Morrisons – The Insider Threat

In 2014 Morrisons suffered a serious data breach when the payroll data of nearly 100,000 employees (including names, addresses, dates of birth, national insurance numbers and bank details) were posted online.

A recent Court of Appeal case dismissed an appeal against an earlier ruling that the supermarket Morrisons was liable for its employees’ misuse of data. Previously in 2015 a former Morrisons employee had been convicted of leaking employee payroll records.

The case reinforces the importance of safeguarding data within an organisation, not only from external threats but also insiders. The insider threat refers to employees who either deliberately or accidentally pose a threat to the confidentiality, integrity or availability of an organisation’s data. The outcome has significant implications for all data controllers and data processors.

Duncan Newell

Duncan is a technology professional with over 20 years experience of working in various IT roles. He has a interest in cyber security, and has a wide range of other skills in radio, electronics and telecommunications.

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

%d bloggers like this: