Organizations responsible for handling and storing customer information must protect personal data, including health records and financial information. In the United States and abroad, regulatory statutes such as the Health Insurance Portability and Accountability Act (HIPAA), Sarbanes Oxley (SOX) and the Payment Card Industry Data Security Standard (PCI DSS) have been established to define responsibilities and practices, and are backed by financial penalties for public or private organizations that fail to comply.