MA 201CMR17.00

Proactively setting new compliance standards

Massachusetts became the first US state to enact their own standards for the security of personal information on business and organizational computers, and every person who owns or licenses personal information about a resident of the Commonwealth need to be in compliance with this law by March 1, 2010. This comprehensive new data security law, called “MA 201CMR17.00, Standards for the Protection of Personal Information of Residents of the Commonwealth” applies to any business that electronically stores personal information (PI) about a Massachusetts citizen, whether that business is located in-or outside of Massachusetts. The thrust of this new legislation is aimed at better protecting consumers against identity theft and fraud.


Tripwire gives organizations IT control to better protect consumers against identity theft and fraud.

Tripwire delivers a comprehensive solution by:

  • Providing extensive compliance policies to manage user IDs, password strength and complexity, and proactive IT security infrastructure like firewalls.
  • Maintaining continuous compliance with file integrity monitoring by detecting any change to a file or system setting and automating the repair of configurations that intentionally or accidentally fall from secure and compliant states.
  • Reconciling changes or event activity against approved and authorized changes, and swiftly repairing unauthorized or undesirable change.
  • Generating an audit trail that logs the state of physical and virtual infrastructure, along with any actions taken to remediate out-of-compliance infrastructure.


MA 201 CMR Resources

    • Infosecurity Europe 2012 Wrap Up
      Infosec expert and ‘cynic’ Javvad Malik summarizes the most important aspects of Infosecurity Europe 2012. Some of the top trends and key takeaways: risk management and the rising role of the CISO....
    • Communicating the value of Information Security – Part 3
      In part 2 of this series, I talked about getting to know the "language" of your particular business. This week, I want to talk about how to leverage Enterprise Architects, if they are available. They can be...
    • The Growing Pains of the New CISO
      Recently we had an opportunity to interview Phil Cracknell (@PCracknell on Twitter) during Infosecurity Europe. Infosec expert and ‘cynic’ Javvad Malik asks Mr. Cracknell, Global Security and...

To read more blog posts, visit the State of Security Blog.

To browse more, visit the company news section.

Resource Library

Resource Library

Read, watch or listen to valuable information about Tripwire solutions, customer success stories, IT security and compliance best practices, and more.

Resource Library