In an ever-advancing technical world, it is becoming difficult for companies and individuals to secure their data. Cyber security systems are constantly being updated to counteract any new virus and threat out there. While there are many systems and software available for data protection, there are steps you can take to protect your vital information. We will start by reviewing these types of data and then look at how to protect it.
Types of Data
Data is an extremely broad term and can range from mathematical data to computer data, research data to a person’s identifying data. The type of data in which your most exposed to in your roles here at Pearl is Personally Identifiable Information (PII), and Personal Health Information (PHI).
PII is any information that allows someone to determine the person’s identity and technically, PHI falls under this, but adds a layer with medical and health records that are protected by HIPAA. There are two categories for PII:
1. Linked Information – The more sensitive information, that by itself, can be used as an identifier:
-
- First and Last Name
- Home Address
- Work Address
- Social Security Number (SSN)
- Driver’s License Numbers
- Phone Number (Work, Home, or Cell)
- Information about Personal Property (Vehicle Identification Numbers, etc.)
- Birthdate
- Credit or Debit Card Numbers
- Email Addresses
- IT-Associated Information (Devices-Specific MAC Addresses, IP Addresses, Serial Numbers, etc.)
2. Linkable Information – This information can’t affect much on its own, but when it is combined with the above, becomes powerful:
-
- Common First and Last Names
- Racial and Gender Categories
- Age
- Job Title
- Broader Address Items (City, State, Country, or Zip Code)
- IP Address
- Cookies
- Device IDs
Now that you understand PI and PII, review the information below on how to protect your own personal data, and also how to protect your customers.
Protecting Your PII
Think about when you sign into your computer or when you are signing into your online accounts, you must enter, usually, a username and password of some kind, this is called “authentication”. You are using this user-specific information to verify you are who you say are. One of the easiest ways to protect your data and the customers is by using a strong password. By doing so and changing them every so often, is a simple but effective form of data protection.
Remember these password creation tips the next time you need to create or update your password:
-
-
- Use a combination of symbols, letters, and numbers
- Use random letters so that it is harder to guess a specific word
- Do not use the same password across multiple programs, services, and other websites
- Do not write passwords down—especially in the workplace
- Use password managers that provide credible password encryption and protection
-
In addition to a strong password, consider adding a second layer of protection by using a Multi-Factor Authentication (MFA). MFA is composed three factors:
-
-
- Something you Know – A password or personal identification number (PIN)
- Something you Have – A token, such as bank card or an RSA token
- Something you Are – Biometrics, such as fingerprints and voice recognition
-
Combining these factors leads several levels of protection. If the login information becomes compromised, a hacker will not be able to enter your accounts without this secondary form of identification.
There are several other things you can do to protect both your own PII, as well as, the customers, and with October being Cybersecurity Awareness Month, the IT Department will be providing more information. Please watch for additional information in next month’s posts, and if you have any questions, please do not hesitate to reach out.

