HOW DOES THIS APPLY TO YOU?
Is your company making sure its data is safe? Do you know who has access to what files? Nearly 85% of all business class copiers/MFP's are acquired through a lease and at the end of the term (but in most cases prior) you, your current vendor, or a new vendor return the equipment to a leasing company. Most customers and vendors today do not have a formal process in place that ensures the hard drives are wiped of any sensitive or confidential information.
CBS News investigated the issue of digital copier security and found stunning results. During their investigation, they uncovered that it only took 30 minutes to pull the hard drives out of the copiers. Then, using a forensic software program available for free on the Internet, a scan was done – downloading tens of thousands of documents in less than 12 hours.
Excerpt from CBS "It wasn't until hitting 'print' on the fourth machine, from Affinity Health Plan, a New York insurance company, that we obtained the most disturbing documents: 300 pages of individual medical records. They included everything from drug prescriptions, to blood test results, to a cancer diagnosis. A potentially serious breach of federal privacy law. "You're talking about potentially ruining someone's life," said Ira Winkler. "Where they could suffer serious social repercussions." Winkler is a former analyst for the National Security Agency and a leading expert on digital security. "You have to take some basic responsibility and know that these copiers are actually computers that need to be cleaned up," Winkler said.
TAKE ACTION
What choices do you have? Most office equipment suppliers and manufacturers will tell you that their copiers/MFP's come with accessories such as "hard drive encryption" kits. But this is a shallow response and does not insure a real process to protect data AFTER your lease has ended and equipment returned. What your current or future supplier must do is PROACTIVELY inform you of a process they have in place that erases the hard drive and verifies that your data has been removed. This is simple and in most cases, a process that carries no additional cost. contact us about this procedure.
|