ALL >> Internet-Marketing >> View Article
Implement Adequate Internet Security Guidelines To Avoid Data Breach Lawsuit
It is mandatory for companies to sufficiently protect their customer or employee records in order to avoid lawsuit. One way is to provide proper ethical hacking training programs to IT staffs to avoid the time and costs associated with a prolonged legal battle. IT staffs who properly equipped with ethical hacking skills will be able to defend computer network from being hacked
The Briar Group, which operates several restaurants in the Boston area, had to pay $110,000 for failing to take reasonable steps to protect credit card data belonging to thousands of customers.
In April 2009 intruders broke into a Briar Group computer and installed malware designed to steal credit and debit card data. However, the malicious software wasn't removed in Dec. 2009.
The compromise stemmed from The Briar Group's failure to take adequate steps to protect card holder data. The state office noted that The Briar Group used default usernames and passwords on its point-of-sale systems and allowed multiple employees to use common usernames and passwords.
Under terms of the settlement, the Briar Group also agreed to implement ...
... a strong password management system at each of its restaurants and to comply with the Payment Card Industry Data Security Standard. The complaint also alleged that The Briar Group failed to properly secure its wireless network and remote access to its systems.
The Online Trust Alliance (OTA) released its 2011 Data Breach Incident Readiness Guide, earlier this year. The guide addresses emerging security and privacy threats, providing prescriptive guidance and questions every executive should ask to help businesses in breach prevention and incident management.
According to Craig Spiezle, Executive Director and President of the Online Trust Alliance, "In the past 5 years, over 525 million records containing sensitive personal information have been compromised, significantly undermining the foundation of consumer trust. With the onslaught of criminal and deceptive business activities, we are calling on business leaders to develop a readiness plan. Those failing to act may be faced with increased public scrutiny, regulatory pressures and a tarnished brand reputation."
Last year, over 400 incidents were reported impacting over 26 million records for a cost to U.S. businesses of over $5.3 billion dollars. Of these, 98% were a result of a server exploit.
OTA indicates a great majority of breaches continue to occur undetected or unreported and the data reported is just the tip of the iceberg.
In a separate incident, the personal information of 13,000 individuals who had filed compensation claims with BP after last year's disastrous oil spill may have been potentially compromised after a laptop containing the data was lost by a BP employee.
The information, which had been stored in an unencrypted fashion on the missing computer, included the names, Social Security numbers, addresses, phone numbers, and dates of birth of those who filed claims related to the Deepwater Horizon accident.
BP said in a statement that the personal information had been stored in a spreadsheet maintained by the company for the purposes of tracking claims arising from the accident. "The lost laptop was immediately reported to law enforcement authorities and BP security, but has not been located despite a thorough search," BP said on Tuesday.
BP has sent written notices to victims informing them about the potential compromise of their personal information and to offer them free credit monitoring services, the statement noted.
The BP compromise is only the latest in a very long list of similar breaches involving the loss of unencrypted personal data stored on laptops, and mobile storage devices.
Data breaches are very common these days, and many companies are keeping mum about it. One way to mitigate internet security risks is with technical security training . EC-Council’s brand new TakeDownCon information security conference series, offers training sessions of the world’s best ethical hacking training program, the Certified Ethical Hacker (CEH).
ABOUT EC-COUNCIL:
EC-Council is a member-based organization that certifies individuals in various e-business and security skills. It is the owner and developer of the world famous ethical hacking training , the Certified Ethical Hacker (CEH) course, Computer Hacking Forensics Investigator (CHFI) program, License Penetration Tester (LPT) program and various other technical security training programs offered in over 60 countries around the globe. TakeDownCon Dallas 2011, is one of the conferences of EC-Council’s Take Down information security conference series. www.eccouncil.org
Add Comment
Internet Marketing Articles
1. Remembering All These Tips While Choosing A Website CompanyAuthor: Liam Mackie
2. The Benefits Of Partnering With A Search Engine Optimisation Company
Author: Liam Mackie
3. Professional Home Services In Uae – Reliable, Affordable & Fasts
Author: Al Basit System
4. Adpoint Gmbh - Google Ads Agentur Für Münster
Author: Felix Wenzel
5. Why Businesses Are Turning To Seo To Grow Online
Author: HitUp Soluitons
6. Graphic Designing Services In Hyderabad: Building Powerful Brands With Creative Visual Solutions
Author: Domain2Website
7. Building Strong Digital Foundations For Businesses Across New Zealand
Author: Top Rank Digital
8. Technical Seo Services: A Comprehensive Guide To Boosting Your Online Presence In 2026
Author: Shoilen Sannamat
9. The Impactful Benefits Of Contacting A Website Company
Author: Liam Mackie
10. Find The Best Vps Hosting In India Windows And Linux
Author: Hostzop Cloud Services Pvt. Ltd.
11. Verified List Of Martial Arts Schools In The Usa (state-wise Database)
Author: ByteScraper
12. 7 Website Mistakes That Stop Businesses From Getting Leads
Author: Online Consulting
13. How To Integrate Ai Features Into Your Mobile Application Scaled
Author: Creamerz Soft
14. For Seamless, Intuitive, And Engaging Experience You Need A Relevant Website Design!
Author: Liam Mackie
15. Future-proofing Authority: The 2026 Strategy For Seo Dominance In Noida
Author: HitUp






