Why Breaches happen

Centennial Software's Matt Fisher explains why so many data breaches have been happening

Written by Matt Fisher

Unless you have been on Mars for the past six months, you will not have missed the high-profile data breaches suffered by both Government and private sector organisations. But why have these breaches been happening?

The proliferation of portable storage devices such as laptops, USB sticks and ‘lifestyle’ products such as MP3 players, alongside unmanaged PC connectivity has created a recipe for disaster. It really is too easy to accidentally leave a laptop in the back of a taxi - or, indeed, lose a CD in the post.

Whatever policies are in place governing the treatment of sensitive data, the fact remains that humans will make mistakes. Organisations need to ensure that technological methods of protection are in place in order to minimise the risk to confidential information.

For example, encryption of all data transferred onto a portable device is a simple, quick and cost effective solution and yet it doesn’t seem to be happening as a matter of course. The reasons for this seem to be two-fold:

First, people don’t yet understand the risk associated with customer data and therefore don’t take the necessary precautions. Second, most organisations deploy standalone encryption solutions, which can be troublesome to decrypt by partners outside the organisation, and this perceived hassle can put people off bothering to encrypt at all.

Ultimately, responsibility for the security of sensitive information has to rest at the top. It may be difficult to convince the board of the importance of data security but the financial and reputational impact of losing data can be catastrophic.

How would your business cope if your closest competitor suddenly had a copy of the prototype for your hottest product? Plus of course, the indirect costs, such as legal fees, compensation etc. And this doesn’t take into consideration the damage to a company’s reputation and consumer confidence following a high-profile breach, which could cost millions and be unrectifiable.

While it is undoubtedly crucial that organisations have procedures and technologies in place to prevent a breach and protect the data, underlying behaviours and attitudes also need to change.

Consumers place huge amounts of faith in organisations to keep their information safe. These organisations must demonstrate they take this responsibility seriously and are doing their utmost to keep personal data secure. Is it time for the Government to pass a full disclosure bill whereby all data breaches have to be made public and the appropriate disciplinary proceedings taken?

Matt Fisher is vice president of marketing at Centennial Software

Tags:

Further reading

Related articles

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

12 May 2008

2.4 MBMicrosoft's battles, data breach fines and website rip-offs More...

09 May 2008

2.51 MBWiMax muddle, Google tactics and asteroid bunkum More...

08 May 2008

3.26 MBBroadband Anywhere, phone-free transport and Web 3.0 More...

Poll

DATA ENCRYPTION

DATA ENCRYPTION

Should encryption be mandatory for all personal data held by companies and governments?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

Ofcom

Ofcom outlines future wireless vision

Wi-Fi healthcare and intelligent car brakes in the pipeline   More...

HP

HP Labs opens doors to academia

Innovation Research Program invites proposals related to current research   More...

Advertisement

Asteroid

Nasa plans manned mission to asteroid

Bruce Willis thankfully not going   More...

MySpace

MySpace offers opt-in data sharing

Deals signed with Photobucket, Twitter, eBay and Yahoo   More...

Advertisement