Original URL: http://www.channelregister.co.uk/2007/12/21/skipton_data_security_breach/
Skipton Financial Services has confessed to losing a laptop containing records of 14,000 customers. Information exposed by the breach includes names, addresses, National Insurance numbers, and fund investment details of clients of Skipton's Fidelity FundsNetwork.
The laptop was nicked from a locker being used by a staff member of Moore Stephens Consulting, an IT consultancy employed by Skipton Financial Services, on Tuesday evening last week, the Yorkshire Post reports (http://www.yorkshirepost.co.uk/news/Computer-theft-puts-14000-at.3611872.jp).
The machine was password protected, but not encrypted. Skipton has suspended affected accounts as a precaution. It has also written to punters affected by the breach, which marks the latest entry in a growing list of UK firms falling victim to customer data security cock-ups.
Jamie Cowper, EMEA director of marketing at encryption firm PGP, called for a reform in UK data protection laws. "The sheer volume of data disasters this year has made it clear that today's online society has outgrown the Data Protection Act. The government must make a new year's resolution to not only revise it, but also make clear to organisations that they must start moving away from reactive data protection measures to pre-emptive ones," Cowper said.
"Encryption should play a major role in security policies," he added. ®
Data breach officials could be sent to the big house (18 December 2007)
http://www.theregister.co.uk/2007/12/18/hmrc_crim_penalties/
Norwich Union Life fined £1.26m for security holes (17 December 2007)
http://www.theregister.co.uk/2007/12/17/norwich_union_life_fsa_fine/
TJX agrees to pay banks $41m to cover Visa losses (3 December 2007)
http://www.channelregister.co.uk/2007/12/03/tjx_settlement_agreement/
Data breach costs soar (29 November 2007)
http://www.channelregister.co.uk/2007/11/29/data_breach_cost_survey/
Info chief renews call for data breach crime penalties (21 November 2007)
http://www.theregister.co.uk/2007/11/21/hmrc_spot_checks/
How HMRC gave away the UK's national identity (20 November 2007)
http://www.theregister.co.uk/2007/11/20/hmrc_huge_data_loss/
Darling admits Revenue loss of 25 million personal records (20 November 2007)
http://www.theregister.co.uk/2007/11/20/hmrc_loses_lots_data/
© Copyright 2008