picture of padlock
Banks must do better to protect customer data, says the FSA

Banks still oblivious to fraud risks, says FSA

Watchdog unveils slack conduct of financial services industry towards data security

Written by Angelica Mari

The Financial Services Authority (FSA) urged financial institutions to improve security systems after a review exposed the fact that many companies underestimate the value of their customer’s information.

The FSA assessed the systems and controls at 39 UK firms including banks and building societies, as well as insurance companies and financial advisers, many of which still do not realise the dangers surrounding the exposure of client data.

Businesses are not checking if third-party suppliers vet their employees or have adequate security arrangements in place to prevent unnecessary access to customer data, it said.

Training was also an issue, with businesses placing more emphasis on IT control procedures for data protection than on security awareness and education for their workforce, said the FSA review.

"It is worrying that despite increased public awareness of the impact that identity theft can have on customers, many firms are still not taking this risk seriously,” said FSA’s director of financial crime and intelligence division Philip Robinson.

“Customers have a right to be confident that firms are doing everything reasonably possible to keep their personal and financial details safe,” said Robinson.

"Some firms have made progress by adopting good practice while others need to do more in this area to ensure that they are treating their customers fairly,” he said.

Understanding areas of data exposure is a practical challenge for many financial services organisations, said Deloitte’s head of UK security and privacy services Mike Maddison.

“A common challenge for companies is having a complete view of their exposure to the risk of data compromise,” said Maddison.

“Many firms struggle to define what their sensitive data actually is and where that data resides or who it is provided to. They also struggle to co-ordinate management of these risks, which are owned by different parts of the business,” he said.

“The FSA recommendation to appoint a senior manager with overall responsibility for data security, in conjunction with the publication of more information to help management understand their responsibilities, will go some way towards addressing this.”

reader comments

related articles

Picture of a credit card

Online card fraud more extensive than reported

Original APACS figures for 2007 did not include failed attempts, says the BBC 23 Apr 2008

 

Privacy watchdog to get new powers

Office will be given ability to spot check central government 22 Apr 2008

PayPal to block old browsers

Payment service will warn and block old browsers as part of attempts to stop phishing attacks 21 Apr 2008

eBay welcomes alleged cyber criminal's arrest

Romanian stands accused of defrauding eBay users by accessing administrative accounts 18 Apr 2008

Hacking ring nabbed by US authorities

11 charged with biggest ID theft in history 06 Aug 2008

Deloitte urges government action on cyber security

New report stresses need for leadership and accountability 06 May 2009

Researchers hunt for ethical technologies

The two-year study called Ethical Issues of Emerging ICT Applications (ETICA), coordinated by De Montfort University Leicester (DMU) aims to help researchers identify new technologies that could become as famous as Facebook and Twitter 15 Apr 2009

related whitepapers

today's top stories

How to maximise the value of your IT networking investment

A panel of experts discuss networking strategies that deliver real value to business 03 Jul 2009

Habitat gets a web site makeover

The furniture retailer is revamping its online presence to provide a fully transactional web site. CIO Jacques Dekock explains why 02 Jul 2009

Government aims to bolster UK's cyber defences

Is the UK’s first national cyber security strategy up to the task of co-ordinating the country’s response to digital threats? Computing investigates 02 Jul 2009

Focus resources on what really matters

IT has become too caught up in the drive for efficiency, at the expense of business success 02 Jul 2009

From tracks man to tax man

Phil Pavitt, outgoing chief information officer for Transport for London, talks to Rosalie Marshall about the lessons he will take to his new role at HMRC 02 Jul 2009

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

More available - click 'submit' to view

Existing User

Newsletter user login:

Advertisement

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Would you use social networking sites to look for a job?

Would you use social networking sites to look for a job?

Tell us what you think about job hunting through LinkedIn, Facebook, Twitter etc

View poll results

Latest audio and video articles

network cablesVideo

How to maximise the value of your IT networking investment

A panel of experts discuss networking strategies that deliver real value to business 03 Jul 2009

green footprintsVideo

How to manage enterprise energy use - and the role IT can play

A panel of experts explore how firms can get to grips with their carbon footprint and make smarter use of energy 01 Jul 2009

Latest in-depth articles

Phil PavittAnalysis

From tracks man to tax man

Phil Pavitt, outgoing chief information officer for Transport for London, talks to Rosalie Marshall about the lessons he will take to his new role at HMRC 02 Jul 2009

UPS worker making a deliveryAnalysis

Global standardisation delivers benefits at UPS

Delivery giant sees benefits of central IT solution 02 Jul 2009

Advertisement

Primary Navigation