Thursday 23 July 2009

HSBC Personal data loss fined

Three HSBC firms have been fined more than £3m for failing to adequately protect customers' confidential details from being lost or stolen. The Financial Services Authority (FSA) said customer data had been lost in the post on two occasions. The firms concerned are HSBC Life UK, HSBC Actuaries and Consultants, and HSBC Insurance Brokers. HSBC said it regretted the breaches, adding that no customer had reported any loss from these failures. Lack of training The FSA said that all three firms had taken action to address the concerns raised. It said it had found that "large amounts" of unencrypted customer details had been sent via post or courier to third parties. Confidential information about customers was also found left on open shelves or in unlocked cabinets, the watchdog said. It added that staff had not been given sufficient training on how to identify and manage risks such as identity theft. Lost disks The FSA identified two instances where unencrypted data had been lost in the post. In April 2007, HSBC Actuaries lost a floppy disk containing the personal information of 1,917 pension scheme members, including addresses, dates of birth and national insurance numbers. And in February 2008, HSBC Life lost a CD containing the details of 180,000 policyholders.

For further details visit as : http://news.bbc.co.uk/2/hi/business/8162787.stm

No comments: