Build Scotland Construction Directory
Time and date
CONSTRUCTION DIRECTORY
Share this page
Construction News
25/10/2022

ICO: 'Complacency Greater Risk Than Hackers'

Construction News Image
The Information Commissioner's Office (ICO) has warned that complacency is a bigger risk than hackers as UK construction giant Interserve is issued a fine of £4.4 million following a data breach,

The ICO has warned that companies are leaving themselves open to cyber attack by ignoring crucial measures like updating software and training staff.

Berkshire-based construction company, Interserve Group, was fined for failing to keep personal information of its staff secure – a breach of data protection law.

The ICO found that the company failed to put appropriate security measures in place to prevent a cyber attack, which enabled hackers to access the personal data of up to 113,000 employees through a phishing email.

The compromised data included personal information such as contact details, national insurance numbers, and bank account details, as well as special category data including ethnic origin, religion, details of any disabilities, sexual orientation, and health information.

John Edwards, UK Information Commissioner, said: "The biggest cyber risk businesses face is not from hackers outside of their company, but from complacency within their company. If your business doesn't regularly monitor for suspicious activity in its systems and fails to act on warnings, or doesn't update software and fails to provide training to staff, you can expect a similar fine from my office.

-- Advertisement --
NorthernAsbestosServicesLtd

"Leaving the door open to cyber attackers is never acceptable, especially when dealing with people's most sensitive information. This data breach had the potential to cause real harm to Interserve's staff, as it left them vulnerable to the possibility of identity theft and financial fraud.

"Cyber attacks are a global concern, and businesses around the world need to take steps to guard against complacency. The ICO and NCSC already work together to offer advice and support to businesses, and this week I will be meeting with regulators from around the world, to work towards consistent international cyber guidance so that people's data is protected wherever a company is based."

• Details of the Interserve data breach

An Interserve employee forwarded a phishing email, which was not quarantined or blocked by the Interserve's system, to another employee who opened it and downloaded its content. This resulted in the installation of malware onto the employee's workstation.

The company's anti-virus quarantined the malware and sent an alert, but Interserve failed to thoroughly investigate the suspicious activity. If they had done so, Interserve would have found that the attacker still had access to the company's systems.

The attacker subsequently compromised 283 systems and 16 accounts, as well as uninstalling the company's anti-virus solution. Personal data of up to 113,000 current and former employees was encrypted and rendered unavailable.

The ICO investigation found that Interserve failed to follow-up on the original alert of a suspicious activity, used outdated software systems and protocols, and had a lack of adequate staff training and insufficient risk assessments, which ultimately left them vulnerable to a cyber attack.

Interserve broke data protection law by failing to put appropriate technical and organisational measures in place to prevent the unauthorised access of people's information.

The ICO issued Interserve with a 'notice of intent' - a legal document that precedes a potential fine. The provisional fine amount was set at £4.4million. Having carefully considered representations from Interserve, no reductions were made to the final fine amount.

Latest Construction News

15/11/2024

A major milestone has been reached in the UK's transition to a greener energy future. Ofgem has approved the Eastern Green Link 1 project, a £2.5 billion investment that will see the installation of a 196km subsea electricity cable between Scotland and England. The project, a joint venture between ...
15/11/2024

Falkirk Council has secured a £100 million Growth Deal that is expected to create 1,660 jobs and generate £628 million in economic benefits for the area. The Deal, signed by the UK and Scottish Governments, will fund 11 projects, including: • A Carbon Dioxide Utilisation Centre • A Bioeconomy ...
15/11/2024

The Scottish Plant Owners Association (SPOA) has raised concerns that the measures announced in the Autumn Budget could lead to the demise of the plant hire industry in Scotland. The association argues that the increased tax burden and other economic pressures will have a significant negative ...
15/11/2024

Maxi Construction has been awarded a £1.6 million contract by The City of Edinburgh Council to replace the Reinforced Autoclaved Aerated Concrete (RAAC) roof at Pentland Primary School. The phased project will involve the removal of existing roof coverings and ceilings, the replacement of RAAC ...
15/11/2024

Clark Contracts has been awarded a contract to retrofit Scotland's National Retrofit Centre at BE-ST's Innovation Campus. The project aims to transform the building into a living laboratory, showcasing best practices in non-domestic retrofit.  The ambitious project will involve a range of ...
15/11/2024

The Scottish Government has announced plans to bypass the villages of Springholm and Crocketford on the A75, a key route linking Scotland to Ireland. Jacobs UK Ltd has been awarded a contract to undertake initial design and assessment work for the bypass. The project is funded by the UK ...
15/11/2024

Dundee City Council has secured a £693,383 grant from the Scottish Government's Recycling Improvement Fund to upgrade its recycling facilities at Baldovie and Riverside. The funding will be used to purchase new waste management equipment, such as roll packers and compactors, to improve efficiency ...
15/11/2024

Homes for Good and Glasgow Credit Union have formed a partnership to address housing inequality in Glasgow and neighbouring areas. Glasgow Credit Union has provided a £2.4 million loan to Homes for Good, which will be used to purchase up to 35 homes for low-income individuals and families. The ...
15/11/2024

The historic Troon station has reopened following a £5m restoration project. The station was extensively damaged by a fire in 2021. Network Rail, in partnership with AmcoGiffen and CPMS, undertook the rebuild, which included the restoration of the station's iconic façade while incorporating modern ...
15/11/2024

BEAR Scotland, on behalf of Transport Scotland, is undertaking emergency works on the A828 between Ledaig and Benderloch to address a safety concern related to a deteriorating rock face. Recent monitoring has identified a fractured rock mass 60 metres above the road, requiring urgent attention. To ...
RBT Underfloor LimitedMorris & Spottiswood LtdSEEIT3DCF Concrete PumpingMaccaferri LtdSMS Alba LimitedDiscount Kitchens and Bathrooms LtdShopfronts ScotlandJSJ Foam Insulation LtdEarth Tech LPS LTD
Terms and Conditions
2024/11/16 05:57:36