« Fraudsters steal details on 2,000 credit cards | Main | Iowa proposes ID theft 'passport' »

LexisNexis Says Data Breach Honesty is Best Policy

SANS NewsBites - Vol: 8, Issue: 34 talks about this interesting insight from a company responsible for a major data breach last year.

Speaking at the Infosec Europe 2006 conference in London, LexisNexis senior director for information security Leo Cronin said his company's decision to be up front about a data security breach that took place in early 2005 was definitely the best approach to the situation. A social engineering email attack exposed personal data belonging to as many as 300,000 people at Seisint, a data broker acquired by LexisNexis in fall 2004. The company decided to inform all those affected, using California's data security breach notification law as a guideline. LexisNexis also took a number of steps to better protect the data it holds. Cronin believes the company's forthright approach minimized the damage to its reputation.

TrackBack

TrackBack URL for this entry:
http://www.typepad.com/services/trackback/6a00d83452034a69e200d83560b36369e2

Listed below are links to weblogs that reference LexisNexis Says Data Breach Honesty is Best Policy:

Comments

The comments to this entry are closed.

« Fraudsters steal details on 2,000 credit cards | Main | Iowa proposes ID theft 'passport' »

this is invisible

We have moved to www.mytruston.com/blog




Creative Commons License
This work is licensed under a Creative Commons Attribution 2.5 License.