I understand and accept the risks. • 𝗧𝗵𝗶𝗻𝗴𝘀 𝗼𝗻𝗹𝘆 𝘁𝗿𝘂𝘀𝘁𝗲𝗱 𝗽𝗲𝗼𝗽𝗹𝗲 𝘀𝗵𝗼𝘂𝗹𝗱 𝗼𝗿 𝗺𝗮𝘆 𝗸𝗻𝗼𝘄, shared intentionally. • 𝗧𝗵𝗶𝗻𝗴𝘀 𝗻𝗼𝗯𝗼𝗱𝘆 𝘀𝗵𝗼𝘂𝗹𝗱 𝗲𝘃𝗲𝗿 𝗸𝗻𝗼𝘄, which are never online. Being security aware is not about disappearing from the internet. 𝗜𝘁 𝗶𝘀 𝗮𝗯𝗼𝘂𝘁 𝘂𝗻𝗱𝗲𝗿𝘀𝘁𝗮𝗻𝗱𝗶𝗻𝗴 𝘄𝗵𝗮𝘁 𝘆𝗼𝘂 𝘀𝗵𝗮𝗿𝗲, 𝘄𝗵𝘆 𝘆𝗼𝘂 𝘀𝗵𝗮𝗿𝗲 𝗶𝘁, 𝗮𝗻𝗱 𝘄𝗶𝘁𝗵 𝘄𝗵𝗼𝗺. Sensitive material in my life does not live in cloud services or social platforms. 𝗜𝘁 𝗹𝗶𝘃𝗲𝘀 𝗼𝗻 𝗱𝗲𝘃𝗶𝗰𝗲𝘀 𝗽𝗵𝘆𝘀𝗶𝗰𝗮𝗹𝗹𝘆 𝗶𝗻𝗰𝗮𝗽𝗮𝗯𝗹𝗲 𝗼𝗳 𝗴𝗼𝗶𝗻𝗴 𝗼𝗻𝗹𝗶𝗻𝗲. My cameras are digital, but offline. My audio and video equipment are offline. 𝗧𝗵𝗲 𝘀𝘆𝘀𝘁𝗲𝗺 𝗜 𝘂𝘀𝗲 𝗶𝘀 𝗮𝗶𝗿 𝗴𝗮𝗽𝗽𝗲𝗱 𝗮𝗻𝗱 𝗻𝗲𝘃���𝗿 𝗰𝗮𝗽𝗮𝗯𝗹𝗲 𝗼𝗳 𝗰𝗼𝗻𝗻𝗲𝗰𝘁𝗶𝗻𝗴 𝘁𝗼 𝘁𝗵𝗲 𝗶𝗻𝘁𝗲𝗿𝗻𝗲𝘁. That is not paranoia. 𝗧𝗵𝗮𝘁 𝗶𝘀 𝘁𝗵𝗿𝗲𝗮𝘁 𝗺𝗼𝗱𝗲𝗹𝗶𝗻𝗴. 𝗔𝗿𝗲 𝘁𝗵𝗲𝗿𝗲 𝘀𝗲𝗻𝘀𝗶𝘁𝗶𝘃𝗲 𝗽𝗶𝗰𝘁𝘂𝗿𝗲𝘀 𝗼𝗳 𝗺𝗲? 𝗬𝗲𝘀. 𝗔𝗿𝗲 𝘁𝗵𝗲𝗿𝗲 𝘁𝗵𝗶𝗻𝗴𝘀 𝗜 𝘄𝗮𝗻𝘁 𝘁𝗼 𝗵𝗶𝗱𝗲? 𝗡𝗼𝘁 𝗿𝗲𝗮𝗹𝗹𝘆. That is not because nothing sensitive exists. It is because what exists is intentional. Sensitive does not automatically mean dangerous. Uncontrolled does. 𝗩𝗶𝘀𝗶𝗯𝗶𝗹𝗶𝘁𝘆 𝗱𝗼𝗲𝘀 𝗻𝗼𝘁 𝗲𝗾𝘂𝗮𝗹 𝗿𝗲𝗰𝗸𝗹𝗲𝘀𝘀𝗻𝗲𝘀𝘀. 𝗣𝗿𝗶𝘃𝗮𝗰𝘆 𝗱𝗼𝗲𝘀 𝗻𝗼𝘁 𝗿𝗲𝗾𝘂𝗶𝗿𝗲 𝘀𝗶𝗹𝗲𝗻𝗰𝗲. Once something is on the internet, it is 𝗮𝗹𝘄𝗮𝘆𝘀 on the internet. 𝗧𝗵𝗮𝘁 𝗶𝘀 𝘄𝗵𝘆 𝗶𝗻𝘁𝗲𝗻𝘁𝗶𝗼𝗻 𝗺𝗮𝘁𝘁𝗲𝗿𝘀. 𝗦𝗲𝗰𝘂𝗿𝗶𝘁𝘆 𝗶𝘀 𝗮𝗯𝗼𝘂𝘁 𝗸𝗻𝗼𝘄𝗶𝗻𝗴 𝗲𝘅𝗮𝗰𝘁𝗹𝘆 𝘄𝗵𝗮𝘁 𝘆𝗼𝘂 𝗮𝗿𝗲 𝗱𝗼𝗶𝗻𝗴. 𝗔𝗻𝗱 𝗱𝗼𝗶𝗻𝗴 𝗶𝘁 𝗼𝗻 𝗽𝘂𝗿𝗽𝗼𝘀𝗲. #cybersecurity #digitalhygiene #threatmodeling #privacybydesign #infosec #securityawareness #opsec #digitalidentity #trust #riskmanagement

  • The Office of the Australian Information Commissioner has published the "Privacy Foundations Self-Assessment Tool" to help businesses evaluate and strengthen their privacy practices. This tool is designed for organizations that may not have in-house privacy expertise but want to establish or improve how they handle personal information. The tool is structured as a questionnaire and an action planning section that can be used to create a Privacy Management Plan. It covers key #privacy principles and offers actionable recommendations across core areas of privacy management, including: - Accountability and assigning responsibility for privacy oversight. - Transparency through clear external-facing privacy notices and policies. - Privacy and #cybersecurity training for staff. - Processes for identifying and managing privacy risks in new projects. - Assessing third-party service providers handling personal data. - Data minimization practices and consent management for sensitive information. - Tracking and managing use and disclosure of personal data. - Ensuring opt-out options are provided and honored in direct marketing. - Maintaining an up-to-date inventory of personal data holdings. - Cybersecurity and data breach response. - Secure disposal or de-identification of data when no longer needed. - Responding to privacy complaints and individual rights requests. This self-assessment provides a maturity score based on the responses to the questionnaire and tailored recommendations to support next steps.

  • View profile for Jodi Daniels

    Practical Privacy Advisor / Fractional Privacy Officer / AI Governance / WSJ Best Selling Author / Keynote Speaker

    21,093 followers

    Your privacy program isn’t broken.   It might just be buried in 14 tabs, 3 spreadsheets, and one “we should really fix this” Slack thread.   The reality? Most organizations tackle privacy in silos because they don't know where to start or who owns what.   Sound familiar?   It looks something like this: → Privacy built a data inventory that hasn't been updated in a year → Engineering launched new products without privacy impact assessments → Marketing implemented a cookie consent banner and didn't tell legal → Legal drafted a privacy notice that was never published   We get it. Privacy programs have many complicated layers.   Yet completing just one or two privacy components is not a program.   A privacy program includes all the components, like: ✔ Privacy Program Assessments ✔ Regulatory Compliance ✔ Data Inventory Management ✔ Cookie Consent Management ✔ Privacy Rights ✔ Privacy Impact Assessments ✔ Third-Party Risk Management ✔ Internal Policies and External Notices ✔ Privacy Training ✔ Cybersecurity   To build a true privacy program, pull all the components together into a cohesive approach and: → Establish clear ownership across teams → Coordinate processes that connect → Build a shared framework that aligns everyone   And we have an actionable guide to help you with that.   Built around our Privacy☘PS® framework, our Privacy Program Management Guide shows you how to: ✔ Organize the essential pieces of a privacy program ✔ Identify who’s responsible for what ✔ Determine when to start and where personal data is collected, used, or stored ✔ Track your program progress using a fill-in-the-blank workbook section If you're building or improving a privacy program, our guide turns plans into action. Download our Privacy Program Management Guide now and transform scattered privacy activities into a cohesive program (link in the comments because LI doesn't like them here anymore):   And it's free! No registration. No name or email address required. ♻️ Share so more companies can build cohesive privacy programs.

  • View profile for Aidan Raney

    Co-Founder @ Alerts Bar | Fastest Infostealer Intelligence

    15,438 followers

    OSINTers often spend a lot of time investigating other people. However, we might forget to cover ourselves at the same time. Here’s a list of tools and resources to help you fix some of the OPSEC sins we can all be guilty of! • Operation Privacy, https://lnkd.in/gfjFZJY2 - An online dashboard providing free OPSEC advice and resources, helping users track their privacy to prevent stalkers, swatters, and doxxing. • Techlore Privacy and Security Resources, https://lnkd.in/ghtBW9HT - Provides a comprehensive series of guides to personal security and tools such as the VPN toolkit, for comparing the practices of different VPN providers. • Privacy Guides, https://lnkd.in/gy8D_Xba - Another comprehensive series of OPSEC resources, including the Knowledge Base, articles, recommendations, and a forum for tightening your personal security. • Privacy Virtual Cards, https://privacy.com/ - Leading provider of virtual payment cards in the US, limiting the amount of personal information is shared through purchases. • Digital Defence, https://lnkd.in/gS_4zJhh - Provides free personal security checklists for categories such as authentication, web browsing, email, etc. • DuckDuckGo, https://duckduckgo.com/ - A search engine protecting the privacy of its users by not storing personal user information, and or personalising results. • Mullvad, https://lnkd.in/gCxrS8Kh - A service offering a privacy-focused browser as well as a VPN in order to maximise the security of the user and minimise internet fingerprinting. • DNS Leak Test, https://lnkd.in/gicNFiNz - Identifies domain name system and web real-time communication leaks related to the user’s IP address. • VMware, https://www.vmware.com/ - A service allowing users to create virtual machines, allowing for compartmentalisation when working on sensitive projects. • Proxmox, https://lnkd.in/g3h6wecy - An open-source platform allowing users to create virtualised environments, secure email servers and add network-level VPN protections to enhance their online privacy. • JMPchat, https://jmp.chat/ - A service providing US and Canadian phone numbers for compartmentalization. • Firefox Relay, https://relay.firefox.com/ - Allows users to mask their email address and phone number, remove email trackers, block promotional emails, and add VPN protection from Mozilla. • addy.io, https://addy.io/ - Protects users’ email addresses by using email aliases, protects identities in data breaches, encrypts emails, and identifies where data may have been sold by using a different email address in every site. • SimpleLogin, https://lnkd.in/gEkaDecN - A browser extension and app providing anonymous email addresses and email aliases when signing up for an online service. These are just a few of the tools and resources you can use to stay safe on the internet and in your OSINT investigations. Stay alert and stay secure.

  • View profile for Oladipo Taiwo Olamide

    LLB | Cybersecurity Awareness Advocate | Governance, Risk, and Compliance | Data Protection and Privacy | Content Writer | Open to Internships & Opportunities.

    3,532 followers

    I saw a post on Twitter recently that really made me pause. A woman had shared a picture of her child but later deleted it after noticing that people were bookmarking the post, which made her wonder why anyone would want to save a picture of her child. Even if some of those bookmarks were harmless, her decision to take them down was a smart one and a reminder of something we all need to think about more often, which is that privacy online matters a lot. We live in a time where sharing is second nature. A new baby, a fun trip, a promotion at work, it’s all out there in a matter of seconds. We often share parts of our lives online without fully considering who might be watching or why. But here’s the thing: not everything needs to be shared, especially when it involves personal or sensitive details. One crucial concept to understand here is personal identifiable information (PII). PII is any detail that can be used to identify you as an individual. It can be categorized into two types:📍 Non-sensitive PII, which includes information that is publicly accessible and generally not harmful if exposed. For example, your name, birthday, and gender. But in the wrong hands, they can still be used to build a bigger picture about you. 📍Sensitive PII involves information that is private and should be carefully protected. For example, bank verification details (BVN), driver's license, credit card details, medical records, etc. This is where things get serious, and this kind of information shouldn’t be floating around the internet, as it can open the door to identity theft, fraud, or worse. Not Everything Belongs on the Internet. It’s okay to be private. In fact, it’s smart. You can still be active online, share valuable content, and connect with others without giving away your entire life story. Sometimes, sharing just a part of the picture is enough to get your message across. Here are a few simple things you can do to protect your privacy: 📍Pause before you post. Ask yourself if the information really needs to be online. 📍Be curious. If someone’s asking for personal info, think: do they really need this? 📍Clean up regularly. Delete old posts that no longer serve a purpose. 📍Monitor your digital presence. Search your name online regularly to see what information is publicly available about you. Your digital footprint tells a story, and that story is valuable. But if you’re not paying attention, it can also make you vulnerable. Just as we protect ourselves from thieves in the physical world, we must be cautious of digital criminals too. These individuals don't need to point at you to cause harm. They can be miles away and still steal from you just by exploiting the information you carelessly shared. So, before you make that next post, ask yourself:Is this information really necessary to share? And is it worth the potential cost to my privacy? If this post resonated with you, share it with someone who needs the reminder.

  • View profile for Xe iaso

    DevRel at Tigris by day, CEO at Techaro by night

    2,249 followers

    Just delivered a talk on Operational Security (OPSEC) and navigating the increasingly complex world of online privacy! It's a topic I wish wasn't necessary, but in today's reality, understanding how to protect yourself is crucial. We dove into the fundamentals of OPSEC, emphasizing that perfect security is a myth – it's all about balance and informed compromises. The core concept we explored was threat modeling: identifying who you're protecting yourself from and what their capabilities are. This is deeply personal, and your threat model will likely differ significantly from mine or anyone else's. We used a fictional example, "Sleve McDichael," to illustrate how a relatively low-risk individual might approach their online presence. We then covered practical, actionable steps anyone can take. These range from simple behaviors (avoiding sketchy online quizzes, using strong, unique passwords with a password manager, and running updates!) to more advanced strategies like using pseudonyms (nyms) effectively and understanding metadata risks. We also debunked the common misconception that VPN services are a privacy panacea – in many cases, HTTPS provides sufficient encryption, and Tor is a better option for truly private browsing. A significant portion of the talk focused on self-hosting as a powerful tool for regaining control over your data. I shared some of the applications I use in my own homelab (Plex/Jellyfin, Nextcloud, Gitea, Pocket ID) and explained how running your own infrastructure gives you unparalleled insight into data privacy. Even basic hardware can get you started! Ultimately, OPSEC is about making informed choices and minimizing the consequences of inevitable mistakes. Think before you post, be aware of your digital footprint, and understand the tools at your disposal. It's a journey, not a destination! Let me know what your biggest OPSEC concerns and questions. (Look in the first comment for a link to the full talk, including a video and detailed write-up!) #opsec #security #infosec

Explore categories