Institutions Face Bewildering Web of Breach Notification Statutes: GAO Report
The latest disclosure of a data breach involving financial information points up the need for a comprehensive response program, including complying with federal and state notification laws. Fidelity National Information Services revealed in July that a former employee of its Certegy check processing unit stole consumer information and sold it to a data broker, who in turn sold it to several direct marketing organizations. The incident didn’t involve any intrusion into Certegy’s information systems.