{"industry":{"id":"ff619d7c-d7d7-485e-a05a-53fba07f33ed","slug":"telecommunications","label":"Telecommunications","description":"Business voice, fiber, UCaaS, and network services"},"topic":{"slug":"ucaas","label":"UCaaS","description":null,"schemaKind":null},"answer":{"id":"20c5609c-d7b6-4346-b9b7-eea6a1f1faec","slug":"what-ucaas-security-best-practices-reduce-data-breach-risk","question":"What UCaaS security best practices reduce data breach risk?","answerMarkdown":"The seven controls that move the needle on UCaaS breach risk are: enforce MFA on every account, encrypt media with SRTP and signaling with TLS 1.2+, classify call recordings and voicemails by sensitivity, apply least-privilege admin roles, segment voice traffic on its own VLAN, monitor audit logs for anomalies, and review third-party app integrations quarterly [1][2]. Static permissions and reused passwords cause most preventable incidents [2].","answerText":"The seven controls that move the needle on UCaaS breach risk are: enforce MFA on every account, encrypt media with SRTP and signaling with TLS 1.2+, classify call recordings and voicemails by sensitivity, apply least-privilege admin roles, segment voice traffic on its own VLAN, monitor audit logs for anomalies, and review third-party app integrations quarterly [1][2]. Static permissions and reused passwords cause most preventable incidents [2]. Troubleshooting Symptom Cause Fix Unauthorized login from a new country Stolen credentials reused from another breach Force password reset, revoke active sessions, enable conditional access blocking risky geographies Mass voicemail download by one user Compromised admin account or insider misuse Suspend the account, preserve logs, review what was accessed, notify legal and security leadership Unknown third-party app appears in OAuth grants Phishing-driven consent or unsanctioned shadow IT Revoke the grant, alert affected users, add the app to the deny list, enforce admin consent workflow Audit log gap of several hours Log forwarder failure or attacker clearing traces Investigate log pipeline health, treat as potential incident, restore logs from provider backup if available Call recording exposed in a public bucket Misconfigured export destination or integration Rotate keys, lock the bucket, identify affected calls, follow breach notification rules Rules / compliance Multi-factor authentication Require MFA for every user, with hardware keys or authenticator apps for admin and finance roles. (source) Encrypted signaling and media Enforce TLS 1.2 or higher for signaling and SRTP for media on all calls and meetings. (source) Sensitive-data classification Classify call recordings, voicemails, and transcripts by sensitivity and apply matching retention and deletion policies. (source) Least-privilege administration Limit admin privileges to two named owners with break-glass procedures and quarterly access reviews. Voice VLAN segmentation Segment voice traffic on its own VLAN with QoS, blocking lateral routes into the data network. Audit log monitoring Stream UCaaS audit logs to a SIEM and alert on impossible-travel logins, mass downloads, and new admin grants. (source) Third-party integration review Review every third-party marketplace integration quarterly; revoke OAuth tokens for unused apps. Attack-surface reduction Disable SMS, fax, and SIP trunk features that the business does not use to shrink the attack surface. Breach response runbook Prepare a breach response runbook covering forensic preservation, regulator notification, and customer communication. (source) Key terms Multi-factor authentication (MFA) Login requiring a second factor beyond password, such as an authenticator app or hardware key. Compliance requirement SRTP Secure Real-time Transport Protocol; encrypts the media stream of voice and video calls end-to-end. Technical dependency Least privilege Access control principle granting each user the minimum permissions needed for their role, reviewed regularly. Compliance requirement SIEM integration Pipe of UCaaS audit logs into a security information and event management tool for anomaly detection. Technical dependency Voice VLAN Dedicated virtual LAN that isolates VoIP traffic from user data, limiting lateral movement after a breach. Technical dependency Shadow IT Unsanctioned communication apps employees adopt when official tools feel too restrictive, expanding the attack surface. Buyer segment Related questions What UCaaS compliance requirements apply to healthcare organizations? /search?q=What+UCaaS+compliance+requirements+apply+to+healthcare+organizations%3F What does a UCaaS SLA typically guarantee? /search?q=What+does+a+UCaaS+SLA+typically+guarantee%3F How do you build a UCaaS disaster recovery plan? /search?q=How+do+you+build+a+UCaaS+disaster+recovery+plan%3F Providers to consider Microsoft Teams Phone Teams Phone inherits the Microsoft 365 security stack — conditional access, Entra ID MFA, and Defender — giving enterprises with 320 million existing Teams MAUs a single identity and policy plane for voice. https://www.microsoft.com/en-us/microsoft-teams/microsoft-teams-phone Cisco Webex Calling Cisco publishes the deepest security and compliance documentation in the category and supports hybrid deployment, suiting enterprises that need FedRAMP, ISO 27001, and on-premises media options under one architecture. https://www.cisco.com/site/us/en/products/collaboration/webex-calling/index.html RingCentral Decade-long Gartner UCaaS Leader with end-to-end encryption on Teams Meetings and a published trust portal — relevant for security buyers who want a mature SOC 2 and HIPAA control set at enterprise scale. https://www.ringcentral.com","answerHtml":"<p>The seven controls that move the needle on UCaaS breach risk are: enforce MFA on every account, encrypt media with SRTP and signaling with TLS 1.2+, classify call recordings and voicemails by sensitivity, apply least-privilege admin roles, segment voice traffic on its own VLAN, monitor audit logs for anomalies, and review third-party app integrations quarterly <a href=\"https://safe.security/resources/insights/data-breach-prevention-best-practices\" class=\"citation-ref\" data-citation-index=\"1\" target=\"_blank\" rel=\"noreferrer\">[1]</a><a href=\"https://www.paloaltonetworks.com/cyberpedia/data-security-best-practices\" class=\"citation-ref\" data-citation-index=\"2\" target=\"_blank\" rel=\"noreferrer\">[2]</a>. Static permissions and reused passwords cause most preventable incidents <a href=\"https://www.paloaltonetworks.com/cyberpedia/data-security-best-practices\" class=\"citation-ref\" data-citation-index=\"2\" target=\"_blank\" rel=\"noreferrer\">[2]</a>.</p>\n","summary":"Reduce UCaaS breach risk with MFA, encryption, data classification, least privilege, voice segmentation, log monitoring, and quarterly integration reviews.","publishedAt":"2026-06-15T14:28:52.784","verifiedAt":null,"editorialStatus":"APPROVED","lastReviewedAt":null,"nextReviewDueAt":null,"templateVersion":"v2","aliases":[],"confidenceScore":null,"confidenceLabel":null,"canonicalUrl":"https://safe.security/resources/insights/data-breach-prevention-best-practices"},"contributor":{"id":"ec39deab-44fe-48d8-9029-fefe993ab85a","slug":"answer-stack","displayName":"AnswerStack","websiteUrl":null},"contributorOrganizationProfile":{"entityId":"ec39deab-44fe-48d8-9029-fefe993ab85a","legalName":null,"description":null,"websiteUrl":null,"imageUrl":null,"slogan":null,"subtitle":null,"facts":[],"coiNote":null,"foundingDate":null,"numberOfEmployeesText":null,"contactPoint":null,"address":null,"headquartersText":null,"organizationType":null},"contributorPerson":null,"sections":[{"id":"f0933ef1-4ea6-4dd2-a172-6b507623427f","sectionKey":"troubleshooting","sectionType":"table_section","heading":"Troubleshooting","introMarkdown":null,"introHtml":null,"outroMarkdown":null,"outroHtml":null,"contentJson":{"rows":[{"cells":["Unauthorized login from a new country","Stolen credentials reused from another breach","Force password reset, revoke active sessions, enable conditional access blocking risky geographies"]},{"cells":["Mass voicemail download by one user","Compromised admin account or insider misuse","Suspend the account, preserve logs, review what was accessed, notify legal and security leadership"]},{"cells":["Unknown third-party app appears in OAuth grants","Phishing-driven consent or unsanctioned shadow IT","Revoke the grant, alert affected users, add the app to the deny list, enforce admin consent workflow"]},{"cells":["Audit log gap of several hours","Log forwarder failure or attacker clearing traces","Investigate log pipeline health, treat as potential incident, restore logs from provider backup if available"]},{"cells":["Call recording exposed in a public bucket","Misconfigured export destination or integration","Rotate keys, lock the bucket, identify affected calls, follow breach notification rules"]}],"columns":["Symptom","Cause","Fix"]},"configJson":{},"noteMarkdown":null,"noteHtml":null,"sortOrder":0},{"id":"48c71f16-b1ca-4d5b-b511-6e178d260a63","sectionKey":"rules","sectionType":"cards_section","heading":"Rules / compliance","introMarkdown":null,"introHtml":null,"outroMarkdown":null,"outroHtml":null,"contentJson":{"cards":[{"title":"Multi-factor authentication","bodyMarkdown":"Require MFA for every user, with hardware keys or authenticator apps for admin and finance roles. ([source](https://safe.security/resources/insights/data-breach-prevention-best-practices/))"},{"title":"Encrypted signaling and media","bodyMarkdown":"Enforce TLS 1.2 or higher for signaling and SRTP for media on all calls and meetings. ([source](https://securiti.ai/best-practices-to-prevent-data-breach/))"},{"title":"Sensitive-data classification","bodyMarkdown":"Classify call recordings, voicemails, and transcripts by sensitivity and apply matching retention and deletion policies. ([source](https://www.paloaltonetworks.com/cyberpedia/data-security-best-practices))"},{"title":"Least-privilege administration","bodyMarkdown":"Limit admin privileges to two named owners with break-glass procedures and quarterly access reviews."},{"title":"Voice VLAN segmentation","bodyMarkdown":"Segment voice traffic on its own VLAN with QoS, blocking lateral routes into the data network."},{"title":"Audit log monitoring","bodyMarkdown":"Stream UCaaS audit logs to a SIEM and alert on impossible-travel logins, mass downloads, and new admin grants. ([source](https://safe.security/resources/insights/data-breach-prevention-best-practices/))"},{"title":"Third-party integration review","bodyMarkdown":"Review every third-party marketplace integration quarterly; revoke OAuth tokens for unused apps."},{"title":"Attack-surface reduction","bodyMarkdown":"Disable SMS, fax, and SIP trunk features that the business does not use to shrink the attack surface."},{"title":"Breach response runbook","bodyMarkdown":"Prepare a breach response runbook covering forensic preservation, regulator notification, and customer communication. ([source](https://www.ftc.gov/business-guidance/resources/data-breach-response-guide-business))"}]},"configJson":{"colSize":2,"columns":2},"noteMarkdown":null,"noteHtml":null,"sortOrder":1},{"id":"8e4af388-337d-4a63-a44a-60d5c3c453fc","sectionKey":"key_terms","sectionType":"cards_section","heading":"Key terms","introMarkdown":null,"introHtml":null,"outroMarkdown":null,"outroHtml":null,"contentJson":{"cards":[{"title":"Multi-factor authentication (MFA)","category":"Compliance requirement","bodyMarkdown":"Login requiring a second factor beyond password, such as an authenticator app or hardware key."},{"title":"SRTP","category":"Technical dependency","bodyMarkdown":"Secure Real-time Transport Protocol; encrypts the media stream of voice and video calls end-to-end."},{"title":"Least privilege","category":"Compliance requirement","bodyMarkdown":"Access control principle granting each user the minimum permissions needed for their role, reviewed regularly."},{"title":"SIEM integration","category":"Technical dependency","bodyMarkdown":"Pipe of UCaaS audit logs into a security information and event management tool for anomaly detection."},{"title":"Voice VLAN","category":"Technical dependency","bodyMarkdown":"Dedicated virtual LAN that isolates VoIP traffic from user data, limiting lateral movement after a breach."},{"title":"Shadow IT","category":"Buyer segment","bodyMarkdown":"Unsanctioned communication apps employees adopt when official tools feel too restrictive, expanding the attack surface."}]},"configJson":{"colSize":3,"columns":3},"noteMarkdown":null,"noteHtml":null,"sortOrder":2},{"id":"58f4046a-e32c-4237-a152-d84a958db734","sectionKey":"related_questions","sectionType":"cards_section","heading":"Related questions","introMarkdown":null,"introHtml":null,"outroMarkdown":null,"outroHtml":null,"contentJson":{"cards":[{"url":"/search?q=What+UCaaS+compliance+requirements+apply+to+healthcare+organizations%3F","title":"What UCaaS compliance requirements apply to healthcare organizations?","bodyMarkdown":""},{"url":"/search?q=What+does+a+UCaaS+SLA+typically+guarantee%3F","title":"What does a UCaaS SLA typically guarantee?","bodyMarkdown":""},{"url":"/search?q=How+do+you+build+a+UCaaS+disaster+recovery+plan%3F","title":"How do you build a UCaaS disaster recovery plan?","bodyMarkdown":""}]},"configJson":{"colSize":2,"columns":2},"noteMarkdown":null,"noteHtml":null,"sortOrder":3},{"id":"e5085428-c4f9-4e80-8b20-4dd272c77ce5","sectionKey":"providers_to_consider","sectionType":"cards_section","heading":"Providers to consider","introMarkdown":null,"introHtml":null,"outroMarkdown":null,"outroHtml":null,"contentJson":{"cards":[{"url":"https://www.microsoft.com/en-us/microsoft-teams/microsoft-teams-phone","title":"Microsoft Teams Phone","bodyMarkdown":"Teams Phone inherits the Microsoft 365 security stack — conditional access, Entra ID MFA, and Defender — giving enterprises with 320 million existing Teams MAUs a single identity and policy plane for voice."},{"url":"https://www.cisco.com/site/us/en/products/collaboration/webex-calling/index.html","title":"Cisco Webex Calling","bodyMarkdown":"Cisco publishes the deepest security and compliance documentation in the category and supports hybrid deployment, suiting enterprises that need FedRAMP, ISO 27001, and on-premises media options under one architecture."},{"url":"https://www.ringcentral.com","title":"RingCentral","bodyMarkdown":"Decade-long Gartner UCaaS Leader with end-to-end encryption on Teams Meetings and a published trust portal — relevant for security buyers who want a mature SOC 2 and HIPAA control set at enterprise scale."}]},"configJson":{"colSize":3,"columns":3},"noteMarkdown":null,"noteHtml":null,"sortOrder":4}],"citations":[{"title":"Data Breach Prevention Best Practices","url":"https://safe.security/resources/insights/data-breach-prevention-best-practices","excerpt":null,"quoteText":null,"sourceRole":"PRIMARY","verifiedAt":null,"supportsText":null,"domain":"safe.security","publisherName":"SAFE Security"},{"title":"Top 12 Data Security Best Practices","url":"https://www.paloaltonetworks.com/cyberpedia/data-security-best-practices","excerpt":null,"quoteText":null,"sourceRole":"PRIMARY","verifiedAt":null,"supportsText":null,"domain":"paloaltonetworks.com","publisherName":"Palo Alto Networks"},{"title":null,"url":"https://securiti.ai/best-practices-to-prevent-data-breach","excerpt":null,"quoteText":null,"sourceRole":"SUPPORTING","verifiedAt":null,"supportsText":null,"domain":"securiti.ai","publisherName":"Securiti"},{"title":null,"url":"https://www.ftc.gov/business-guidance/resources/data-breach-response-guide-business","excerpt":null,"quoteText":null,"sourceRole":"SUPPORTING","verifiedAt":null,"supportsText":null,"domain":"ftc.gov","publisherName":"FTC"}],"revisions":[],"relatedAnswers":[{"id":"64d09e40-ee5e-4b6f-9c6b-bba0f06d327a","slug":"when-should-a-business-switch-from-voip-to-ucaas","question":"When should a business switch from VoIP to UCaaS?","publishedAt":"2026-06-15T14:29:19.683","confidenceScore":null,"confidenceLabel":null,"industry":{"id":"ff619d7c-d7d7-485e-a05a-53fba07f33ed","slug":"telecommunications","label":"Telecommunications","description":"Business voice, fiber, UCaaS, and network services"},"topic":{"slug":"ucaas","label":"UCaaS","description":null,"schemaKind":null},"contributor":{"id":"ec39deab-44fe-48d8-9029-fefe993ab85a","slug":"answer-stack","displayName":"AnswerStack","websiteUrl":null},"snippet":"Switch from VoIP to UCaaS when tool sprawl, remote work, CRM needs, AI features, or a renewal window justify the higher per-user platform cost.","url":"/q/when-should-a-business-switch-from-voip-to-ucaas"},{"id":"cb85d725-4f05-4be8-8196-3a2f82d657e4","slug":"what-ucaas-bandwidth-requirements-should-businesses-plan-for","question":"What UCaaS bandwidth requirements should businesses plan for?","publishedAt":"2026-06-15T14:29:19.417","confidenceScore":null,"confidenceLabel":null,"industry":{"id":"ff619d7c-d7d7-485e-a05a-53fba07f33ed","slug":"telecommunications","label":"Telecommunications","description":"Business voice, fiber, UCaaS, and network services"},"topic":{"slug":"ucaas","label":"UCaaS","description":null,"schemaKind":null},"contributor":{"id":"ec39deab-44fe-48d8-9029-fefe993ab85a","slug":"answer-stack","displayName":"AnswerStack","websiteUrl":null},"snippet":"Businesses should budget roughly 100-150 Kbps per concurrent voice call, 2-3 Mbps per HD video participant, low latency and jitter, and peak-hour headroom.","url":"/q/what-ucaas-bandwidth-requirements-should-businesses-plan-for"},{"id":"32c1f9e9-ba62-407a-9fcb-7b9780f43ed7","slug":"what-ucaas-features-matter-most-for-remote-teams","question":"What UCaaS features matter most for remote teams?","publishedAt":"2026-06-15T14:29:19.151","confidenceScore":null,"confidenceLabel":null,"industry":{"id":"ff619d7c-d7d7-485e-a05a-53fba07f33ed","slug":"telecommunications","label":"Telecommunications","description":"Business voice, fiber, UCaaS, and network services"},"topic":{"slug":"ucaas","label":"UCaaS","description":null,"schemaKind":null},"contributor":{"id":"ec39deab-44fe-48d8-9029-fefe993ab85a","slug":"answer-stack","displayName":"AnswerStack","websiteUrl":null},"snippet":"Remote teams need one UCaaS app for voice, video, chat, screen sharing, presence, SSO, and AI meeting support, backed by network controls for call quality.","url":"/q/what-ucaas-features-matter-most-for-remote-teams"},{"id":"f7b5d5d8-aadd-4135-b31d-5ff0dbbf934e","slug":"what-ucaas-deployment-model-suits-enterprises-with-hybrid-infrastructure","question":"What UCaaS deployment model suits enterprises with hybrid infrastructure?","publishedAt":"2026-06-15T14:29:18.879","confidenceScore":null,"confidenceLabel":null,"industry":{"id":"ff619d7c-d7d7-485e-a05a-53fba07f33ed","slug":"telecommunications","label":"Telecommunications","description":"Business voice, fiber, UCaaS, and network services"},"topic":{"slug":"ucaas","label":"UCaaS","description":null,"schemaKind":null},"contributor":{"id":"ec39deab-44fe-48d8-9029-fefe993ab85a","slug":"answer-stack","displayName":"AnswerStack","websiteUrl":null},"snippet":"Hybrid enterprises should use hybrid UCaaS: keep regulated voice controls and recording at the edge while shifting meetings, messaging, and cloud services to public UCaaS.","url":"/q/what-ucaas-deployment-model-suits-enterprises-with-hybrid-infrastructure"}],"contributorStats":{"verifiedAnswers":224,"openDisputes":0},"schemaJson":{"@context":"https://schema.org","@type":"Question","name":"What UCaaS security best practices reduce data breach risk?","text":"What UCaaS security best practices reduce data breach risk?","url":"https://www.answerstack.io/q/what-ucaas-security-best-practices-reduce-data-breach-risk","answerCount":1,"datePublished":"2026-06-15T14:28:52.784","author":{"@type":"Organization","name":"AnswerStack","url":"https://www.answerstack.io/contributors/answer-stack"},"about":[{"@type":"Thing","name":"UCaaS"},{"@type":"Thing","name":"Telecommunications"}],"acceptedAnswer":{"@type":"Answer","text":"The seven controls that move the needle on UCaaS breach risk are: enforce MFA on every account, encrypt media with SRTP and signaling with TLS 1.2+, classify call recordings and voicemails by sensitivity, apply least-privilege admin roles, segment voice traffic on its own VLAN, monitor audit logs for anomalies, and review third-party app integrations quarterly [1][2]. Static permissions and reused passwords cause most preventable incidents [2]. Troubleshooting Symptom Cause Fix Unauthorized login from a new country Stolen credentials reused from another breach Force password reset, revoke active sessions, enable conditional access blocking risky geographies Mass voicemail download by one user Compromised admin account or insider misuse Suspend the account, preserve logs, review what was accessed, notify legal and security leadership Unknown third-party app appears in OAuth grants Phishing-driven consent or unsanctioned shadow IT Revoke the grant, alert affected users, add the app to the deny list, enforce admin consent workflow Audit log gap of several hours Log forwarder failure or attacker clearing traces Investigate log pipeline health, treat as potential incident, restore logs from provider backup if available Call recording exposed in a public bucket Misconfigured export destination or integration Rotate keys, lock the bucket, identify affected calls, follow breach notification rules Rules / compliance Multi-factor authentication Require MFA for every user, with hardware keys or authenticator apps for admin and finance roles. (source) Encrypted signaling and media Enforce TLS 1.2 or higher for signaling and SRTP for media on all calls and meetings. (source) Sensitive-data classification Classify call recordings, voicemails, and transcripts by sensitivity and apply matching retention and deletion policies. (source) Least-privilege administration Limit admin privileges to two named owners with break-glass procedures and quarterly access reviews. Voice VLAN segmentation Segment voice traffic on its own VLAN with QoS, blocking lateral routes into the data network. Audit log monitoring Stream UCaaS audit logs to a SIEM and alert on impossible-travel logins, mass downloads, and new admin grants. (source) Third-party integration review Review every third-party marketplace integration quarterly; revoke OAuth tokens for unused apps. Attack-surface reduction Disable SMS, fax, and SIP trunk features that the business does not use to shrink the attack surface. Breach response runbook Prepare a breach response runbook covering forensic preservation, regulator notification, and customer communication. (source) Key terms Multi-factor authentication (MFA) Login requiring a second factor beyond password, such as an authenticator app or hardware key. Compliance requirement SRTP Secure Real-time Transport Protocol; encrypts the media stream of voice and video calls end-to-end. Technical dependency Least privilege Access control principle granting each user the minimum permissions needed for their role, reviewed regularly. Compliance requirement SIEM integration Pipe of UCaaS audit logs into a security information and event management tool for anomaly detection. Technical dependency Voice VLAN Dedicated virtual LAN that isolates VoIP traffic from user data, limiting lateral movement after a breach. Technical dependency Shadow IT Unsanctioned communication apps employees adopt when official tools feel too restrictive, expanding the attack surface. Buyer segment Related questions What UCaaS compliance requirements apply to healthcare organizations? /search?q=What+UCaaS+compliance+requirements+apply+to+healthcare+organizations%3F What does a UCaaS SLA typically guarantee? /search?q=What+does+a+UCaaS+SLA+typically+guarantee%3F How do you build a UCaaS disaster recovery plan? /search?q=How+do+you+build+a+UCaaS+disaster+recovery+plan%3F Providers to consider Microsoft Teams Phone Teams Phone inherits the Microsoft 365 security stack — conditional access, Entra ID MFA, and Defender — giving enterprises with 320 million existing Teams MAUs a single identity and policy plane for voice. https://www.microsoft.com/en-us/microsoft-teams/microsoft-teams-phone Cisco Webex Calling Cisco publishes the deepest security and compliance documentation in the category and supports hybrid deployment, suiting enterprises that need FedRAMP, ISO 27001, and on-premises media options under one architecture. https://www.cisco.com/site/us/en/products/collaboration/webex-calling/index.html RingCentral Decade-long Gartner UCaaS Leader with end-to-end encryption on Teams Meetings and a published trust portal — relevant for security buyers who want a mature SOC 2 and HIPAA control set at enterprise scale. https://www.ringcentral.com","url":"https://www.answerstack.io/q/what-ucaas-security-best-practices-reduce-data-breach-risk","upvoteCount":0,"datePublished":"2026-06-15T14:28:52.784","dateModified":"2026-06-15T14:28:52.784","author":{"@type":"Organization","name":"AnswerStack","url":"https://www.answerstack.io/contributors/answer-stack"},"citation":[{"@type":"CreativeWork","name":"Data Breach Prevention Best Practices","url":"https://safe.security/resources/insights/data-breach-prevention-best-practices"},{"@type":"CreativeWork","name":"Top 12 Data Security Best Practices","url":"https://www.paloaltonetworks.com/cyberpedia/data-security-best-practices"},{"@type":"CreativeWork","name":"https://securiti.ai/best-practices-to-prevent-data-breach","url":"https://securiti.ai/best-practices-to-prevent-data-breach"},{"@type":"CreativeWork","name":"https://www.ftc.gov/business-guidance/resources/data-breach-response-guide-business","url":"https://www.ftc.gov/business-guidance/resources/data-breach-response-guide-business"}]}}}