Monday 9 December 2013

Analysis of the JP Morgan Data Breach When Applications Fail Data Security

Almost Half A Million Corporate Customers’ Data Breached in Cyberattack again JPMorgan Chase website. The bank typically keeps the personal information of its customers encrypted, or scrambled, as a security precaution. However, during the course of the breach, personal data belonging to those customers had temporarily appeared in plain text in files the computers use to log activity. Cyber criminals covet such data because it can be used to open bank accounts, obtain credit cards and engage in identity theft. You cannot implement data security without application security, as your application handles your most sensitive data on a regular basis. The JPMorgan example is something very common: from a pure policy perspective, all data security practices were followed – security controls verifying that the defined data repositories are encrypted were in place, as was a proper audit trail.

http://bit.ly/18OvH79

No comments:

Post a Comment