Grab our RSS Feed Follow us via Email Follow us on Twitter

Categories

Security Extra



M&S lose 26,000 employees details
 Posted by secExtra on January 26th, 2008

Marks & Spencer have been found guilty of breaking data protection rules by failing to secure the personal details of some 26,000 employees. This breakdown in security happened when a Laptop was stolen during a burglary at a contractors house and the theives got away with pension arrangement details of the M&S staff.

Thefts are not uncommon, and often the data that goes missing on laptops was not the original target. Indeed it would also not be a bonus for any standard criminal as they likely do not know what they have in their hands and just look for the quick sell. The problem in this instance with M&S is that the data on the Laptop was not encrypted and not even protected by a basic password. This means all the data was being kept unsecured on a personal Laptop.

ICO Assistant Commissioner Mick Gorrill said: “It is essential that before a company allows personal information to leave its premises on a laptop there are adequate security procedures in place to protect personal information, for example, password protection and encryption.”

The ICO is the official watchdog set up to police the Data Protection Act and the Freedom of Information Act. They have now run an investigation and found M&S in breach of the DPA. As a result it has ordered the retailer to ensure all its laptop hard drives are fully encrypted by April of this year.

With all the data loss issues in the UK recently we are suprised that this has even been allowed to happen, especially with such a large retailer. It just goes to prove that everything is only as strong as its weakest point… go encrypt your data now.


This entry was posted on Saturday, January 26th, 2008 at 6:09 am and is filed under Featured, Law and Order, Money and Business. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

One Response to “M&S lose 26,000 employees details”

  1. MOD Admits Massive Personal Data Loss : Security Extra Says:

    [...] on the heels of our recent coverage about M&S losing thousands of Employees personal data files, The Ministry of Defence was forced to admit [...]


Leave a Reply


Network Installation
Proper network installation puts your business in a position where you are ready and able to grow.

Laptop Repairs
Laptop repairs are always urgent! That is why you should explore your options here.

Rafiki
Rafiki quickly and effectively locates a detector that's been set off by a fire. For safety assurance, click here.

Web Design Manchester
Web Design in Preston, Manchester. Manchester Web Design Company ICTINSITE.com design great and great SEO what more do you want?

Scam Events for Marcus Evans
Scam events conferences by Marcus Evans will help you with all the knowledge you need to protect your business.

Scams info from Marcus Evans
Click here to read conference scams info from Marcus Evans