Personnel Today
  • Home
    • All PT content
  • Email sign-up
  • Topics
    • HR Practice
    • Employee relations
    • Learning & training
    • Pay & benefits
    • Wellbeing
    • Recruitment & retention
    • HR strategy
    • HR Tech
    • The HR profession
    • Global
    • All HR topics
  • Legal
    • Case law
    • Commentary
    • Flexible working
    • Legal timetable
    • Maternity & paternity
    • Shared parental leave
    • Redundancy
    • TUPE
    • Disciplinary and grievances
    • Employer’s guides
  • AWARDS
    • Personnel Today Awards
    • The RAD Awards
  • Jobs
    • Find a job
    • Jobs by email
    • Careers advice
    • Post a job
  • Brightmine
    • Learn more
    • Products
    • Free trial
    • Request a quote
  • Webinars
  • Advertise
  • OHW+

Personnel Today

Register
Log in
Personnel Today
  • Home
    • All PT content
  • Email sign-up
  • Topics
    • HR Practice
    • Employee relations
    • Learning & training
    • Pay & benefits
    • Wellbeing
    • Recruitment & retention
    • HR strategy
    • HR Tech
    • The HR profession
    • Global
    • All HR topics
  • Legal
    • Case law
    • Commentary
    • Flexible working
    • Legal timetable
    • Maternity & paternity
    • Shared parental leave
    • Redundancy
    • TUPE
    • Disciplinary and grievances
    • Employer’s guides
  • AWARDS
    • Personnel Today Awards
    • The RAD Awards
  • Jobs
    • Find a job
    • Jobs by email
    • Careers advice
    • Post a job
  • Brightmine
    • Learn more
    • Products
    • Free trial
    • Request a quote
  • Webinars
  • Advertise
  • OHW+

Personnel Today

Surviving a systems security breach

by Personnel Today 5 Feb 2002
by Personnel Today 5 Feb 2002

Having
effective software and monitoring in place, as well as a planned response to a
security breach are vital to protecting your company. Keith Rodgers reports

Security
experts advise organisations to plan well in advance for attacks by hackers and
unauthorised access incidents. But users face one big problem – they won’t
necessarily know they have been a victim of a security breach even after the
event.

Many
amateur hackers take pleasure in boasting about their exploits, often leaving
digital graffiti on websites. But the greatest risk comes not from
mischief-makers, but from malicious attacks and attempts to grab information
for gain.

In
these instances, the quality of the organisation’s monitoring software is
vital. It will determine whether the system administrator is even aware
security has been compromised. By building in alerts that warn of changes to
key data and attempted access, organisations can monitor user behaviour and
establish when an intrusion has occurred.

Experts
agree that reacting to attacks will mostly be dictated by effective planning.
Monitoring doesn’t just indicate an intrusion has taken place, for example – it
is essential to allow organisations to work out how extensive an attack has
been.

Simon
Owen, a partner in Andersen’s technology risk department, warns that one of the
most expensive elements of security is finding out exactly what occurred,
before the damage can even start to be repaired. If adequate monitoring wasn’t
in place, that process can be extensive.

Once
an alarm has been triggered, argues Mark Frear, head of enterprise portals at
SAP UK, it is critical to escalate the search. There has to be a clear
reporting path, mapped out in advance.

In
practical terms, most organisations will seek to establish how the security
system was breached as quickly as possible. It will act to prevent further
incidents, even if it  means taking some
systems offline. Establishing whether data has been compromised and
confidential information lost is also a clear priority. Again, those
organisations that planned for potential disasters by installing data back-up
facilities are the most likely to recover fast.

But
as Owen points out, problems don’t stop there. Dealing with the media may
become an issue for large organisations. Internal communications are essential
for all companies, particularly if individual privacy has been compromised.

Violations
could also have legal implications, especially in the UK where the Data
Protection Act and EU directive on privacy are hot topics. For regulated
industries such as financial services, explaining the nature of the attack and
the extent of any damage to the relevant authorities will be a time-consuming
and potentially costly exercise.

Most
organisations prefer to keep information about attacks under wraps, but vendors
argue organisations should make every effort to establish the source of the
hacking rather than focusing exclusively on remedying the problems.

Sign up to our weekly round-up of HR news and guidance

Receive the Personnel Today Direct e-newsletter every Wednesday

OptOut
This field is for validation purposes and should be left unchanged.

Mike
Richards, CEO of Snowdrop Systems, recommends that organisations hire
specialists to track down the intruders – at least to establish how they gained
entry. It may also pave the way for future legal action.

For
the HR department, the custodian of some of the most confidential information
within an organisation, the message is clear: the speed in which an
organisation can recover from an attack largely correlates to how much ground
it has prepared in advance. That requires HR to work closely with IT to
establish what procedures need to be put in place.

Personnel Today

Personnel Today articles are written by an expert team of award-winning journalists who have been covering HR and L&D for many years. Some of our content is attributed to "Personnel Today" for a number of reasons, including: when numerous authors are associated with writing or editing a piece; or when the author is unknown (particularly for older articles).

previous post
SWT accuses RMT of ‘cynical disregard’ of passengers
next post
Compulsory arbitration is needed says SWT

You may also like

Forward features list 2025 – submitting content to...

23 Nov 2024

Features list 2021 – submitting content to Personnel...

1 Sep 2020

Large firms have no plans to bring all...

26 Aug 2020

A typical work-from-home lunch: crisps

24 Aug 2020

Occupational health on the coronavirus frontline – ‘I...

21 Aug 2020

Occupational Health & Wellbeing research round-up: August 2020

7 Aug 2020

Acas: Redundancy related enquiries surge 160%

5 Aug 2020

Coronavirus: lockdown ‘phase two’ may bring added headaches...

17 Jul 2020

Unemployment to top 4 million as workers come...

15 Jul 2020

Over 1,000 UK redundancies expected at G4S Cash...

14 Jul 2020

  • 2025 Employee Communications Report PROMOTED | HR and leadership...Read more
  • The Majority of Employees Have Their Eyes on Their Next Move PROMOTED | A staggering 65%...Read more
  • Prioritising performance management: Strategies for success (webinar) WEBINAR | In today’s fast-paced...Read more
  • Self-Leadership: The Key to Successful Organisations PROMOTED | Eletive is helping businesses...Read more
  • Retaining Female Talent: Four Ways to Reduce Workplace Drop Out PROMOTED | International Women’s Day...Read more

Personnel Today Jobs
 

Search Jobs

PERSONNEL TODAY

About us
Contact us
Browse all HR topics
Email newsletters
Content feeds
Cookies policy
Privacy policy
Terms and conditions

JOBS

Personnel Today Jobs
Post a job
Why advertise with us?

EVENTS & PRODUCTS

The Personnel Today Awards
The RAD Awards
Employee Benefits
Forum for Expatriate Management
OHW+
Whatmedia

ADVERTISING & PR

Advertising opportunities
Features list 2025

  • Facebook
  • Twitter
  • Instagram
  • Linkedin


© 2011 - 2025 DVV Media International Ltd

Personnel Today
  • Home
    • All PT content
  • Email sign-up
  • Topics
    • HR Practice
    • Employee relations
    • Learning & training
    • Pay & benefits
    • Wellbeing
    • Recruitment & retention
    • HR strategy
    • HR Tech
    • The HR profession
    • Global
    • All HR topics
  • Legal
    • Case law
    • Commentary
    • Flexible working
    • Legal timetable
    • Maternity & paternity
    • Shared parental leave
    • Redundancy
    • TUPE
    • Disciplinary and grievances
    • Employer’s guides
  • AWARDS
    • Personnel Today Awards
    • The RAD Awards
  • Jobs
    • Find a job
    • Jobs by email
    • Careers advice
    • Post a job
  • Brightmine
    • Learn more
    • Products
    • Free trial
    • Request a quote
  • Webinars
  • Advertise
  • OHW+