BreachExchange mailing list archives

Re: ID: INL employees may be ID theft victims


From: Jeffrey Walton <noloader () gmail com>
Date: Sat, 7 Mar 2009 12:39:42 -0500

that an encoded disc containing personal data
from the employees was either lost or stolen in
transit via United Parcel Service.
This rasies interesting issues. Suppose an entity is complying with
all legislation (Privacy Act, FERPA, HIPPA, and the like). Is the
organization culpable for a data loss in the carrier? Or should the
carrier be held responsible for the data loss (and be required to
report the loss according to breach laws).

On 3/7/09, lyger <lyger () attrition org> wrote:

http://www.islandparknews.net/atf.php?sid=6033&current_edition=2009-03-06

The many retired and working Idaho National Laboratory (INL) employees
living here full and part-time should be on the alert for a possible
identify theft situation.

Idaho.s Congressional Delegation this week announced a potential identity
theft threat involving information from 59,000 present and former workers
at the Idaho National Laboratory at Idaho Falls. DOE notified delegation
members that an encoded disc containing personal data from the employees
was either lost or stolen in transit via United Parcel Service. The
package, originally shipped from New York to Maryland, was found damaged.
The delegation is calling on the Department of Energy (DOE) for improved
security measures regarding employees.

[...]

_______________________________________________
Dataloss Mailing List (dataloss () datalossdb org)

CREDANT Technologies, a leader in data security, offers advanced data encryption solutions.
Protect sensitive data on desktops, laptops, smartphones and USB sticks transparently 
across your enterprise to ensure regulatory compliance.
http://www.credant.com/stopdataloss


Current thread: