The General Data Protection Regulation (GDPR), the data protection and privacy regulation enacted by the European Union, defines a personal data breach as “a breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or access to, personal data transmitted, stored or otherwise processed.”

Here, the company’s security is not jeopardized, but the consumer’s privacy is violated. New contracts between businesses and federal agencies are also good examples of how IT issues cut through the different layers between privacy, confidentiality and security. What is the difference between the privacy and security of Security is defined as the mechanism in place to protect the privacy of health information. This includes the ability to control access to patient information, as well as to safeguard patient information from unauthorized disclosure, alteration, loss or destruction.