« MySpace: John McCain's Page Defaced In Support of Gay Marriage | Main | I'm Outraged and Why You Should Be Also: $250 Million Valued IT Security Contract Fraud and Abuse by U.S. Department of Veterans Affairs »

March 29, 2007

NYSE:TJX -- 46 Million Credit Cards Stolen - Security Breach, Part 3

I've already commented twice on this blog on the TJX Companies, Inc. (NYSE: TJX) data security breach. 

What is alarming is the fact that now TJX is letting the public know that potentially over 46 million credit card numbers may have been compromised over a time period of 18 months.  What is even more alarming is the fact that TJX readily admits they may never be able to provide a full and complete number of the total number of credit cards compromised.

That's a candid admission, one I'm sure is not easy in this day and age of rampant litigation.  However as a former Chief Information Security Officer (CISO), I'm grateful that TJX has the courage to be an honest corporate citizen in admitting their errors publicly and taking very public steps to correct  their technical IT security deficiencies. 

It takes real honesty to make such admissions.  While most companies would be running for cover wishing the news story to go away, TJX has been candid with details on their investigation and corrective steps to ensure this never happens again within their organization. 

To TJX:  Thanks for being honest about your mistakes. May your experience serve as a lesson to other companies and organizations.

To Business Owners and Executives:  Please learn from the TJX's experience.  Make information security a critical business issue and top priority in your organizations.


CNN - T. J. Maxx owner: 46M card numbers stolen

http://money.cnn.com/2007/03/29/news/companies/tjx/index.htm?cnn=yes

Comments

Post a comment

Comments are moderated, and will not appear on this weblog until the author has approved them.