Retailers lagging behind in security

New Deloitte survey shows consumer businesses are still implementing PCI

Written by Phil Muncaster

Retail is lagging behind other sectors in the maturity of its information security function, despite high awareness about data protection issues among IT leaders, according to the latest report from consultancy Deloitte released today.

The Taking Stock: Consumer Business Security Survey surveyed IT leaders and chief security officers from consumer goods and retail firms and found 73 per cent rated "unauthorised access to personal information" as the top privacy and reputational concern.

But despite this, only 20 percent of respondents said they have a formally defined information security strategy, compared to the 54 per cent reported in Deloitte's 2007 Technology Media & Telecommunications Security Survey and 63 per cent reported in Deloitte's 2007 Global Financial Services Security Survey.

Only 13 per cent of consumer businesses said they had performed an inventory of personal and cardholder data. In addition, 40 per cent of respondents said they had had written privacy, fair information practices or data collection policies in place and only 13 per cent have a programme for managing privacy compliance.

However, many firms are still in the delivery phase of their Payment Card Industry (PCI) standard implementations, which might account for the lack of formal security policies to protect data, according to Deloitte's consumer business partner, Andy Morris.

"Overall I think it's fair to say there's a long way to go in terms of the maturity of security in the industry," he added. "But some drivers like PCI are encouraging organisations to change and improve and in 12 months things will look a lot more positive."

However, Morris expressed surprise over the lack of security due diligence consumer businesses seem to show before taking on an outsourcing contract. Only 36 per cent said they conduct an independent review of vendors before engaging them, according to the research.

Tags:

reader comments

related articles

high street

Consumers trust big name brands online

New research shows that firms must display security measures more clearly on their sites 30 Jan 2008

 

Christmas cracker for e-commerce

New research shows 15 pence in every pound now spent online 18 Jan 2008

Online shopping continues to gather pace

New results find November is peak time for holiday sales 20 Dec 2007

New trusted web site scheme launches

EC's Howard tool could prevent consumer e-commerce losses 27 Nov 2007

McAfee predicts 2008's worst security threats

Social sites likely to be big targets for cyber criminals 16 Nov 2007

Consumer business lacks IT security strategy

Deloitte survey shows that 80% of companies in consumer business have no formal information security strategy in place 01 Feb 2008

Retailers have poor security

Firms may not be in compliance with payment card and data protection legislation, says Deloitte 01 Feb 2008

Infosec: Reputation driving information security

Security is now everyone's problem 23 Apr 2008

related whitepapers

today's top stories

IT's stock is soaring at the LSE

London Stock Exchange IT chief David Lester explains to Angelica Mari how the integration of Borsa Italiana is keeping his team busy, despite the worsening economy 20 Nov 2008

Keeping IT in fashion

John Bovill has been hooked on retail since his early years as a fashion market trader. His industry knowledge is now helping him build a slick IT operation, reports Charlotte Moore 20 Nov 2008

Cutting-edge IT delivers the goods

Chief technology officer Jay Bregman explains how constant innovation is part and parcel of his strategy for delivering competitive advantage at eCourier 20 Nov 2008

Computing podcast: Europol's data sharing woes; credit card protection at Cotton Traders

The pan-European fight against organised crime is undermined by lax data sharing arrangements; and Cotton Traders enhances its credit card protection 20 Nov 2008

Keeping IT on track

Catherine Doran, winner of Computing’s IT Leader of the Year award, tells Angelica Mari of her determination to drive on with technology-led transformation at Network Rail despite uncertainty over funding 19 Nov 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Advertisement

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Will attempts to rebrand IT as a "cool" choice of profession increase the number of IT graduates?

Will attempts to rebrand IT as a "cool" choice of profession increase the number of IT graduates?

Can brand building reverse a decline in IT graduate numbers?

Previous poll results

Latest audio and video articles

Video

The definitive guide to converged communications

Five key trends and five best practice tips to help you improve your corporate communications 20 Nov 2008

PodcastAudio

Computing podcast: Europol's data sharing woes; credit card protection at Cotton Traders

The pan-European fight against organised crime is undermined by lax data sharing arrangements; and Cotton Traders enhances its credit card protection 20 Nov 2008

Latest in-depth articles

StarFeatures

Retaining the stars of IT

Jim Mortleman investigates the innovative techniques IT leaders are using to hang on to their star performers 20 Nov 2008

Dave BaileyComment

Clouds darken outlook for Vista's successor

Windows 7 looks like being an improvement on Vista, but economic and environmental concerns may mean few enterprises will rush to adopt it 20 Nov 2008

Advertisement

Primary Navigation