
On May 3, 2007, lawmakers began the process of passing the Personal Data Privacy & Security Act and the Notification of Risk to Personal Data Act (which were passed by Senate committee and introduced into the full Senate).
This legislation is meant to be a double edged sword in the fight against identity theft. This legislation specifies directives and increases personal liability associated with breaches to the protection of individually identifying data. "Both those failing to protect personal information and any party or parties benefiting from that failure can be prosecuted."
More than 38 states require notification when a security breach presents a reasonable risk of identity theft. No industry or particular size of company is exempt and the security breach laws may vary by state.
Violations of the federal laws include staggering federal and state fines as high as $1 million per occurrence, civil liability for victim losses (including class actions), and in some instances the legislation provides for removal and imprisonment of culpable business executives and employees responsible for the data loss.

Direct Defender features a cutting-edge completely automated turnkey Privacy Compliance Solution and a fully managed method of dealing with Identity Theft and a step by step Affirmative Identity Theft Prevention & Privacy
Direct Defender's technology provides affordable and effective protection to companies in the event of a corporate data breach. This program protects the covered company and its customers, alerting affected customers in the event of a breach, providing a single site 800 number for breached customers to contact, assisting the company in required agency notifications, and recovering any resulting Identity Theft.
"Authorized insiders pose the greatest threat to computing systems, company information and customer data today!"
The issue is not with security technology, but rather the lack of security awareness among employees. Information security professionals have to deal with losses and data breaches created by users opening malware, forgetting to backup files, using weak passwords, losing laptops or flashdrives with confidential data, or often being tricked into giving up their passwords by social engineers.
Users often have little or no formal training on information security, counter-measures, information policies or legislatively mandated procedures. Direct Defender equips employees by teaching them the skills to properly identify and respond to security threats and to understand correct private information procedures.