SlideShare uma empresa Scribd logo
1 de 20
Data Security
What not to do!

UK Data Losses

Shredded Neat Limited
Data - Why worry ?
• DPA introduced 1984
• Administered by ICO
• April 2010 new powers to
issue DP ‘Notices’ and pursue
through courts
• 13,802 cases last year
• 372k registered under DPA
• 58 spot audits in 2013/13
UK Data Losses

Shredded Neat Limited
What could it cost me?
• ICO levied £4.25
million in fines on 40
organisations
• Average fine £106k
• FCA/FSA £7.77
million on just 7
organisations
• ICO Max fine £500k
and FCA unlimited
UK Data Losses

Shredded Neat Limited
Our Own Survey
• Looked at recorded
prosecutions over 20
years, plus:
• Internet search of
major data breaches
• Press and media
researched
• Pulled together our
own statistics and
case studies
UK Data Losses

Shredded Neat Limited
Data Media Losses

UK Data Losses

Shredded Neat Limited
Secure Paper Losses
• Paper in use since 1495
• Digitisation presents challenges
dealing with redundant archives
• Cloud archiving has specific
problems in terms of security
• Documents still carried to and
from work on various forms
transport
• Unshredded documents often
put in general waste
UK Data Losses

Shredded Neat Limited
Benji the Bin Man
• Benjamin Pell made a living
going through rubbish
• Professional Muckraker
• Drove round London in Hi-Vis
emptying bins into his vehicle
• Prominent firms and people
targeted, paid by newspapers
• Police found 200,000
documents in his shed after
his arrest!
UK Data Losses

Shredded Neat Limited
Other data storage

UK Data Losses

Shredded Neat Limited
Portable Data Media
• Seagate devised 1st HDD in
1980, 5Mb, by 2013, latest PCs
4Tb
• Or from 5 novels to a library with
4m books
• Mem.sticks 1st used 1980s, can
hold 128 Gb, convenient to carry
– easy to lose!
• Mobiles 1990’s, 50% ‘smart’
25,000 stolen in London per
week

UK Data Losses

Shredded Neat Limited
West African News!
• Old pcs/laptops began arriving in Ghana
few years ago, Ghanaians welcomed
donations to help bridge digital divide.
• E-waste dealers set up shop close to port,
display 40ft containers they bought in UK
– HDDs salvaged are displayed at open-air
markets. Organized criminals comb through
HDDs for personal information to use in
scams.

• Totally outside UK regulation & contribute
to some of 217,000 ID fraud cases in the
UK.
UK Data Losses

Shredded Neat Limited
Where do losses occur?
• Paper losses from
offsite storage, during
office moves & blown
out of doors & windows
• Theft of high value
laptops/mobiles from
houses, trains & cars
• 50% of all losses in
transit occurred after
being in the pub or a
restaurant
UK Data Losses

Shredded Neat Limited
Inverness Police
• In 2000, hundreds of documents
found blowing across local tip
• Internal files on 126 cases incl.
bike thefts, drug offences and
serious sexual cases
• Defendants clearly identifiable
• Major inquiry launched by Police
• Member public sent bundles found
to the local newspapers
• Police unable to say how these
bypassed their procedures
UK Data Losses

Shredded Neat Limited
Data Loss Threats
Most Common Threats
• Single or
compound threats
• Excl. misdirected
comms.
• Intentional e.g.
hacking or criminal
or accidental, when
an event occurs
and data falls into
other hands or
public domain
Reputational Damage
• In 2011 Oliver Letwin papped
on five separate days
• Dumped docs in waste bins in
St. James Park
• 100 documents retrieved by
the photographer
• Comprised briefing papers
and constituency mail
• MP and Minister of State in
Cabinet office – Nice one Ollie

Personal Liability
• Richard Jackson 2008
• Left files on Train out of
waterloo
• Contained Joint Intelligence
Committee report on Al
Queda & MoD report on
Iraq’s defence capabilities
• Commuter passed them to
the BBC
• Richard (Dick) fined £2500
and severely reprimanded by
Civil Service
Security what security?
• Former Home Secretary
David Blunket 2002
• Documents found outside
a Sheffield Pub
• Aerial Photo’s of his
home and detailed alarm
systems info & his usual
daily routine in papers
• Ex-soldier found the
papers and gave them to
S. Yorkshire Police
Graham Clements whoops!
• UK MD of Ischida Corp. Japan.
• Gives old Blackberry to his IT dept
to recycle
• Attends his 1st Board Meet to find his
Blackberry No1 item in agenda
• Data on it – Business Plans; bank
accounts; Corp info & his children
• Damaging publicity just averted by
fact the phone was recovered by
Glamorgan University who were
researching mobile phone abuses
Protect yourself!
• Ensure DPA complaint processes
• Resources needed often outside
scope smaller companies
• Secure storage of paper on site
• CRB check cleaners and FMCo
• Ensure all data containing media
controlled
• Encryption of data taken offsite
• Certification to BS15713
contractors not badges!
Contact Details
• www.shreddedneat.co.uk
• Call free 0800 234 6660
• Shreddedneat@Shreddedneat
•
• facebook.com/Shreddedneat
• mark@shreddedneat.co.uk
UK Data Losses

Shredded Neat Limited

Mais conteúdo relacionado

Destaque

Deel 8 nieuwe en andere rol voor politici
Deel 8 nieuwe en andere rol voor politiciDeel 8 nieuwe en andere rol voor politici
Deel 8 nieuwe en andere rol voor politiciPiet De Pauw
 
Shredded Neat Sales Partners Presentation
Shredded Neat Sales Partners PresentationShredded Neat Sales Partners Presentation
Shredded Neat Sales Partners Presentationmarkhadley
 
Waste Electrical & Electronic Equipment Review
Waste Electrical & Electronic Equipment ReviewWaste Electrical & Electronic Equipment Review
Waste Electrical & Electronic Equipment Reviewmarkhadley
 
Deel 6 aanbevolen ordening van de samenleving
Deel 6 aanbevolen ordening van de samenlevingDeel 6 aanbevolen ordening van de samenleving
Deel 6 aanbevolen ordening van de samenlevingPiet De Pauw
 
Deel 8 nieuwe en andere rol voor politici
Deel 8 nieuwe en andere rol voor politiciDeel 8 nieuwe en andere rol voor politici
Deel 8 nieuwe en andere rol voor politiciPiet De Pauw
 
Democratie nu als ethisch merk piet de pauw 3 aug 2012
Democratie nu als ethisch merk piet de pauw 3 aug 2012Democratie nu als ethisch merk piet de pauw 3 aug 2012
Democratie nu als ethisch merk piet de pauw 3 aug 2012Piet De Pauw
 
Deel 5 grondoorzaak de vergeten waarden
Deel 5 grondoorzaak de vergeten waardenDeel 5 grondoorzaak de vergeten waarden
Deel 5 grondoorzaak de vergeten waardenPiet De Pauw
 
Breaking the iron law of organizations 18 jan 2012
Breaking the iron law of organizations 18 jan 2012Breaking the iron law of organizations 18 jan 2012
Breaking the iron law of organizations 18 jan 2012Piet De Pauw
 
Deel 0 introductie open vld
Deel 0 introductie open vldDeel 0 introductie open vld
Deel 0 introductie open vldPiet De Pauw
 
Democratie v the fairest vote_v5
Democratie v the fairest vote_v5Democratie v the fairest vote_v5
Democratie v the fairest vote_v5Piet De Pauw
 
Democratie grenzen en speelveld democratie v20
Democratie grenzen en speelveld democratie v20Democratie grenzen en speelveld democratie v20
Democratie grenzen en speelveld democratie v20Piet De Pauw
 

Destaque (13)

Deel 8 nieuwe en andere rol voor politici
Deel 8 nieuwe en andere rol voor politiciDeel 8 nieuwe en andere rol voor politici
Deel 8 nieuwe en andere rol voor politici
 
Shredded Neat Sales Partners Presentation
Shredded Neat Sales Partners PresentationShredded Neat Sales Partners Presentation
Shredded Neat Sales Partners Presentation
 
Waste Electrical & Electronic Equipment Review
Waste Electrical & Electronic Equipment ReviewWaste Electrical & Electronic Equipment Review
Waste Electrical & Electronic Equipment Review
 
Deel 6 aanbevolen ordening van de samenleving
Deel 6 aanbevolen ordening van de samenlevingDeel 6 aanbevolen ordening van de samenleving
Deel 6 aanbevolen ordening van de samenleving
 
Deel 8 nieuwe en andere rol voor politici
Deel 8 nieuwe en andere rol voor politiciDeel 8 nieuwe en andere rol voor politici
Deel 8 nieuwe en andere rol voor politici
 
Democratie nu als ethisch merk piet de pauw 3 aug 2012
Democratie nu als ethisch merk piet de pauw 3 aug 2012Democratie nu als ethisch merk piet de pauw 3 aug 2012
Democratie nu als ethisch merk piet de pauw 3 aug 2012
 
Deel 5 grondoorzaak de vergeten waarden
Deel 5 grondoorzaak de vergeten waardenDeel 5 grondoorzaak de vergeten waarden
Deel 5 grondoorzaak de vergeten waarden
 
Breaking the iron law of organizations 18 jan 2012
Breaking the iron law of organizations 18 jan 2012Breaking the iron law of organizations 18 jan 2012
Breaking the iron law of organizations 18 jan 2012
 
Deel 0 introductie open vld
Deel 0 introductie open vldDeel 0 introductie open vld
Deel 0 introductie open vld
 
Democratie v the fairest vote_v5
Democratie v the fairest vote_v5Democratie v the fairest vote_v5
Democratie v the fairest vote_v5
 
Teach meet wave 2
Teach meet wave 2 Teach meet wave 2
Teach meet wave 2
 
Democratie grenzen en speelveld democratie v20
Democratie grenzen en speelveld democratie v20Democratie grenzen en speelveld democratie v20
Democratie grenzen en speelveld democratie v20
 
Breast cancer
Breast cancerBreast cancer
Breast cancer
 

Semelhante a Security Blunders Presentation UK 2014

Intellectual Property Rights
Intellectual Property RightsIntellectual Property Rights
Intellectual Property RightsGabriella Cox
 
Web Archiving at the NLI
Web Archiving at the NLIWeb Archiving at the NLI
Web Archiving at the NLIdri_ireland
 
Practice detention storage and destruction of ip infringing products
Practice detention storage and destruction of ip infringing productsPractice detention storage and destruction of ip infringing products
Practice detention storage and destruction of ip infringing productsfrancesco loro
 
Digital investigation
Digital investigationDigital investigation
Digital investigationunnilala11
 
Regulating The Internet
Regulating The InternetRegulating The Internet
Regulating The Internetorrenprunckun
 
Business Innovation in Additive Manufacturing Opening Slides
Business Innovation in Additive Manufacturing Opening Slides Business Innovation in Additive Manufacturing Opening Slides
Business Innovation in Additive Manufacturing Opening Slides KTN
 
The Challenges & Risks of New Technology: Privacy Law & Policy
The Challenges & Risks of New Technology: Privacy Law & PolicyThe Challenges & Risks of New Technology: Privacy Law & Policy
The Challenges & Risks of New Technology: Privacy Law & PolicyDan Houser
 
International response - Patrick Dealtry - Safety & Health Expo 2014
International response - Patrick Dealtry - Safety & Health Expo 2014International response - Patrick Dealtry - Safety & Health Expo 2014
International response - Patrick Dealtry - Safety & Health Expo 2014SHExpo
 
Insider threat event presentation
Insider threat event presentationInsider threat event presentation
Insider threat event presentationIISPEastMids
 
TPP Finance Seminar 6th October 2016
TPP Finance Seminar 6th October 2016TPP Finance Seminar 6th October 2016
TPP Finance Seminar 6th October 2016TPP Recruitment
 
Mitigation starts now
Mitigation starts nowMitigation starts now
Mitigation starts nowJisc
 
Mark Fitzgerald, Irish Property - Signs of Momentum? May 2013
Mark Fitzgerald, Irish Property - Signs of Momentum? May 2013Mark Fitzgerald, Irish Property - Signs of Momentum? May 2013
Mark Fitzgerald, Irish Property - Signs of Momentum? May 2013All_about_business
 
Digital Mediaina state
Digital Mediaina stateDigital Mediaina state
Digital Mediaina stateSales Hub Pro
 
It business climate v3
It business climate v3It business climate v3
It business climate v3Martin Hingley
 
Digital Derry - Achievements
Digital Derry - AchievementsDigital Derry - Achievements
Digital Derry - AchievementsKieran Fegan
 
Internet of Things - how secure is it?
Internet of Things - how secure is it?Internet of Things - how secure is it?
Internet of Things - how secure is it?IISPEastMids
 

Semelhante a Security Blunders Presentation UK 2014 (20)

Cyber Security Conference 2017
Cyber Security Conference 2017Cyber Security Conference 2017
Cyber Security Conference 2017
 
Intellectual Property Rights
Intellectual Property RightsIntellectual Property Rights
Intellectual Property Rights
 
Web Archiving at the NLI
Web Archiving at the NLIWeb Archiving at the NLI
Web Archiving at the NLI
 
Legal update
Legal updateLegal update
Legal update
 
Practice detention storage and destruction of ip infringing products
Practice detention storage and destruction of ip infringing productsPractice detention storage and destruction of ip infringing products
Practice detention storage and destruction of ip infringing products
 
Digital investigation
Digital investigationDigital investigation
Digital investigation
 
Regulating The Internet
Regulating The InternetRegulating The Internet
Regulating The Internet
 
Business Innovation in Additive Manufacturing Opening Slides
Business Innovation in Additive Manufacturing Opening Slides Business Innovation in Additive Manufacturing Opening Slides
Business Innovation in Additive Manufacturing Opening Slides
 
The Challenges & Risks of New Technology: Privacy Law & Policy
The Challenges & Risks of New Technology: Privacy Law & PolicyThe Challenges & Risks of New Technology: Privacy Law & Policy
The Challenges & Risks of New Technology: Privacy Law & Policy
 
International response - Patrick Dealtry - Safety & Health Expo 2014
International response - Patrick Dealtry - Safety & Health Expo 2014International response - Patrick Dealtry - Safety & Health Expo 2014
International response - Patrick Dealtry - Safety & Health Expo 2014
 
Insider threat event presentation
Insider threat event presentationInsider threat event presentation
Insider threat event presentation
 
TPP Finance Seminar 6th October 2016
TPP Finance Seminar 6th October 2016TPP Finance Seminar 6th October 2016
TPP Finance Seminar 6th October 2016
 
EU Border Measure Regulation
EU Border Measure RegulationEU Border Measure Regulation
EU Border Measure Regulation
 
Scottish Letting Day 2023 - Centenary afternoon sessions
Scottish Letting Day 2023 - Centenary afternoon sessionsScottish Letting Day 2023 - Centenary afternoon sessions
Scottish Letting Day 2023 - Centenary afternoon sessions
 
Mitigation starts now
Mitigation starts nowMitigation starts now
Mitigation starts now
 
Mark Fitzgerald, Irish Property - Signs of Momentum? May 2013
Mark Fitzgerald, Irish Property - Signs of Momentum? May 2013Mark Fitzgerald, Irish Property - Signs of Momentum? May 2013
Mark Fitzgerald, Irish Property - Signs of Momentum? May 2013
 
Digital Mediaina state
Digital Mediaina stateDigital Mediaina state
Digital Mediaina state
 
It business climate v3
It business climate v3It business climate v3
It business climate v3
 
Digital Derry - Achievements
Digital Derry - AchievementsDigital Derry - Achievements
Digital Derry - Achievements
 
Internet of Things - how secure is it?
Internet of Things - how secure is it?Internet of Things - how secure is it?
Internet of Things - how secure is it?
 

Último

Keynote by Prof. Wurzer at Nordex about IP-design
Keynote by Prof. Wurzer at Nordex about IP-designKeynote by Prof. Wurzer at Nordex about IP-design
Keynote by Prof. Wurzer at Nordex about IP-designMIPLM
 
HỌC TỐT TIẾNG ANH 11 THEO CHƯƠNG TRÌNH GLOBAL SUCCESS ĐÁP ÁN CHI TIẾT - CẢ NĂ...
HỌC TỐT TIẾNG ANH 11 THEO CHƯƠNG TRÌNH GLOBAL SUCCESS ĐÁP ÁN CHI TIẾT - CẢ NĂ...HỌC TỐT TIẾNG ANH 11 THEO CHƯƠNG TRÌNH GLOBAL SUCCESS ĐÁP ÁN CHI TIẾT - CẢ NĂ...
HỌC TỐT TIẾNG ANH 11 THEO CHƯƠNG TRÌNH GLOBAL SUCCESS ĐÁP ÁN CHI TIẾT - CẢ NĂ...Nguyen Thanh Tu Collection
 
Transaction Management in Database Management System
Transaction Management in Database Management SystemTransaction Management in Database Management System
Transaction Management in Database Management SystemChristalin Nelson
 
How to Add Barcode on PDF Report in Odoo 17
How to Add Barcode on PDF Report in Odoo 17How to Add Barcode on PDF Report in Odoo 17
How to Add Barcode on PDF Report in Odoo 17Celine George
 
MULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptx
MULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptxMULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptx
MULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptxAnupkumar Sharma
 
Concurrency Control in Database Management system
Concurrency Control in Database Management systemConcurrency Control in Database Management system
Concurrency Control in Database Management systemChristalin Nelson
 
ENGLISH6-Q4-W3.pptxqurter our high choom
ENGLISH6-Q4-W3.pptxqurter our high choomENGLISH6-Q4-W3.pptxqurter our high choom
ENGLISH6-Q4-W3.pptxqurter our high choomnelietumpap1
 
Choosing the Right CBSE School A Comprehensive Guide for Parents
Choosing the Right CBSE School A Comprehensive Guide for ParentsChoosing the Right CBSE School A Comprehensive Guide for Parents
Choosing the Right CBSE School A Comprehensive Guide for Parentsnavabharathschool99
 
Earth Day Presentation wow hello nice great
Earth Day Presentation wow hello nice greatEarth Day Presentation wow hello nice great
Earth Day Presentation wow hello nice greatYousafMalik24
 
How to do quick user assign in kanban in Odoo 17 ERP
How to do quick user assign in kanban in Odoo 17 ERPHow to do quick user assign in kanban in Odoo 17 ERP
How to do quick user assign in kanban in Odoo 17 ERPCeline George
 
AUDIENCE THEORY -CULTIVATION THEORY - GERBNER.pptx
AUDIENCE THEORY -CULTIVATION THEORY -  GERBNER.pptxAUDIENCE THEORY -CULTIVATION THEORY -  GERBNER.pptx
AUDIENCE THEORY -CULTIVATION THEORY - GERBNER.pptxiammrhaywood
 
FILIPINO PSYCHology sikolohiyang pilipino
FILIPINO PSYCHology sikolohiyang pilipinoFILIPINO PSYCHology sikolohiyang pilipino
FILIPINO PSYCHology sikolohiyang pilipinojohnmickonozaleda
 
Science 7 Quarter 4 Module 2: Natural Resources.pptx
Science 7 Quarter 4 Module 2: Natural Resources.pptxScience 7 Quarter 4 Module 2: Natural Resources.pptx
Science 7 Quarter 4 Module 2: Natural Resources.pptxMaryGraceBautista27
 
Student Profile Sample - We help schools to connect the data they have, with ...
Student Profile Sample - We help schools to connect the data they have, with ...Student Profile Sample - We help schools to connect the data they have, with ...
Student Profile Sample - We help schools to connect the data they have, with ...Seán Kennedy
 
4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptx4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptxmary850239
 
Karra SKD Conference Presentation Revised.pptx
Karra SKD Conference Presentation Revised.pptxKarra SKD Conference Presentation Revised.pptx
Karra SKD Conference Presentation Revised.pptxAshokKarra1
 
Grade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdf
Grade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdfGrade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdf
Grade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdfJemuel Francisco
 
Inclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdf
Inclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdfInclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdf
Inclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdfTechSoup
 

Último (20)

Keynote by Prof. Wurzer at Nordex about IP-design
Keynote by Prof. Wurzer at Nordex about IP-designKeynote by Prof. Wurzer at Nordex about IP-design
Keynote by Prof. Wurzer at Nordex about IP-design
 
HỌC TỐT TIẾNG ANH 11 THEO CHƯƠNG TRÌNH GLOBAL SUCCESS ĐÁP ÁN CHI TIẾT - CẢ NĂ...
HỌC TỐT TIẾNG ANH 11 THEO CHƯƠNG TRÌNH GLOBAL SUCCESS ĐÁP ÁN CHI TIẾT - CẢ NĂ...HỌC TỐT TIẾNG ANH 11 THEO CHƯƠNG TRÌNH GLOBAL SUCCESS ĐÁP ÁN CHI TIẾT - CẢ NĂ...
HỌC TỐT TIẾNG ANH 11 THEO CHƯƠNG TRÌNH GLOBAL SUCCESS ĐÁP ÁN CHI TIẾT - CẢ NĂ...
 
Transaction Management in Database Management System
Transaction Management in Database Management SystemTransaction Management in Database Management System
Transaction Management in Database Management System
 
How to Add Barcode on PDF Report in Odoo 17
How to Add Barcode on PDF Report in Odoo 17How to Add Barcode on PDF Report in Odoo 17
How to Add Barcode on PDF Report in Odoo 17
 
MULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptx
MULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptxMULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptx
MULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptx
 
Concurrency Control in Database Management system
Concurrency Control in Database Management systemConcurrency Control in Database Management system
Concurrency Control in Database Management system
 
ENGLISH6-Q4-W3.pptxqurter our high choom
ENGLISH6-Q4-W3.pptxqurter our high choomENGLISH6-Q4-W3.pptxqurter our high choom
ENGLISH6-Q4-W3.pptxqurter our high choom
 
Choosing the Right CBSE School A Comprehensive Guide for Parents
Choosing the Right CBSE School A Comprehensive Guide for ParentsChoosing the Right CBSE School A Comprehensive Guide for Parents
Choosing the Right CBSE School A Comprehensive Guide for Parents
 
Earth Day Presentation wow hello nice great
Earth Day Presentation wow hello nice greatEarth Day Presentation wow hello nice great
Earth Day Presentation wow hello nice great
 
How to do quick user assign in kanban in Odoo 17 ERP
How to do quick user assign in kanban in Odoo 17 ERPHow to do quick user assign in kanban in Odoo 17 ERP
How to do quick user assign in kanban in Odoo 17 ERP
 
AUDIENCE THEORY -CULTIVATION THEORY - GERBNER.pptx
AUDIENCE THEORY -CULTIVATION THEORY -  GERBNER.pptxAUDIENCE THEORY -CULTIVATION THEORY -  GERBNER.pptx
AUDIENCE THEORY -CULTIVATION THEORY - GERBNER.pptx
 
FILIPINO PSYCHology sikolohiyang pilipino
FILIPINO PSYCHology sikolohiyang pilipinoFILIPINO PSYCHology sikolohiyang pilipino
FILIPINO PSYCHology sikolohiyang pilipino
 
Science 7 Quarter 4 Module 2: Natural Resources.pptx
Science 7 Quarter 4 Module 2: Natural Resources.pptxScience 7 Quarter 4 Module 2: Natural Resources.pptx
Science 7 Quarter 4 Module 2: Natural Resources.pptx
 
Student Profile Sample - We help schools to connect the data they have, with ...
Student Profile Sample - We help schools to connect the data they have, with ...Student Profile Sample - We help schools to connect the data they have, with ...
Student Profile Sample - We help schools to connect the data they have, with ...
 
4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptx4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptx
 
Raw materials used in Herbal Cosmetics.pptx
Raw materials used in Herbal Cosmetics.pptxRaw materials used in Herbal Cosmetics.pptx
Raw materials used in Herbal Cosmetics.pptx
 
Karra SKD Conference Presentation Revised.pptx
Karra SKD Conference Presentation Revised.pptxKarra SKD Conference Presentation Revised.pptx
Karra SKD Conference Presentation Revised.pptx
 
Grade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdf
Grade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdfGrade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdf
Grade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdf
 
Inclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdf
Inclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdfInclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdf
Inclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdf
 
YOUVE GOT EMAIL_FINALS_EL_DORADO_2024.pptx
YOUVE GOT EMAIL_FINALS_EL_DORADO_2024.pptxYOUVE GOT EMAIL_FINALS_EL_DORADO_2024.pptx
YOUVE GOT EMAIL_FINALS_EL_DORADO_2024.pptx
 

Security Blunders Presentation UK 2014

  • 1. Data Security What not to do! UK Data Losses Shredded Neat Limited
  • 2. Data - Why worry ? • DPA introduced 1984 • Administered by ICO • April 2010 new powers to issue DP ‘Notices’ and pursue through courts • 13,802 cases last year • 372k registered under DPA • 58 spot audits in 2013/13 UK Data Losses Shredded Neat Limited
  • 3. What could it cost me? • ICO levied £4.25 million in fines on 40 organisations • Average fine £106k • FCA/FSA £7.77 million on just 7 organisations • ICO Max fine £500k and FCA unlimited UK Data Losses Shredded Neat Limited
  • 4. Our Own Survey • Looked at recorded prosecutions over 20 years, plus: • Internet search of major data breaches • Press and media researched • Pulled together our own statistics and case studies UK Data Losses Shredded Neat Limited
  • 5. Data Media Losses UK Data Losses Shredded Neat Limited
  • 6. Secure Paper Losses • Paper in use since 1495 • Digitisation presents challenges dealing with redundant archives • Cloud archiving has specific problems in terms of security • Documents still carried to and from work on various forms transport • Unshredded documents often put in general waste UK Data Losses Shredded Neat Limited
  • 7. Benji the Bin Man • Benjamin Pell made a living going through rubbish • Professional Muckraker • Drove round London in Hi-Vis emptying bins into his vehicle • Prominent firms and people targeted, paid by newspapers • Police found 200,000 documents in his shed after his arrest! UK Data Losses Shredded Neat Limited
  • 8. Other data storage UK Data Losses Shredded Neat Limited
  • 9. Portable Data Media • Seagate devised 1st HDD in 1980, 5Mb, by 2013, latest PCs 4Tb • Or from 5 novels to a library with 4m books • Mem.sticks 1st used 1980s, can hold 128 Gb, convenient to carry – easy to lose! • Mobiles 1990’s, 50% ‘smart’ 25,000 stolen in London per week UK Data Losses Shredded Neat Limited
  • 10. West African News! • Old pcs/laptops began arriving in Ghana few years ago, Ghanaians welcomed donations to help bridge digital divide. • E-waste dealers set up shop close to port, display 40ft containers they bought in UK – HDDs salvaged are displayed at open-air markets. Organized criminals comb through HDDs for personal information to use in scams. • Totally outside UK regulation & contribute to some of 217,000 ID fraud cases in the UK. UK Data Losses Shredded Neat Limited
  • 11. Where do losses occur? • Paper losses from offsite storage, during office moves & blown out of doors & windows • Theft of high value laptops/mobiles from houses, trains & cars • 50% of all losses in transit occurred after being in the pub or a restaurant UK Data Losses Shredded Neat Limited
  • 12. Inverness Police • In 2000, hundreds of documents found blowing across local tip • Internal files on 126 cases incl. bike thefts, drug offences and serious sexual cases • Defendants clearly identifiable • Major inquiry launched by Police • Member public sent bundles found to the local newspapers • Police unable to say how these bypassed their procedures UK Data Losses Shredded Neat Limited
  • 14. Most Common Threats • Single or compound threats • Excl. misdirected comms. • Intentional e.g. hacking or criminal or accidental, when an event occurs and data falls into other hands or public domain
  • 15. Reputational Damage • In 2011 Oliver Letwin papped on five separate days • Dumped docs in waste bins in St. James Park • 100 documents retrieved by the photographer • Comprised briefing papers and constituency mail • MP and Minister of State in Cabinet office – Nice one Ollie 
  • 16. Personal Liability • Richard Jackson 2008 • Left files on Train out of waterloo • Contained Joint Intelligence Committee report on Al Queda & MoD report on Iraq’s defence capabilities • Commuter passed them to the BBC • Richard (Dick) fined £2500 and severely reprimanded by Civil Service
  • 17. Security what security? • Former Home Secretary David Blunket 2002 • Documents found outside a Sheffield Pub • Aerial Photo’s of his home and detailed alarm systems info & his usual daily routine in papers • Ex-soldier found the papers and gave them to S. Yorkshire Police
  • 18. Graham Clements whoops! • UK MD of Ischida Corp. Japan. • Gives old Blackberry to his IT dept to recycle • Attends his 1st Board Meet to find his Blackberry No1 item in agenda • Data on it – Business Plans; bank accounts; Corp info & his children • Damaging publicity just averted by fact the phone was recovered by Glamorgan University who were researching mobile phone abuses
  • 19. Protect yourself! • Ensure DPA complaint processes • Resources needed often outside scope smaller companies • Secure storage of paper on site • CRB check cleaners and FMCo • Ensure all data containing media controlled • Encryption of data taken offsite • Certification to BS15713 contractors not badges!
  • 20. Contact Details • www.shreddedneat.co.uk • Call free 0800 234 6660 • Shreddedneat@Shreddedneat • • facebook.com/Shreddedneat • mark@shreddedneat.co.uk UK Data Losses Shredded Neat Limited