BOSTON Regulators in Massachusetts have given restaurants and other businesses an extra four months to comply with new standards for storing and protecting credit card and other personal information about customers and employees.
The rules, now set to take effect May 1, require the use of encryption and firewalls to block hackers and identity thieves. Businesses also must designate an employee who is responsible for maintaining data security. In addition, employees must be educated on protecting personal information and trained in computer security. Failure to bear the "astronomical" costs to comply fully could result in state sanctions, an official of the Massachusetts Restaurant Association said.