21 Jun 2008
The Financial Services Authority has issued its first ever fine to a company for poor data protection practices.
Stockbroking firm Merchant Securities Group was fined £77,000 for having poor security controls and not protecting client details properly.
The fine was imposed even though there was no evidence that a breach had taken place.
Margaret Cole, director of enforcement at the FSA, said: "It is unacceptable that, despite increased awareness of data security issues, a firm should be so careless about its systems for protecting customers' personal details.
"People have a right to expect their details to be kept secure and firms should be committed to treating their customers fairly in all aspects of their business."
Cole warned that the FSA will not wait until information has been lost or stolen before taking action against a firm.
"The level of the fine for a firm of this size should serve as a warning to others to take data security seriously," she said.
FSA inspectors discovered the lack of controls during an inspection in September 2007.
These included staff taking unencrypted client information out of the office and storing it at home, and poor procedures for identifying clients over the telephone.
"This fine is clearly intended to act as a warning to firms that fail to take data security seriously," said Jamie Cowper, director of marketing at PGP Corporation.
"The next financial services organisation that suffers a data breach might face a much higher financial penalty.
"What's different about this incident is that, through luck rather than judgement, no breach has occurred. With the FSA now proactively using its powers to safeguard customer information, other financial services companies must take note."
Merchant Securities Group co-operated fully with the FSA investigation and agreed to settle quickly. For this cooperation the FSA reduced the original fine of £110,000 by 30 per cent.
Latest stories from Web
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Hands on with the highly anticipated Android 4.0 Ice Cream Sandwich hybrid tablet
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
Web Developer LAMP HTML CSS Bash Linux Cambridge...
Drupal / Web Developer ( PHP, Drupal, JavaScript, JQuery...
Web / .NET Developer ( ASP.NET, VB.NET, HTML, CSS, SQL...
Analyst / Developer (Case Management) - NW London - £35...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?
totaltarian?
Seems rather Orwellian, the very existence of this agency.Lot of arbitrary power to place in the hands of a few bureaucrats.Glad we have nothing like it in the US.
Posted by: mike j 22 Jun 2008