Regulatory Compliance

compliance

We understand business’s need to ensure that data is safe and in compliance with local and federal laws. We are experts in secure data eradication and adhere to all guidelines for data destruction. Our disposal programs are safe, secure and hassle free, and can help achieve compliance goals.

Regulations Aimed at Data Privacy and Protection

Which of these areas do you need to make sure your company is compliant?

    • Health Insurance Portability and Accountability Act (HIPAA)
    • Sarbanes-Oxley Act (SOX)
    • Gramm-Leach-Bliley Act (Financial Services Modernization Act)
    • USA Patriot Act (Bank Security Act)
    • Homeland Security Information Sharing Act (Federal agencies security information)
    • D.o.D. (Department of Defense) standards
    • National Security Agency (NSA)
    • National Institute of Standards and Technology (NIST) Special Publication Series 800-88
    • National Industrial Security Program (NISP) Operating Manual (DOD 5220.22-M)
    • Health Information Technology for Economic and Clinical Health (HITECH)
    • Fair and Accurate Credit Transactions Act (FACTA)
    • Identity Theft and Assumption Deterrence Act
    • FDA Security Regulations (21 C.F.R. part 11)
    • Payment Card Information Security Standard (PCI)

Does your storage device have to be destroyed to ensure your data is safe?

It depends on the sensitivity of your data.

Level I  (reuse allowed)

  • Appropriate for individual or business. Data Destruction Certificate provided at no charge
  • Degauss allowable media types before testing and certification
  • Reformat and single pass format of functional servo storage media and hard drives. Non-functional media will be degaussed (de-magnetized) and recycled
  • This is a green, eco-friendly solution

Level II  (reuse allowed)

  • Appropriate for business and individuals desiring a higher level of security. Data Destruction Certificate provided at no charge
  • Compliant for mid-range data sensitivity. Covers many regulatory compliance issues and un-classified data.
  • Degauss allowable media types before testing and certification
  • Reformat and multiple-pass format of functional servo storage media and hard drives. Non-functional media will be degaussed (de-magnetized) and recycled
  • Low level DoD compliant – 7 pass wipe
  • This is a green, eco-friendly solution

Level III – Full Data Eradication and Media Destruction and Disposal (not for reuse)

  • Appropriate for  organizations interested in the ultimate data destruction solution
  • Compliant with all standards and regulations
  • Full degaussing and physical destruction of storage media and hard drives
  • This solution is not as eco-friendly as other solutions – some parts may be recycled – but some may end up in landfills

We can answer all of your questions –
Contact us anytime

  • Can my data be securely erased without destroying the media itself?
  • How much is my used storage media or hard drives worth?
  • Are these processes documented so I can show others at my organization?
  • Is someone available to help me put together a proposal for approval?
  • Is WeBuyUsedITequipment a broker?  Or do they do all of the work themselves at their secure, company-owned facility?
  • How do I stay on top of any changes in the laws and regulations concerning the safety and destruction of our data?
  • Which types of equipment are being used during the data destruction processes?
  • What type of documentation will we receive before, during, and after this process?
  • Does WeBuyUsedITequipment have a secure and alarmed facility?   Is the facility under video surveillance?
  • Do you support data destruction for all types of media formats? (mainframe or open systems; enterprise, midrange, or desktop; with or without servo track, SCSI, SATA, FC, etc.) ?
  • Do your processes meet any applicable standard, including the U.S. Department of Defense Sanitizing Standard?
  • How long has WeBuyUsedITequipment been in the asset recovery and data destruction business?
  • Can you supply references for other organizations in my industry?
  • Do you provide on-site solutions?
  • What are the ramifications if our organization does not properly conform to the regulatory acts and laws concerning data destruction?