All the latest UK technology news, reviews and analysis

Financial firms' data security found wanting

by Phil Muncaster

More from this author

09 Jan 2009

Be the first to comment

  • Tweet this
Security
Financial firms are failing to ensure the safety of customer and employee data

Over half of global financial firms have no accurate record of where customer and employee data is collected, transmitted or stored, according to new research from consultancy PricewaterhouseCoopers (PwC).

In addition, 51 per cent of financial services providers said that they do not mandate third parties to adhere to their own privacy policies.

Although 81 per cent of respondents to the PwC survey said they are 'somewhat' or 'very' confident in their own or their partners' information security procedures, only 45 per cent carry out due diligence on third parties that handle sensitive customer and employee data.

"Financial services firms have been leaders in privacy and security, but their policies and capabilities are being outstripped by changes in technology and business practices," said Sergio Pedro, managing director of PwC.

"Firms must address customer demand, competitive pressure and stringent, ever-changing regulatory requirements by developing comprehensive, integrated privacy and data protection programmes."

The research also found that many financial firms focus too much on protecting customer data, neglecting to adequately secure employee records.

Encryption has also been neglected by many of the companies. Some 41 per cent do not encrypt data stored in databases, 52 per cent do not encrypt file shares, 43 per cent do not encrypt backup tapes, and 33 per cent do not deploy laptop encryption.

PwC urged firms to implement a written plan to monitor, respond to and remediate incidents where there is a potential risk of a data breach, and to contractually oblige third parties to protect sensitive data.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

99%

0%

1%

0%

0%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

Technical Architect - Java / Oracle Coherence

Java / Oracle Coherence Technical / Solution Architect...

ASP.Net C# Developer

ASP.Net/C#/Web Development/Desktop Development/Winforms...

PL/SQL Developer

My Major client urgently requires an experienced contract...

Decision Systems Analyst

Decision Systems Analyst West Midlands £19-24,000 Are...

To send to more than one email address, simply separate each address with a comma.