Whole Network Most Recent TOP10 Accounting Compliance Ethics SOX

 

Lost laptop lunacy

Filed in archive risk by leon on August 22, 2006

562991_layoff.jpg
Four out of five US companies have lost at least one laptop containing sensitive information over the past year. Indeed only one in 10 companies say there was no sensitive or confidential info on the lost laptop.

But worse still, most companies are ignorant about what's actually on the missing hardware, according to the Confidential Data at Risk study conducted by the Ponemon Institute.

Nearly two out of three (64 per cent) admitted their companies had never conducted a data inventory to determine where employee and customer information was located, and half (49 per cent) admitted that business confidential information has never been inventoried. Questioned how long it would take to determine what kind of sensitive data was on the missing laptop, file server, desktop or mobile device, the most frequent answer was "never".

This is despite organisations claiming that the intellectual property most at risk included electronic spreadsheets, competitive intelligence and source code.


The study suggests that cases like the one where global beancounters Ernst&Young went and lost a laptop containing confidential information of their customers, something I blogged on earlier this year, might be just the tip of the iceberg.

Sure, firms like Gartner offer tips to prevent data leaks.

But an encryption program about as useful as a sixth finger if you don't know what to encrypt.

This is more than just stupid. It's legally irresponsible.

Sarbanes-Oxley requires CEOs and CFOs to attest to their companies having proper internal controls. If the systems maintaining financial data aren't demonstrably secure, then executives would have difficulty vouching for the validity of the data and the soundness of their internal controls.

In other words, data security is not a matter of "best practice". Lawyers would argue it's now a legal requirement.

So four out of five companies are losing laptops, and that they don't even know what's on them? Sounds like they're asking for legal disaster.

Advertisement


Permalink: Lost laptop lunacy
Tags: lost  laptops  Ponemon  Institute  survey  corporate  lost+laptop  laptop+lunacy  hedge+funds 

Trackback: http://www.creative-weblogging.com/cgi-bin/mt-tb.pl/33745



Related Entries:

Lost laptop hall of shame - 09 September 2006

LOST 真的让我Lost了 - 14 五月 2007

Lost - Erster Teaser veröffentlicht - 29 Juli 2007

Lost Your Laptop: Get Tracking Software - 19 September 2007

Advertisement


Advertisement


CW ToolbarInstall
RSSrss   | See all blog subscribe options
Googlegoogle   |   What is RSS?
Yahoo!yahoo
AddthisAddThis Feed Button
BloglinesBloglines
Newsletter

Use our search feature to look for other interesting posts

Just this blog Whole network
Advertisement -
Book yours here..


 
  • Would you like to have a new interactive marketing channel for your company? Learn more about Sponsored Blogs with Creative Weblogging. See how we helped companies like Weblin and cellity reach their goals.
  • Would you like to reach millions of blog readers every day? See you banner on hundreds of blogs with TierOneAds? Stay in control measuring conversion in real time. Register now.
  • Would you like to make more money blogging? Use TierOneAds a new platform that allows you as a blogger to set your prices per impression. Register now.
  • Do you have a blog with more than 50k page views from the US? Let us market your blog and earn great fix payments and bonuses.
  • Would you like to see your text link here? Let us know!
Advertisement
Book yours here.



  • Other blogs in the same channel in the Creative Weblogging Network

Advertisement -
Book yours here..






Advertisement - Book yours here..
 
Tagcloud: Accounting boards of directors Compliance corporate crime corporate governance corporate reputation Ethics events executive pay litigation markets regulators risk shareholder activism SOX Sponsored Blog strategy