SEC and HIPAA Compliance on Email Archiving
All businesses today are required to archive emails per the laws applicable to them. Email archiving is a process of storing email communications in a digital format so that they can be searched, indexed, and retrieved whenever needed. Instead of being distributed around the business departments, an archived email is encrypted, typically compressed, and stored in a central location. This minimizes the attack surface and makes managing older emails containing a plethora of sensitive data easier. Email archiving also helps keep track of when and where the emails were sent, who sent them, and who received them. The United States Government mandated email archiving by including the Electronically Stored Information (ESI) in the 2006 update of the Federal Regulations on Civil Procedure (FCRP). Rule 34(a) of the update expects emails to be discoverable. Similarly, Rule 37 states that organizations must demonstrate that they have appropriate email retention policies in place to put...