The company Wethersoons seems to have been hit by the next in a long series of hacks.
See http://www.computerweekly.com/news/4500260119/Wetherspoon-pub-chain-warns-customers-of-data-breach for a good update
Some simple issues
1. In a breach, even if full financial data is released the data can be used to "con" victims into releasing other data. Using "Social Engineering" offenders may be able to act as if they are your bank or credit card company and illicit data that could compromise your personal financial security. Have a look at www.getsafeonline.org the UK primary site for cyber security
2. If you are a CEO or Chair of a company, anticipate that you will be in the front line in the event of a breach. In all cases, the top of the organisation has to become the voice of the business. Do you as a company think about how you would cope in the event of an attack, do you exercise or test your processes. for large organisations see www.cybx.org for a very sophisticated approach
3. At board level, do you understand what your IT staff do, have you seen a Firewall in action, do you know the parameters and policy for managing your data? Have your managers and supervisors engaged in creating a common understanding of your technological needs? Do you have access to effective and available technical staff when it goes wrong?
Wetherspoons CEO John Hutson has apologised quickly and rectified as well as identified that the breach could not occur again. The ICO no doubt will have further questions as will the media and shareholders, time spent preventing will ofen far outweigh the costs and time of investigating.
Who's next?
This is my personal blog for issues that I will make comment upon, my own views. Feel free to comment or connect with me. AQL commissioned Ambassador for the Yorkshire Humberside Cyber security Information Sharing Partnership To join follow www.ncsc.gov.uk/CISP
Friday, 4 December 2015
Subscribe to:
Post Comments (Atom)
Popular Posts in last 7 Days
-
In the recent drive to create the Big Society there is a risk that we convince ourselves that this is an entirely new concept and so denigr...
-
A few days ago the Register published an article about the waste of £20million pounds on Cyber Prevention. http://www.theregister.co.uk/2016...
-
So Saturday was the Big March. Anywhere between 300 and 500,000 peaceful protesters protesting. All magnificently managed by the Met suppo...
-
The Apple FBI saga The disagreement over Apple and the FBI has become a microcosm of the world of cyber and digital crime. Warrant...
-
Today we had an excellent day with Microsoft looking at a range of issues. They were helpful and challenging as were my staff. So despite wh...
-
Last week ACPO brought some people together to look at the way we are addressing Social Media. Or should we call it Social Networking? I wi...
-
Ransomware Seminar 19th May 09.30-11.30 Ransomware is now one of the biggest threats to industry, charities, health and citizens. Fin...
-
Having done the annual trip up the Mt Ventoux, I thought I would try out a route I have favoured for some time but not completed. The Tou...
-
Tomorrow is Safer Internet Day which focuses on keeping people safe online. That level of safety also applies to Business. Whatever size of ...
-
This week I attended a seminar on how to be a SIRO, Senior Information Risk Owner In other words how to protect the organisation from data a...
No comments:
Post a Comment
For help adding links see How to add in line links