All the latest UK technology news, reviews and analysis

Business should learn from Sony’s catastrophic data breach

by Iain Thomson

28 Apr 2011

Be the first to comment

  • Tweet this

As Sony attempts to deal with the hacking attack that saw the data on its 77 million customers stolen, analysts are warning that the case should be used by companies to secure their own infrastructures.

Sony's PlayStation Network and Qriocity servers were down for six days before the company admitted that it had a problem.

Now, as more details have emerged (and the first lawsuit filed), organisations should look at their own security arrangements to avoid the same fate.

"A problem such as this needs to be dealt with at the highest levels of management," William Beer, director of OneSecurity at PwC, told V3.co.uk.

"An event like this has a serious impact on a company's reputation and stock price. You need senior executives onboard from the start to deal with the problem."

Beer suggested that companies should run simulations to develop plans for dealing with such an outage, from assigning network responsibilities to deciding who will speak to customers via the press. A breach notification should also be prepared.

Several security firms have pointed to the lack of encryption used by Sony on basic customer information, but technologies like encryption should not be overestimated and could in fact be a disadvantage, according to Beer.

"Encryption can help, but it can also introduce complacency," he said. "For example, my work laptop is encrypted. But that doesn't mean I should leave it in the boot when I go out."

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

31%

2%

15%

52%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Riso

Colour printing: why the bill keeps outstripping the budget

The wrong printers, for the wrong tasks on the wrong contracts

Qlikview

Magic quadrant for business intelligence platforms

Who leads the BI pack and who should we be watching out for?

Web Developer (ASP.NET C#) - Leeds / Yorkshire

ASP.NET Web Developer ( ASP.NET, C#, SQL Server, CSS...

Technical Consultant, Back Office (IMMEDIATE STARTERS)

THIS ROLE IS LOOKING AT IMMEDIATE STARTERS AND WITH MULTI...

Sales Consultant - Datacentre

Sales Consultant - Data Centre, Colocation, Hosting...

Senior Interaction Designer (User Experience, UCD, Prototypes)

Senior Interaction Designer (User Experience, UCD, Interactive...

To send to more than one email address, simply separate each address with a comma.