Bad timing: JC Penney CEO talks IT security on eve of data breach reports
That's what Mike Ullman, the Chairman and CEO of JC Penney Company must be thinking today as he reads news reports that credit card data on 650,000 of his company's customers (and possibly those of other retailers) has gone missing.
GE Money, which handles JC Penney's credit card data says that a backup tape stored at an Iron Mountain warehouse went missing back in October. According to this report, it went missing and hasn't been seen since.
Ironically, as the breach was first being reported, I was in San Francisco's Metreon, watching a slick documentary movie, called The New Face of Cybercrime, done by Fortify Software. In the movie, Ullman speaks at length about how important security was to his company. It's cool to see a CEO talking about IT security, but talk about bad timing.
You can see a clip of it here. Ullman talks at 0:37, saying, "It is clear that there are people trying to take advantage of mistakes that may have been made in the code by finding a way through the firewall into our information."
I wonder if anyone is trying to take advantage of the mistakes that may have been made by their partners?
UPDATE
I just filed a story on this breach, and J.C. Penney is one of 230 retailers affected ("230 Retailers Affected by Data Breach after Tape Lost"). Their accounts represent just a tiny fraction of all that have been compromised. They just had some bad luck here. Apparently, the AP reporter who broke the story was tipped off by a JC Penney customer.
--Robert McMillan
Transition Confidently to the Cloud
Thanks to cloud computing, your business data is everywhere and being accessed by everyone. Making the wrong decision to protect your data can result in high costs, increased risk and executive exposure. View this live webinar on cloud security and the evolving data center, and learn why a data-centric approach to security is the best bet for today's virtual environment.
Magic Quadrant for Enterprise Information Archiving
Gartner evaluates vendors offering products and services that provide archiving for email, files and other content types.
Recent Comments
- Enterprise File Sharing: All You Need to Know
- Forrester Research and EMC on Continuous Availability
- Big Ideas; Big Tech-Continuous Availability for VMware
- Reduce Costs, Maximize Performance and Ensure High Availability of your Business Critical Applications
- Security Analytics Video
- B2B Integration on Cloud: Real World Solutions and Technology Advances

