Mortgage firm exposes 15,000 customers' account details
Redstone Mortgages has breached the Data Protection Act by accidentally revealing 15,333 customers’ account details.
The Information Commissioner’s Office says the breach occured when personal information relating to 15,333 mortgage accounts was emailed to a member of the public by mistake.
The information, which included personal data relating to individuals’ arrears or possession proceedings, was sent to Redstone’s head office and several other recipients as part of a monthly analysis report. It was not encrypted or password protected and was initially intended for a consultant using a private email address. Instead, the information was sent to a member of the public who had a similar email address.
Redstone Mortgages chief executive officer David Lautier has now signed an undertaking to ensure that all reports containing personal information will be suitably password protected before being emailed externally.
The undertaking also requires Redstone Mortgages to implement other security measures as it deems appropriate to ensure that personal data is protected against unauthorised access.
ICO head of enforcement and investigations Sally-anne Poole says: “It is essential that the right procedure is followed and care is taken when sending out emails of this nature.
“If personal information falls into the wrong hands, individuals could experience considerable distress. It appears that this method of sending out reports containing personal information has been common practice within the company for a while.
“I am pleased that Redstone Mortgages has agreed to take remedial steps to safeguard personal information and prevent a similar incident happening again.”
If you enjoyed this article, sign up here to receive daily email updates from Money Marketing and Follow @_moneymarketing





Readers' comments (1)
Anonymous | 24 Feb 2010 3:27 pm
So what action was taken against the FSA when they did exactly the same by failing to use BCC on their maulshot to IFA' and as a result revealed details of hundreds of IFA's in breach of the Data Protection Act?
IN CASE YOU STRUGGLE WITH THE ANSWERS TO THIS QUESTION SCROLL DOWN FOR THE ANSWER!
THE ANSWER IS -
NO ACTION AT ALL!
FSA MOTO - DO AS I SAY NOT AS I DO!
Unsuitable or offensive? Report this comment