An Audible Data Privacy Breach
RI labor dept. warns of possible privacy breach.
I think about data encryption, physical access controls to servers and such on a regular basis. But there are all kinds of formats via which data gets stored or communicated. The Rhode Island Department of Labor recently had a data breach involving their call center. Customers were able to hear conversations on other calls. The department estimates fewer than 700 people were affected.
- Paper forms in which data is originally collected. Think membership forms, applications, feedback and suggestion forms. I remember seeing a binder full of membership forms being used to prop open a door on the sidewalk in front of a store. When I pointed out to the manager that this was a problem, he shrugged and said it wasn’t a problem because all the data had already been keyed in and therefore no longer had any value to them except when the systems were down.
- Video and photographs. The advent of video analytics and photo analysis means that we are collecting, storing, and putting at risk more data than ever before. I remember seeing a retailer’s security video tapes sitting all lined up on a counter at the back of a store. The only thing that made this somewhat safe is that most likely the security system was probably so poor it would be impossible to determine who was on those videos. But now video analytics allow retailers to determine when you visit their store, who you shop with and what products interest you.
- Conversations. Yes, all those "may be recorded for quality purposes" call center calls are most likely chock full of your personal information. I worry how well those data sets are being protected, too.
I believe our role as data professionals should go beyond protecting the data held in a traditional database. Because I’m not sure anyone else is even considering that data. And I’d bet the bad guys are betting that no data professional is involved in protecting it.
Love your data. Love your customers’ data, too.
3 Comments
Leave a comment to datachick
Subscribe via E-mail
Recent Comments
Categories
Downloads
- favicon
- 476275616.jpg
- favicon
- Refactoring Computer Engineer Barbie
- 10 Things I Hate About Interviewing with You
- EDW 2013 Karen Lopez Get Blogging
- Karen Lopez presentation DAMA PS 2012
- Data Modeling Contentious Issues - DAMA Nebraska
- Karen Lopez - 10 Physical Blunders - DAMA
- Career Success In Data Profession - DAMA
- The Straw Poll
- You've Just Inherited a Data Model CheckList
- KarenLopez - 5 Physical Blunders - 24HOP-2011
- Handouts for OEMUG / CA Global Modeling User Group Why Be Normal Webcast
- Handouts Database Design Contentious Issues - New York 2010
- Handouts Database Design Contentious Issues - DC 2010
Archive
Recent Posts
Archives
- October 2019
- November 2018
- May 2018
- April 2018
- December 2017
- August 2017
- September 2016
- August 2016
- June 2016
- May 2016
- April 2016
- March 2016
- February 2016
- January 2016
- December 2015
- November 2015
- September 2015
- July 2015
- June 2015
- May 2015
- April 2015
- March 2015
- February 2015
- January 2015
- December 2014
- November 2014
- October 2014
- August 2014
- July 2014
- June 2014
- May 2014
- April 2014
- March 2014
- February 2014
- January 2014
- December 2013
- November 2013
- October 2013
- September 2013
- August 2013
- July 2013
- June 2013
- May 2013
- April 2013
- March 2013
- February 2013
- January 2013
- December 2012
- November 2012
- October 2012
- September 2012
- August 2012
- July 2012
- June 2012
- May 2012
- April 2012
- March 2012
- February 2012
- January 2012
- December 2011
- November 2011
- October 2011
- September 2011
- August 2011
- July 2011
- June 2011
- May 2011
- April 2011
- March 2011
- February 2011
- January 2011
- December 2010
- November 2010
- September 2010
- August 2010
- July 2010
- February 2009
I’m certain the number of data breaches aren’t really increasing, just the reporting of them. Kinda like shark attacks.
I think they need wider reporting. It’s time that customers understand just how poorly their data is being cared for.
[…] was reposted from Clean Up BlogThisSecurity feed and make it a snipit http://www.datamodel.com/index.php/2013/01/02/an-audible-data-privacy-breach/ written by Karen Lopez. They get all the credit for this, not […]