Screen 1 | |
Screen 2 |
Screen 3 | |
Screen 4 |
Trending Now: Inexcusable Data BreachesNationwide Insurances IT Security Professionals must talk a good story because they are not qualified for their positions.
Finding employment elsewhere shouldnt be much of a problem for them considering how many companies are re-staffing because of recent data breaches.
Maybe thats the problem?
Companies are hiring from the same pool of recently fired IT Pros
/sarcasm
The PII that was breached had to have been juicy coming from an insurance company.
They are the kings of harvesting/purchasing & storing invasive personal information
I went through the steps of receiving an online quote from Nationwide Insurance to see what the public data would reasonably include.
Screen 1 Your InformationFirst Name:
Last Name:
Email:
Phone:
Address:
City:
State:
ZipCode:
Screen 2 Vehicle InfoVehicle Year:
Make:
Model:
VIN (optional)
Estimated yearly mileage:
Hybrid? Y/N
Accident within 6yrs Y/N
Address where vehicle is kept:
Primary Use:
Screen 3 Driver InfoFirst Name:
Last Name:
Date of Birth:
Current License Number:
Current License State:
Age First Licensed:
State First Licensed:
Screen 4 Driver Discounts:General data mining questions see image 4
Toss in the info from the linked article:
"So far, various officials have confirmed with media outlets that about 30,000 people in Georgia were affected, as well as more than 12,000 in South Carolina. The California Department of Insurance announced Wednesday in a release that approximately 5,050 residents of the Golden State were impacted and that information, such as names, Social Security numbers and other personal identifying data, were stolen in the breach, though no credit card information was accessed.We can add the victims SSN to the list of other PII Nationwide Insurance handed over to ID thieves who want that data for one purpose only
Fear not though-
"
Currently, the company is notifying affected individuals by mail. They will be offered free credit monitoring and identify theft protection services for one year. A toll-free number, (800) 760-1125, was also set up to handle questions."That has become so typical that it may start appearing as the acceptable solution when there is nothing acceptable about the situation in the first place.
Is this supposed to be the penalty or the price a company has to pay for sloppy IT security?
If I owned a credit monitoring company Id allow Nationwide to offer the victims my service for free for a year. The amount of victims that would renew as paid clients at the years end would make it a wise investment.
»
www.scmagazine.com/perso ··· NewswireNationwide's MA issuer:
»
www.massdrive.com/index