About Us | Contact Us
View Cart

Equifax Ordered To Implement Security Measures

By Vigilize | Sunday, July 1, 2018 - Leave a Comment

Financial regulators from eight states impose new rules in the wake of the credit reporting agency’s historic breach.


An article review.


ServIcons_ITAudit_01

The investigation by federal regulators and law enforcement officials into the breach that resulted in the release of over 140 million people’s personal information is still ongoing, but Equifax has already reached an agreement with the financial regulators from eight states according to a recent release.

The terms of the agreement, which an Equifax spokesperson suggests has already largely been implemented by the company, includes provisions that allow punitive actions to be taken if the company is not found to be in compliance.

Among the requirements for Equifax are items that should be familiar to many of us working in IT, especially those in regulated industries–and include subjects such as vendor due diligence, security patch management and the development of written policies and directives for data security. If you’re thinking that these things should be in place whether or not a company is required to do so by law you wouldn’t be alone: the article quotes California’s business oversight commissioner as stating that the Equifax breach, “should have never happened.”

This agreement should help make sure that Equifax is not the victim of another breach, and will hopefully serve as a reminder to other businesses that aren’t taking their customer’s security as seriously as they should: While you may not be required to do so now, should the worst come to pass it is likely that you will be ordered to implement these basic steps as restitution.


Original article by Stacy Cowley reporting for The New York Times.


same_strip_012513


 

Latest News
    Today we present a special BONUS awareness poster for YOUR customers (and users).  This update to the April 2022 Awareness Poster takes some cues from the Dan’s New Leaf article: Why Local? Now that we have our own employees aware, maybe it’s time to start posting content for our customers! Check out posters.infotex.com for the […]
    Awareness is 9/11’s of the battle, if we use it! Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . One of my old college buddies hates banks.  He was turned down for a loan a long time ago and just can’t let go.  I actually […]
    PRESS RELEASE – FOR IMMEDIATE RELEASE SERVICE NEWS Dateline: Dayton, IN, June 22, 2022 We are proud to announce that infotex will now be supporting Endpoint Detection and Response (XDR/MDR)! We can manage/monitor solutions you already have or offer one as part of our service while still maintaining a segregated response posture. In recent years […]
    Over 85 percent of surveyed companies report having no  centralized monitoring of networked industrial devices… An article review. If you are involved in IT within your organization, you’re probably aware of the importance of being able to monitor relevant activity from your networked devices, especially if your organization is involved in healthcare, finance, or government.  […]
    Another awareness poster for YOUR customers (and users).  Now that we have our own employees aware, maybe it’s time to start posting content for our customers! Check out posters.infotex.com for the whole collection! Download the large versions here: Awareness Poster (Portrait) Awareness Poster (Landscape)   You are welcome to print out and distribute this around […]
    We always strive to bring you the best content that we possibly can. Your opinion on any content, presentation, service, or anything else you have received from us is important! Please click the button below to let us know how we are doing!  
    What to Expect in an Annual Information Security Report to the Board Webinar-Movie Information security ranks as a top risk to financial institutions, both in terms of likelihood and overall impact. It is important that boards receive annual comprehensive reporting from management about the information security risks and incidents, and the actions taken to address […]
    The Five Precepts of IT Vendor Management Webinar-Movie We’re going back to basics on Vendor Management. This webinar will give you a training tool to help out that new person that is starting to take on the gargantuan task that is Vendor Management.
    Another awareness poster for YOUR customers (and users).  Now that we have our own employees aware, maybe it’s time to start posting content for our customers! Check out posters.infotex.com for the whole collection! Download the large versions here: Awareness Poster (Portrait) Awareness Poster (Landscape)   You are welcome to print out and distribute this around […]
    The joint cybersecurity advisory includes the 15 most exploited vulnerabilities reported in 2021… An article review.  While a lot of attention is focused on previously undisclosed or “zero day” attacks, some of the most likely attack vectors are vulnerabilities that have been widely known for weeks or even months.  That’s according to a new joint […]