Advertisement
Promo

Compliance Toolkit

Financial firms unsure where personal data is held

David Meyer ZDNet.co.uk

Published: 13 Jan 2009 17:28 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Most financial-services organisations lack a clear idea of where their employees' and customers' personal data is held, a PricewaterhouseCoopers survey has revealed.

The Global State of Information Security 2008 survey analysed various industries to judge their approach to information security, canvassing the views of "more than 7,000 CEOs, CFOs, CIOs, CSOs, vice presidents and directors of IT and information security from 119 countries". Of those surveyed, 665 worked in financial services, with 23 percent of those people coming from Europe.

According to the survey, 54 percent of those surveyed in financial services "report their organisation does not have an accurate inventory of where personal data for employees and customers is collected, transmitted and stored".

Furthermore, 49 percent of respondents in that sector said their firm did not integrate privacy and compliance policies, and 61 percent said their information security and physical security departments did not report to the same executive leader. The solution, according to the report's authors, would be to employ a chief privacy officer, a measure adopted by 28 percent of respondents to the survey.

Only 45 percent of respondents said their firm carries out "security- or privacy-related due diligence of third parties handling customer information". Only 34 percent had an inventory of those third parties to hand.

However, PwC found that the financial-services sector has made advances in security-technology adoption. According to the survey, 84 percent now use malicious-code detection tools, compared to 67 percent a year ago. Eighty percent now use content filters, versus 62 percent in 2007, and 50 percent use wireless handheld-device security — compared to 38 percent in 2007.

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Did you find this article useful?
4 out of 4 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:





Video icon

Video

Cloud Watch Special Report

Five cloud computing myths exploded

Five cloud computing myths exploded

Analysis The cloud is providing a fertile habitat for the marketeers and their exaggerated claims. We examine the hokum and debunk the five most frequently peddled misconceptions about the cloud

More Special Reports

Sentry Posts Blog

Met will not reopen phone hack investi...

The Metropolitan Police will not reopen its investigation into alleged phone hacking by the News of the World. In a press statement delivered outside Scotland Yard on Thursday, Assistant... More

Post a comment

FUD over ChromeOS's security already?

It hasn't taken long for the security vendors to wake to the potential of Google's new ChromeOS. The potential that is, to create FUD – fear uncertainty and doubt. In a release today,... More

Post a comment

Feds take DDoS in their stride

The US Department of Homeland Security has said that a series of distributed denial-of-service attacks began on US government networks on 4 July. However, Amy Kudwa, deputy press... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters