GRC Certification GRC Certification
GRC Certification
GRC Certification
GRC Certification
GRC Certification
GRC Certification
Request PDF Excel

ISO 27001 Integration with PCI Compliance research paper


 2015 Security Breach Matrix - For Educational Purposes Only
  
Request PDF Excel
GRC Certification
PUBLIC NOTIFIED ON
ORGANIZATION AND LOCATION
TYPE OF BREACH
NUMBER OF PERSONALLY IDENTIFIABLE INFORMATION (PII) POTENTIALLY EXPOSED
REGULATORY IMPACT
ISO/IEC 27001 MITIGATING CONTROLS
December 31, 2015 Cyberoam India Account Access 1,000,000 The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 31, 2015 Kicky Pants United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 31, 2015 Pittman Family Dental United States Identity Theft 8,830 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 31, 2015 Regional Income Tax Agency United States Identity Theft 50,000 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 30, 2015 AVG Netherlands Identity Theft Unknown EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 30, 2015 BJC Healthcare Accountable Care Organization (ACO) United States Identity Theft 2,393 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 30, 2015 Drjizz United States Account Access 30,263 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 30, 2015 Japan Health, Labor and Welfare Ministry Japan Nuisance 103,000 Japan Privacy Act A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 30, 2015 Louisiana Healthcare Connections United States Identity Theft 13,000 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 30, 2015 Malaysian Certificate of Education Malaysia Identity Theft 300,000 Malaysia Personal Data Protection Act 2010 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 30, 2015 University of Connecticut United States Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 30, 2015 Vail Valley Medical Center (VVMC) United States Identity Theft 3,118 California SB-1386 & other State derivatives, HIPAA Security  A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights           A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 30, 2015 Valley Hope Association United States Identity Theft 52,076 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 30, 2015 Vancouver Radiologists United States Identity Theft 603 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 30, 2015 Wallys Wine and Spirits United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 29, 2015 China Shanshui Cement Group China Existential Data Unknown Hong Kong Personal Data (Privacy) Ordinance (Cap. 486) A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 29, 2015 Dance Moms stars United States Financial Access 6 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 29, 2015 Sterling National Bank United States Financial Access Unknown California SB-1386 & other State derivatives, GLBA, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 29, 2015 Tri-City Medical Center United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 28, 2015 Dr Michael Benjamin United States Identity Theft 1,300 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 28, 2015 Missile-Defense Program Israel Existential Data Unknown The protection of Privacy Law 1981 A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 28, 2015 Oregon Department of Veterans United States Identity Theft 947 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
December 28, 2015 Quincy Credit Union United States Financial Access 675 California SB-1386 & other State derivatives, PCI/Visa CISP A.11.2.6 - Security of equipment and assets                                                                                                                                                                                                                                                                            A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions  
December 28, 2015 United State Voters United States Identity Theft 191,337,174 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 28, 2015 University of California/Berkeley Financial System United States Identity Theft 80,000 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 27, 2015 Beneficial Bank United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.2.6 - Security of equipment and assets                                                                                                                                                                                                                                                                            A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions  
December 27, 2015 Hokkaido University Japan Identity Theft 112,600 Japan Privacy Act A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 27, 2015 RBC Royal Bank United States Financial Access 2,000 California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 27, 2015 Turkey Gov Turkey Identity Theft 2,000 Turkish Data Protection Law A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 26, 2015 Cottonwood Comfort Dental United States Identity Theft 200 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 26, 2015 Minneapolis City Council member United States Nuisance Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 26, 2015 Neiman Marcus Group United States Account Access 5,200 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 25, 2015 AllMed/Central Alabama Primary Care Specialists United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 25, 2015 Asia Pacific Telecommunity China Account Access 267 Hong Kong Personal Data (Privacy) Ordinance (Cap. 486) A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 25, 2015 RealSelf United States Account Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 25, 2015 Santa Global Enterprises/ Global Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 25, 2015 Steam/Valve United States Account Access 34,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 24, 2015 BeautifulPeople.com United States Identity Theft 1,100,000 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 24, 2015 Choice One Community Credit Union United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 24, 2015 RateMyProfessors United States Account Access Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 24, 2015 Sheehan Pipe Line and Construction Company United States Identity Theft Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 23, 2015 7 Eleven United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 23, 2015 Acclaim Technical Services United States Identity Theft Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 23, 2015 Alpine Vending United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 23, 2015 BitTorrent clients qTorrent and Deluge United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 23, 2015 Bowman Avenue Dam United States Existential Data Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 23, 2015 County of San Diego/Hewlett Packard Enterprise Services United States Identity Theft 620 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 23, 2015 Gyft United States Account Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 23, 2015 Hyatt Hotels United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 23, 2015 Livestream United States Account Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 23, 2015 Registry of Births, Deaths and Marriages Victoria Australia Identity Theft Unknown Australian Privacy Act 1988 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 23, 2015 ST Psychotherapy United States Identity Theft 500 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
December 23, 2015 WhiteGlove Health United States Identity Theft 975 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 22, 2015 Clarks Americas United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 22, 2015 Israel Army Israel Existential Data Unknown The protection of Privacy Law 1981 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 22, 2015 Oceans Acquisition United States Identity Theft 659 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 21, 2015 Idaho Gas Stations United States Financial Access 800 California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 21, 2015 Kean University United States Account Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 21, 2015 McFadden's Restaurant & Saloon United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 21, 2015 Miami VA Healthcare System United States Identity Theft 126 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
December 21, 2015 Radiology Regional Center/Lee County Solid Waste Division United States Identity Theft 483,063 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 21, 2015 Richardson & Company United States Identity Theft Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 20, 2015 Azerbaijani Ministry of Labour and Social protection and The Ministry of Emergency Situations Azerbaijan Existential Data Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 20, 2015 Hebden Kitchens and Bathrooms Australia Existential Data Unknown Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 20, 2015 SACE United Kingdom Identity Theft 23 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 20, 2015 Uncle Maddio's Pizza Joint United States Identity Theft 165,000 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 20, 2015 ZyphMartin.CDA Realtors, Dr. Culings, Energized Learning, Meadow Wood, Modern Drywall, OLP Contracting, Richardson's Garage, Studio Fit, and Ugly Fish. United States Identity Theft 248 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 19, 2015 Hello Kitty/Sanriotown United States Identity Theft 3,300,000 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 19, 2015 Workers' Compensation Board of Nova Scotia United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
December 18, 2015 888 Auto Corporation United States Identity Theft Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 18, 2015 SaskPower Canada Identity Theft 4,382 Canada PIPA & PIPEDA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 18, 2015 White Page/ Spark and Yellow carried out New Zealand Nuisance 2,000 New Zealand Privacy Act 1993 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 17, 2015 Adams County National Bank United Kingdom Financial Access Unknown UK Data Protection Act & EU Directive on Data Protection A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 17, 2015 Alliance Health United States Identity Theft 1,585,289 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 17, 2015 Blue Dolphin United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 17, 2015 Enterprise Rent-A-Car United Kingdom Identity Theft 28,000 UK Data Protection Act & EU Directive on Data Protection A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 17, 2015 Maidstone City United Kingdom Identity Theft 870 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 17, 2015 Montreal Police Canada Existential Data Unknown Canada PIPA & PIPEDA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 17, 2015 Optus/Freelancer/ ARC Mercantile Australia Identity Theft 31,500 Australian Privacy Act 1988 A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 17, 2015 Vancor Manor Nursing Home United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP & HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 16, 2015 Baja Bound Insurance Services United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 16, 2015 Royal Newfoundland Constabulary/RNC Canada Identity Theft 9 Canada PIPA & PIPEDA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 15, 2015 Arkansas Spine and Pain United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 15, 2015 Bargain Booze United Kingdom Financial Access Unknown UK Data Protection Act & EU Directive on Data Protection A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 15, 2015 Department of Human Services- Iowa United States Nuisance 425 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 15, 2015 Dr Laza Lazarevic Serbia Identity Theft 1 UK Data Protection Act & EU Directive on Data Protection A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 15, 2015 Hamilton Children's Aid Society Canada Identity Theft 1 Canada PIPA & PIPEDA A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
December 15, 2015 Landry's/Bubba Gump, Claim Jumper, McCormick & Schmick's, and Morton's/Chart House and Rainforest Cafe United Kingdom Financial Access Unknown UK Data Protection Act & EU Directive on Data Protection A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 15, 2015 Lifewellness Institute United States Identity Theft 2,473 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 15, 2015 Mobil United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 15, 2015 MongoDB United States Identity Theft 35,000 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 15, 2015 Rivers Casino United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 15, 2015 Safeway United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 15, 2015 Sakai Japan Identity Theft 680,000 Japan Privacy Act A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 15, 2015 Southern New Hampshire University (SNHU) United States Existential Data 140,000 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 15, 2015 Sudbury /Health Sciences North Canada Identity Theft 1 Canada PIPA & PIPEDA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 15, 2015 SunTrust Bank United States Financial Access 100 California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 15, 2015 Targrt United States Account Access Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 15, 2015 Vernon detachment United States Identity Theft Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 15, 2015 Virtue Center for Art & Technology United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 14, 2015 City of Providence's website United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 14, 2015 European Space Agency Europe Identity Theft 2,000 EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 14, 2015 Hzone Dating App for HIV-positive Singles United States Existential Data 4,926 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 14, 2015 Ifit/ NordicTrack/ ICON Health & Fitness United States Identity Theft 576,274 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 14, 2015 Jo-Mart and Sunoco United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 14, 2015 Kromtech United States Account Access 13,000,000 California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 14, 2015 MROStop United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 14, 2015 Ralston Business United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 14, 2015 Slingo United States Account Access 2,500,000 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 14, 2015 Sorrento Pacific Financial United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 14, 2015 U.S Army United States Account Access 160 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 13, 2015 TaxSlayer United States Account Access 8,800 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 13, 2015 TVNZ New Zealand Nuisance Unknown New Zealand Privacy Act 1993 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 12, 2015 Northwest Community Credit Union United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 12, 2015 Northwest Primary Care United States Identity Theft 5,372 California SB-1386 & other State derivatives, PCI/Visa CISP A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 12, 2015 Oak Hill Citgo Gas & Convenience United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 12, 2015 Sunshine Wellness Clinic/Miami-Dade School System United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 11, 2015 7 Eleven ATM United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 11, 2015 Burger King United States Financial Access 1,061 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 11, 2015 Dakota County Water Resources Department United States Identity Theft 5 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 11, 2015 Easily.co.uk/NetNames United Kingdom Nuisance Unknown UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 11, 2015 Lincolnshire City United States Identity Theft 1,600 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 11, 2015 Sam's Club United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 11, 2015 Superior Labels United States Financial Access 7,000 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 11, 2015 Tygervalley Restaurant South Africa Financial Access Unknown The Protection of Personal Information Act (POPIA) South Africa A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 11, 2015 WordPress United States Account Access 30,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 10, 2015 Department of Veterans Affairs Miami United States Identity Theft Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 10, 2015 North Atlanta Motors United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 10, 2015 Rockland Nissan Bank United Kingdom Financial Access Unknown UK Data Protection Act & EU Directive on Data Protection A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 9, 2015 Aerospace parts manufacturer FACC Global Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 9, 2015 Alba Botanica United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 9, 2015 Blue Shield of California United States Identity Theft 21,000 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 9, 2015 Borgess Rheumatology United States Identity Theft 700 California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 9, 2015 CardCrypt/Air Canada, the CN Tower,San Diego Zoo/ easyJet, AirAsia and Aer Lingus/Wandera/Chiltern Railways/CN Tower Global Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 9, 2015 Medfield City United States Nuisance 12,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 9, 2015 The Cheesecake Company United States Identity Theft 9 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 9, 2015 Thomas Nelson Community College United States Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 8, 2015 BPI Tuguegarao City Bank Philippines Financial Access Unknown Philippines Data Privacy Act of 2012 A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 8, 2015 Department of Administrative Services United States Identity Theft 60 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 8, 2015 eBAY United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 8, 2015 FDIC United States Identity Theft 10,000 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 8, 2015 Hellgate High School United States Identity Theft 1,100 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 8, 2015 Intellect Software Solutions India Existential Data Unknown The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 8, 2015 Itochu Corp Japan Identity Theft Unknown Japan Privacy Act A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 8, 2015 Nexus Mods United Kingdom Account Access 6,000,000 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 8, 2015 Ottawa County ATM United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 8, 2015 Petroleum Association of Japan Japan Identity Theft Unknown Japan Privacy Act A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 8, 2015 Physicians Health Plan of Northern Indiana United States Nuisance 1,708 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 8, 2015 Russian banks / MasterCard international payment Russia Financial Access 75 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 8, 2015 Seim Johnson United States Identity Theft 30,972 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 8, 2015 Shire Human Genetic Therapies United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
December 8, 2015 Tamiya Japan Identity Theft 107,000 Japan Privacy Act A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 8, 2015 Town of LaSalle United States Identity Theft 140 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 8, 2015 University of Tokyo Japan Identity Theft Unknown Japan Privacy Act A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 7, 2015 Antoni van Leeuwenhoek hospital Netherlands Identity Theft 781 EU Directive on Data Protection A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
December 7, 2015 Artrookie.co.uk United Kingdom Account Access 1,710 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 7, 2015 Chickencycles.co.uk United Kingdom Account Access 784 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 7, 2015 chromeplay.com United States Existential Data 9,723 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 7, 2015 Dating/marriage sites United States Account Access 2,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 7, 2015 Ecuador bank Ecuador Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 7, 2015 FHN Memorial Hospital United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 7, 2015 Horizon Lines/ Matson Navigation Company United States Identity Theft Unknown California SB-1386 & other State derivatives A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
December 7, 2015 Igcd.net United Kingdom Account Access 1,577 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 7, 2015 Killersites.com United States Account Access 1,596 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 7, 2015 Lexpublib.org United Kingdom Account Access 1,100 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 7, 2015 NatWest United Kingdom Financial Access 250 UK Data Protection Act & EU Directive on Data Protection A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 7, 2015 Pccongress.org.uk United Kingdom Account Access 586 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 7, 2015 Tampa International Airport United States Identity Theft 19 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 7, 2015 The-athenaeum United States Account Access 1,671 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 7, 2015 UC Health in Colorado United States Identity Theft 827 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 7, 2015 veterans contractor United States Identity Theft 80 California SB-1386 & other State derivatives A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
December 7, 2015 Wesnoth United States Account Access 6,580 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 6, 2015 Chateraise Co Japan Identity Theft 210,000 Japan Privacy Act A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 6, 2015 OHSU/Oregon Health & Science University United States Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 6, 2015 South Carolina Medicaid agency United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 5, 2015 North Island health New Zealand Identity Theft 70 New Zealand Privacy Act 1993 A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 5, 2015 Vixlet, Major League Baseball, ATP, and Slipknot United States Identity Theft 377,000 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 4, 2015 Blue Cross Blue Shield of Nebraska United States Identity Theft 1,872 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 4, 2015 Gretna Radio United States Identity Theft 20 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 4, 2015 Illinois Valley Podiatry Group United States Identity Theft 26,588 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 4, 2015 OkHello United States Identity Theft 2,627,082 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 4, 2015 Queen Elizabeth Hospital United Kingdom Identity Theft 7,000 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 4, 2015 Springfield Regional Medical Center/Community Hospital United States Identity Theft 200 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 4, 2015 WakeMed United States Identity Theft 158 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 4, 2015 Wetherspoon United Kingdom Identity Theft 656,723 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 3, 2015 Bizmatics United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 3, 2015 Calgary wine Canada Existential Data Unknown Canada PIPA & PIPEDA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 3, 2015 Community Hospital United States Identity Theft 4,200 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
December 3, 2015 Phillip Capital United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 3, 2015 Seki Co Japan Financial Access 267,000 Japan Privacy Act A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 2, 2015 General Optical Council United Kingdom Nuisance Unknown UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 2, 2015 Interxion Netherlands Account Access 23,200 EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 2, 2015 Nest Thermostats United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 2, 2015 Santa Barbara County Public Health Department United States Identity Theft 260 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 2, 2015 Wabash College United States Identity Theft 50 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 1, 2015 Adele Tour Global Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.7.2.1 - Classification guidelines
A.7.2.2 - Information labeling and handling     
A.8.2.2 - Information security awareness, education and training
December 1, 2015 Bridgeport home healthcare United States Identity Theft 1 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 1, 2015 Bureau of Meteorology Australia Existential Data Unknown Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 1, 2015 Centegra Health System/MedAssets United States Identity Theft 6,000 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 1, 2015 City of Oshawa Canada Identity Theft 18 Canada PIPA & PIPEDA A.7.2.1 - Classification guidelines
A.7.2.2 - Information labeling and handling     
A.8.2.2 - Information security awareness, education and training
December 1, 2015 LabCorp United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 1, 2015 Miners Germany Identity Theft Unknown EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 1, 2015 Ohio Medical Center United States Identity Theft 2,000 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
December 1, 2015 Roadrunner Wireless Internet Service United States Existential Data 320,000 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
December 1, 2015 Thai Police Thiland Existential Data Unknown Thailand Data Protection Act A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
December 1, 2015 Wellington hospital Australia Identity Theft 33 Australian Privacy Act 1988 A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
November 30, 2015 American Bank of Texas United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 30, 2015 Carolyn B Lyde, MD, of Dermatology Center of Lewisville United States Identity Theft 1,500 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
November 30, 2015 UN Climate Change Summit Website United States Identity Theft 1,415 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 29, 2015 InvestBank in the UAE United Arab Emirates Financial Access 50 EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 29, 2015 Madhya Pradesh police India Existential Data Unknown The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 29, 2015 Valero Store United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 28, 2015 Bluebox Broadband United Kingdom Account Access 3,000 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 28, 2015 Rockland Nissan United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
November 27, 2015 Home Delivery Incontinence Supplies United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP & HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 27, 2015 Hungryhouse United Kingdom Account Access 10,000 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 27, 2015 Lucknow University India Identity Theft Unknown The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 27, 2015 Mission Federal Credit Union United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 27, 2015 Plan UK United Kingdom Financial Access Unknown UK Data Protection Act & EU Directive on Data Protection A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 25, 2015 New Dimension Group United States Identity Theft 1,275 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 25, 2015 Sharjah bank Dubai Existential Data 64,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 24, 2015 Amazon United States Account Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 24, 2015 Dr. Mary Ruth Buchness United States Identity Theft 15,000 California SB-1386 & other State derivatives, HIPAA Security A.7.2.1 - Classification guidelines
A.7.2.2 - Information labeling and handling     
A.8.2.2 - Information security awareness, education and training      A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 24, 2015 Holly A Nordhues CPA United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 24, 2015 Jefferson County United States Identity Theft 2,000 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 24, 2015 Office of Holly A. Nordhues United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 23, 2015 Cigna Home Delivery United States Identity Theft 592 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 23, 2015 Mary Ruth Buchness, M.D United States Identity Theft 14,910 California SB-1386 & other State derivatives, HIPAA Security A.7.2.1 - Classification guidelines
A.7.2.2 - Information labeling and handling     
A.8.2.2 - Information security awareness, education and training      A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 23, 2015 The office of Nova Scotia Premier Stephen McNeil Canada Identity Theft 1 Canada PIPA & PIPEDA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
November 22, 2015 airBaltic Latvia Existential Data Unknown EU Directive on Data Protection A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
November 22, 2015 Linux #2 Australia Identity Theft Unknown Australian Privacy Act 1988 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 20, 2015 Bank of the Philippine Islands Philippines Financial Access Unknown Philippines Data Privacy Act of 2012 A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 20, 2015 DeKalb County School United States Identity Theft 200 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 20, 2015 Empire Life Insurance Canada Identity Theft Unknown Canada PIPA & PIPEDA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 20, 2015 Huck`s gas station, Circle K station, Phillips, Central Bank United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 20, 2015 Indiana University Health Arnett Hospital United States Identity Theft 29,324 California SB-1386 & other State derivatives, FERPA, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 19, 2015 Alaska Orthopedic Specialists United States Identity Theft 553 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 19, 2015 Complete Chiropractic & Bodywork Therapies United States Identity Theft 4,082 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 19, 2015 Hellertown gas station - Exxon United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 18, 2015 LANDESK United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 18, 2015 MyGov Australia Identity Theft Unknown Australian Privacy Act 1988 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 17, 2015 Brazilian Army Brazil Account Access 7,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 17, 2015 Clark County school District United States Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 17, 2015 GTLDNA Genetic Testing Laboratories United States Identity Theft 6,000 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 17, 2015 Newburgh Gas Station United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 17, 2015 Private Internet Access United Kingdom Existential Data Unknown UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 17, 2015 Quest Diagnostics United States Identity Theft 200 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 17, 2015 Tunecore United States Account Access 20,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 16, 2015 Korea Advanced Institute of Science Technology (KAIST) Korea Financial Access 24 Personal Data (Privacy) Ordinance (PCPD) A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 15, 2015 Brigham and Women's Faulkner Hospitals United States Identity Theft 1,009 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 15, 2015 MetroPCS United States Nuisance Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 15, 2015 O'Reilly Media Group United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 14, 2015 Illinois Department of Insurance United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 14, 2015 New West Health United States Identity Theft 28,209 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
November 14, 2015 Pearson VUE/Cisco, F5, Microsoft,IBM, Oracle United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 14, 2015 Red Dress Boutique United States Financial Access 295 California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 14, 2015 UC Health United States Identity Theft 1,064 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 14, 2015 VTech Holdings Global Identity Theft 11,686,131 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 13, 2015 Department of Health and Human Services United States Identity Theft 524 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 13, 2015 Healthpoint United States Identity Theft 1,300 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
November 13, 2015 MaineGeneral Health United States Identity Theft 500 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 13, 2015 Midlands Orthopaedics United States Identity Theft 3,902 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 13, 2015 Niteworks United Kingdom Account Access Unknown UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 13, 2015 OH Muhlenberg/Muhlenberg Community Hospital United States Identity Theft 84,684 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 12, 2015 Good Care Pediatric United States Identity Theft 2,300 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 12, 2015 Dean Health United States Nuisance 960 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
November 12, 2015 Brandeis University United States Identity Theft 193 California SB-1386 & other State derivatives, FERPA A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
November 12, 2015 Telford & Wrekin Council United Kingdom Identity Theft 222 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 12, 2015 Just Eat United Kingdom Identity Theft Unknown UK Data Protection Act & EU Directive on Data Protection A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 12, 2015 The Agency for Health Care Administration United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 11, 2015 XAT United Kingdom Existential Data Unknown UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 11, 2015 InstaAgent/Google/Apple United States Account Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 10, 2015 U.S. Department of Justice United States Identity Theft 841 California SB-1386 & other State derivatives A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 10, 2015 Spotify United States Account Access 1,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 10, 2015 TAFE Queensland Australia Nuisance 2,000 Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 10, 2015 PeoplePoint/Irish Government United Kingdom Identity Theft 317 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 10, 2015 7 Eleven: St. Charles County United States Identity Theft Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 10, 2015 TaxAct United States Identity Theft Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 10, 2015 Corner Bakery Cafe United States Identity Theft Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
November 10, 2015 NTV & Channel One Russia Existential Data Unknown Russian Federal Law on Personal Data (No. 152-FZ) A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 9, 2015 Comcast United States Account Access 590,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 9, 2015 IRS Florida United States Identity Theft 300,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 9, 2015 Nuclear Scienties Global Existential Data 1,600 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 9, 2015 WorkSafeNB Canada Identity Theft 3,022 Canada PIPA & PIPEDA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 9, 2015 Citizens Financial Group United States Financial Access 498 California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 9, 2015 Javery Pain Clinic Institute, West Michigan Family Medicine United States Identity Theft 24 California SB-1386 & other State derivatives, HIPAA Security & FERPA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
November 9, 2015 XPO Logistics United States Existential Data Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
November 9, 2015 JB Autosports United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 9, 2015 Kalahari Resorts United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 9, 2015 Metropolitan Correctional Center United States Identity Theft Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
November 9, 2015 UK parliament United Kingdom Existential Data Unknown UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 9, 2015 Hollywood's celebs United States Identity Theft 4 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 9, 2015 Boston University United States Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 8, 2015 The United States's National Security Agency & CIA and FBI United States Identity Theft 54,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 8, 2015 Veterans Benefits Administration (VBA)/QTC United States Identity Theft 84 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education andtraining.                                                                              A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 7, 2015 Maryland's Department of Information Technology United States Identity Theft 500 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 7, 2015 Greenland (sic) Primary School United Kingdom Identity Theft 7 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 7, 2015 Arthur Brisbane Child Treatment Center United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 7, 2015 District of Goslar Germany Identity Theft Unknown EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 7, 2015 US Department of Agriculture United States Account Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 6, 2015 Nicchu Shinsei Corp Japan Account Access 18,000,000 Japan Privacy Act A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
November 6, 2015 Rush University Medical Center United States Identity Theft 1,529 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 6, 2015 Hawai United States Nuisance 10,800 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 6, 2015 Leukemia & Lymphoma Society & Children's National Medical Center United States Identity Theft 200 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
November 6, 2015 Peaks and Plains Housing Trust United Kingdom Account Access 1,000 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 6, 2015 Panther Creek High School United States Existential Data Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 6, 2015 EZ-Mart United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 6, 2015 Par Mar Stores United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 5, 2015 Utah State Office of Education United States Identity Theft 5,500 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 5, 2015 CIA United States Nuisance 3,500 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 5, 2015 University of Cincinnati Medical Center United States Identity Theft 1,064 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 5, 2015 Medicap Pharmacy United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 5, 2015 Central Bank United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 5, 2015 Oiselle United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 5, 2015 Rite Aid United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP & HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 5, 2015 Crystal New Zealand Account Access Unknown New Zealand Privacy Act 1993 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 4, 2015 vBulletin United States Existential Data 480,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 4, 2015 Crown Prosecution Service United Kingdom Existential Data 31 UK Data Protection Act & EU Directive on Data Protection A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 4, 2015 Veterans IN Boston United States Identity Theft 259 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 4, 2015 Elephant Bar/CM Ebar United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 4, 2015 Touchnote United Kingdom Account Access Unknown UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 4, 2015 Essendon/Essendon Women's Network, Essendonians, Collins Street Dons, Red & Blacks, Lawdons and the Dick Reynolds Club Australia Account Access Unknown Australian Privacy Act 1988 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 3, 2015 AdExpansion/DrTuber, Nuvid, Eroprofile, IcePorn and Xbabe, xHamster, RedTube, PornHub Global Identity Theft 2,000,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 3, 2015 RubberStamps United States Financial Access 7,000 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 3, 2015 Montgomery County schools/WestEd United States Identity Theft 340 California SB-1386 & other State derivatives, FERPA A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
November 3, 2015 Adur District Council United Kingdom Identity Theft 15 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 3, 2015 ADAC Germany Financial Access Unknown EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
November 2, 2015 Foxit Software United States Account Access 537,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
November 2, 2015 Prominent US Senators and Mayors United States Identity Theft 2 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 31, 2015 St. Luke's Cornwall Hospital United States Identity Theft 29,156 California SB-1386 & other State derivatives, HIPAA Security A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
October 31, 2015 PageFair United States Existential Data Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 30, 2015 PHP Freaks Forum United States Account Access 173,891 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 30, 2015 Aussie Farmers Direct Australia Account Access 5,149 Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 30, 2015 Netflix United States Account Access 2,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 30, 2015 The Common Market United Kingdom Financial Access 300 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 29, 2015 Vodafone United Kingdom Financial Access 1,827 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 29, 2015 Royal Sussex County Hospital United Kingdom Identity Theft 37 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 29, 2015 Dr. Siobhan Dunnavant United States Identity Theft Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 28, 2015 LTC Dental United States Identity Theft 1,680 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
October 28, 2015 British Gas United Kingdom Account Access 2,200 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 28, 2015 Numerous University United States Identity Theft 500 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 28, 2015 Guardian United Kingdom Account Access 501 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 28, 2015 Marks & Spencer United Kingdom Identity Theft Unknown UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 28, 2015 Mountain Travel Sobek United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 27, 2015 W.W. Grainger United States Account Access Unknown California SB-1386 & other State derivatives A.7.2.1 - Classification guidelines
A.7.2.2 - Information labeling and handling     
A.8.2.2 - Information security awareness, education and training
October 26, 2015 Cottage Health United States Identity Theft 11,000 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 26, 2015 Common Market United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 26, 2015 Sunrise Hospital United States Identity Theft 1 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 25, 2015 CAT Telecom Thailand Account Access 2,000 Thailand Data Protection Act A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 23, 2015 California Virtual Academies (CAVA) United States Identity Theft 75,694 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 23, 2015 Yellowfront Grocery United States Financial Access 3,000 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 23, 2015 EnvisionRx United States Identity Theft 540 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 23, 2015 Department of Health's Children's Services United States Identity Theft 150 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 23, 2015 Florida Department of Health's Children's Medical Services/CMS-Miami Orthopedic Clinic at Jackson Memorial Hospital/ Miami-Dade United States Identity Theft 150 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 23, 2015 Swiss Cleaners United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 23, 2015 Xero Australia Account Access Unknown Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 22, 2015 TalkTalk United Kingdom Identity Theft 4,000,000 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 21, 2015 Belgrade Regional Health Center Serbia Nuisance 847 EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 21, 2015 California Department of Motor Vehicles /SANTA ANA DMV United States Identity Theft 24 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 21, 2015 Prince Albert Parkland Health Region Canada Identity Theft 22 Canada PIPA & PIPEDA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 21, 2015 Department of Motor Vehicles United States Identity Theft Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 21, 2015 Southern California and Southern Nevada & Long Beach ATM United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 21, 2015 Osceola County United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 20, 2015 Pharmacy2U United Kingdom Nuisance 100,000 UK Data Protection Act & EU Directive on Data Protection A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 20, 2015 Child Sexual Abuse United Kingdom Existential Data Unknown UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 19, 2015 CIA Director John Brennan's private account United States Existential Data 2,400 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 19, 2015 Irish Water United Kingdom Identity Theft 700 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 19, 2015 Delmar bank United States Financial Access Unknown California SB-1386 & other State derivatives, GLBA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 19, 2015 Mt Albert Grammar New Zealand Account Access Unknown New Zealand Privacy Act 1993 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 19, 2015 CIA United States Identity Theft 1 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 17, 2015 Latham House Medical Practice United Kingdom Identity Theft 200 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 17, 2015 The College of Registered Nurses of Manitoba Canada Identity Theft Unknown Canada PIPA & PIPEDA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 16, 2015 Mac-Torrents United States Account Access 94,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 16, 2015 Wiener Linien Austria Account Access 20,000 EU Directive on Data Protection A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 16, 2015 Nephropathology Associates United States Identity Theft 1,260 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 16, 2015 Woods Hole Oceanographic Institution United States Existential Data Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 16, 2015 Brenner McDonagh & Tortolani United States Identity Theft Unknown California SB-1386 & other State derivatives A.7.2.1 - Classification guidelines
A.7.2.2 - Information labeling and handling     
A.8.2.2 - Information security awareness, education and training
October 16, 2015 Angels in Your Home/All About You Homecare/ Center for Disability Rights United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 16, 2015 St Peter's School United States Existential Data Unknown California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 15, 2015 MPGH/ Multiplayer Game Hacking United States Account Access 3,122,898 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 15, 2015 Northern Navajo Medical Center United States Identity Theft 7,500 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 15, 2015 Lloyds Bank/ Halifax and Bank of Scotland's United Kingdom Financial Access 23,000 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 15, 2015 Auditel Italy Identity Theft 15,600 EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
October 15, 2015 Mainstreet Federal Credit United States Financial Access 300 California SB-1386 & other State derivatives, GLBA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 15, 2015 PeoplePoint United Kingdom Identity Theft 317 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 15, 2015 Citrix United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 15, 2015 Honey Baked Ham Company/ Stoner Bunting United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
October 15, 2015 Electronic Arts (EA) United States Existential Data Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 14, 2015 Rouge Valley Hospital Canada Identity Theft 12,595 Canada PIPA & PIPEDA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 14, 2015 Nusenda Credit Union United States Financial Access 35 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 14, 2015 University of Washington's Center for Human Rights United States Existential Data Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 14, 2015 Polish Bank Poland Financial Access Unknown EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 13, 2015 Uber United States Identity Theft 674 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 13, 2015 Contactless Credit Cards Hong Kong Financial Access Unknown Personal Data (Privacy) Ordinance (PCPD) A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 12, 2015 Derby City School United Kingdom Identity Theft 700 UK Data Protection Act & EU Directive on Data Protection A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 12, 2015 Division of Labor/ Bill Cole United States Identity Theft 202 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 12, 2015 Columbia Threadneedle Investments United States Identity Theft Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training                                                                                                A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 12, 2015 Adreima United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 12, 2015 Casey's General Store United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
October 12, 2015 Guernsey Border Agency Guernsey Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 11, 2015 Northwest Georgia Housing United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 10, 2015 Hillsides United States Identity Theft 1000 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 10, 2015 First National Bank of Omaha United States Financial Access Unknown California SB-1386 & other State derivatives, GLBA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 10, 2015 Town & Country Bank and Trust Co United States Financial Access Unknown California SB-1386 & other State derivatives, GLBA A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
October 9, 2015 Georgia Secretary of State United States Identity Theft 6200000 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 9, 2015 Keenan & Associates of Torrance United States Identity Theft 35,000 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 9, 2015 Humana Medicare Advantage United States Identity Theft 3050 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 9, 2015 Digital Theatre, LLC United States Financial Access 1609 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 9, 2015 SSM Health Cancer Care United States Identity Theft 643.00 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 9, 2015 Dell United States Existential Data Unknown California SB-1386 & other State derivatives. A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 9, 2015 Champs Sports United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 9, 2015 U.S Army United States Identity Theft 1 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 8, 2015 Insurance Data Services United States Identity Theft 2,918 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 8, 2015 Anne Arundel Health System United States Identity Theft 2208 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 8, 2015 Fox River Counseling Center United States Identity Theft 509 California SB-1386 & other State derivatives, HIPAA Security A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
October 8, 2015 Center for Medical Progress (CMP)/Planned Parenthood United States Existential Data 11 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 8, 2015 Capezio United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 8, 2015 LuckyPet United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 8, 2015 Washington Township Health Care District (Washington Hospital Healthcare System)/Washington Community Health Resource Library United States Nuisance Unknown California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 7, 2015 The Archdiocese of Denver United States Identity Theft 18,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 7, 2015 CalOptima United States Nuisance 100 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 7, 2015 Tallahassee Bussiness United States Identity Theft Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 7, 2015 Niall O'Kane eye United Kingdom Identity Theft Unknown UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 6, 2015 Maj. Veronica Carter/USAA United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 6, 2015 University Technical College (UTC) Warrington United Kingdom Identity Theft Unknown UK Data Protection Act & EU Directive on Data Protection A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 6, 2015 Stonebridge Life United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 5, 2015 Catholic Archdiocese of Denver United States Identity Theft 18,000 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 5, 2015 Woodland Heights Medical Center United States Identity Theft 450 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 5, 2015 TTI Floor Care North America United States Financial Access 6 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 5, 2015 FXCM United States Financial Access Unknown California SB-1386 & other State derivatives. GLBA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 5, 2015 Gorey Credit Union United Kingdom Account Access Unknown UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 4, 2015 VK Music Russia Account Access 500000 Russian Federal Law on Personal Data (No. 152-FZ) A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 4, 2015 Middlesex Hospital United States Account Access 946 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 4, 2015 New Mexico Department of Health United States Identity Theft 561 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
October 4, 2015 Albuquerque Fire Department United States Identity Theft Unknown California SB-1386 & other State derivatives A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
October 4, 2015 Lebanon Federal Credit Union United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 3, 2015 21st Century Oncology United States Identity Theft 2200000 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 3, 2015 Nova Southeastern University United States Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 2, 2015 Kiwi/Ministry of Health New Zealand Identity Theft 24,092 New Zealand Privacy Act 1993 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 2, 2015 Four Winds Casino Resort United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
October 2, 2015 Sun Trust Bank Florida United States Financial Access Unknown California SB-1386 & other State derivatives, FERPA A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
October 2, 2015 David Jones Australia Account Access Unknown Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 2, 2015 Avis Budget United States Identity Theft Unknown California SB-1386 & other State derivatives. A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 1, 2015 MS Society United Kingdom Nuisance 25,000 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 1, 2015 American Bankers Association United States Account Access 6,400 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 1, 2015 HealthSouth Rehabilitation Hospital of Round Rock/ Reliant Rehabilitation Hospital Central United States Identity Theft 1,359 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
October 1, 2015 Ascentric United Kingdom Identity Theft 129 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
October 1, 2015 South Korean lawmakers and Presidential Blue House South Korea Existential Data Unknown Personal Data (Privacy) Ordinance (PCPD) A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
October 1, 2015 Philadelphia Gas Works United States Identity Theft Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
October 1, 2015 Interstitial Cystitis Network United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 30, 2015 Patreon United States Existential Data 2,300,000 California SB-1386 & other State derivatives. A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 30, 2015 Streets of New York United States Financial Access 250 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 30, 2015 First Citizens Bank United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 29, 2015 Our Lady of Lourdes Hospital United Kingdom Identity Theft 44 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
September 29, 2015 Iredell County/Lake Norman High School United States Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 29, 2015 Pinnacle Bank United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 28, 2015 Department of Veterans Palo Alto United States Identity Theft 50 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
September 28, 2015 California Department of Motor Vehicles United States Nuisance Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
September 27, 2015 University of Calgary United States Financial Access 29 California SB-1386 & other State derivatives, FERPA and PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 27, 2015 DraftKings United States Existential Data Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
September 27, 2015 NextBus/Big Blue Bus Canada Identity Theft Unknown Canada PIPA & PIPEDA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 26, 2015 Ginger Blossom United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
September 25, 2015 Nobel House Hotels and Resorts/ Portofino Hotel and Marina/ Edgewater/Little Palm Island Resort and Spa/ Mountain Lodge Telluride/ Ocean Key Resort and Spa/ River Terrace Inn United States Financial Access 19,475 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 25, 2015 General Services Administration/ U.S Army Families United States Identity Theft 9,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 25, 2015 Kindred Nursing Centers West United States Identity Theft 1,125 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
September 25, 2015 Muhlenberg Community Hospital United States Identity Theft 500 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 25, 2015 Intuit's TurboTax Business United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 24, 2015 HCL America/ Dow Corning United States Identity Theft 4,000 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
September 24, 2015 Sunquest Information Systems United States Identity Theft 2,100 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
September 24, 2015 Traphagen & Traphagen United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 24, 2015 New England Calendar and Novelty Company United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 23, 2015 Educators Credit Union United States Financial Access 600 California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 23, 2015 BeHealthy Health Plan United States Identity Theft 835 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
September 23, 2015 Millers Mutual Group United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 23, 2015 O'Rourke Brothers Taxidermy New Zealand Identity Theft 1 New Zealand Privacy Act 1993 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 23, 2015 Schlage Lock Company United States Identity Theft Unknown California SB-1386 & other State derivatives. A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 23, 2015 Atlantic Bank United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 23, 2015 SAS Safety Corporation United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 22, 2015 The B.C. government and Yukon British Columbia Identity Theft 3,400,000 Canada PIPA & PIPEDA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
September 21, 2015 APEGA/Association of Professional Engineers and Geoscientists of Alberta Canada Account Access 75,000 Canada PIPA & PIPEDA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 21, 2015 Heartland Health Clinic United States Identity Theft 3,650 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 21, 2015 Skin and Cancer Center of Arizona United States Identity Theft 3,311 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 21, 2015 America's Thrift Stores United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 21, 2015 glamglowmud.com (GlamGlow) United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 19, 2015 Fidelity Group Bahamas Identity Theft Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 18, 2015 Commack High School computer United States Identity Theft 300 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 18, 2015 CarePlus Health Plans United States Identity Theft 1,400 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 18, 2015 Alberta Health Services Canada Identity Theft Unknown Canada PIPA & PIPEDA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
September 17, 2015 Health Care Service Corporation United States Identity Theft 501 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 17, 2015 Invest NI United Kingdom Existential Data 35 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 17, 2015 ACE Surgical Supply United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 16, 2015 Kardashian and Jenner mobile apps United States Account Access 600,000 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 16, 2015 Claystone Clinical Associates/Insurance Data Services/West Michigan Delivery Service United States Identity Theft 2,918 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 16, 2015 Daniel A. Sheldon, M.D United States Identity Theft 2,075 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 16, 2015 Office of Daniel A. Sheldon United States Identity Theft 2,075 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 16, 2015 Midtown gas station United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 16, 2015 Food.com /Scripps Network/ FoodNetwork.com United States Account Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 15, 2015 Final Fantasy Shrine United States Existential Data 620,667 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 15, 2015 Charlotte-Mecklenburg Schools United States Identity Theft 7,600 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 15, 2015 Pastebin United Kingdom Identity Theft 200 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 15, 2015 Zayed Port ABU DHABI Existential Data Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
September 15, 2015 FirstBank ATM United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 15, 2015 TD Bank United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
September 15, 2015 City Of WPB United States Existential Data Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
September 14, 2015 Affinity Health Plan United States Identity Theft 721 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 14, 2015 Traphagen & Traphagen CPAs United States Identity Theft Unknown California SB-1386 & other State derivatives. A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 14, 2015 Mascoma Savings Bank United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 13, 2015 Palm Beach County law enforcement United States Identity Theft 2,000 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 13, 2015 CoastHills Federal Credit Union/Lompoc, Santa Maria United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 13, 2015 Harbeson Deli, Gas Station United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 13, 2015 Palmetto gas station/7-Eleven/On the Run United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 11, 2015 Blue Cross Blue Shield of North Carolina #2 United States Identity Theft 1530 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 11, 2015 Lloyds Bank United Kingdom Financial Access 2,000 UK Data Protection Act & EU Directive on Data Protection A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 11, 2015 Blue Cross Blue Shield of North Carolina United States Identity Theft 807 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 11, 2015 Penrith High School Australia Existential Data Unknown Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 11, 2015 Meijj University Japan Existential Data Unknown Japan Privacy Act A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
September 11, 2015 Vermont Health Connect United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 10, 2015 North Oldham High School United States Identity Theft 2,800 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 10, 2015 ISIS Global Nuisance 9 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 9, 2015 New Zealand Police New Zealand Existential Data Unknown New Zealand Privacy Act 1993 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 9, 2015 Boston Transportation Department (BTD) United States Identity Theft Unknown California SB-1386 & other State derivatives. A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 9, 2015 Kinver United Kingdom Identity Theft Unknown UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 8, 2015 HMC Dockyard/Royal Canadian Navy Canada Existential Data 1086 canada PIPA & PIPEDA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 8, 2015 Veterans Bay Pines Florida United States Identity Theft 65 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
September 8, 2015 Three Lock Box United States Financial Access 90 California SB-1386 & other State derivatives. A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 8, 2015 Pentagon food court United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 8, 2015 Santander Bank #5 United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 8, 2015 ShowTix4U ticket United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 8, 2015 McDonald's at Raleigh drive United States Financial Access Unknown California SB-1386 & other State derivatives. A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
September 8, 2015 Great Clips United States Nuisance Unknown California SB-1386 & other State derivatives. A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 7, 2015 Lee Memorial Health United States Identity Theft 1508 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 7, 2015 Veterans Seattle United States Identity Theft 63 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 7, 2015 NATO, White House United States Account Access Unknown California SB-1386 & other State derivatives. A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 6, 2015 Stilletto Solutions United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 5, 2015 Medical Support Assistant (MSA)/ Baltimore Veterans United States Identity Theft 76.00 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 5, 2015 ATM St Andrews United Kingdom Financial Access Unknown UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 5, 2015 Bank of America in Goffstown United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
September 4, 2015 Harbottle Surgery United States Identity Theft 800 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 4, 2015 Permanent TSB United Kingdom Financial Access 100 UK Data Protection Act & EU Directive on Data Protection A.7.2.1 - Classification guidelines
A.7.2.2 - Information labeling and handling     
A.8.2.2 - Information security awareness, education and training
September 4, 2015 Human Rights Commission United States Identity Theft 1 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 4, 2015 Pathways Professional Counseling (PPC)/ Alabama Baptist Children's Homes & Family Ministries United States Identity Theft Unknown California SB-1386 & other State derivatives A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
September 3, 2015 T - Mobile/ Experian United States Identity Theft 15,000,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 3, 2015 HMRC United Kingdom Account Access 500 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 3, 2015 Aurora ATM United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 3, 2015 Michigan gas stations United States Financial Access Unknown California SB-1386 & other State derivatives. A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 2, 2015 WHSmith United Kingdom Account Access 200 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 2, 2015 Cambridgeshire police/ Ely Police Station United Kingdom Existential Data Unknown UK Data Protection Act & EU Directive on Data Protection A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
September 2, 2015 Office of Peggy E. Olson United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 2, 2015 Peggy Olson United States Identity Theft Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 2, 2015 Heritage Foundation United States Existential Data Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
September 1, 2015 Apple/ Iphone United States Account Access 225,000 California SB-1386 & other State derivatives. A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 1, 2015 Grupo Financiero Banorte Mexico Identity Theft 20000 Mexicos National Transparency, Information Access, and Data Protection Institute (INAI)  A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 1, 2015 Lewis-Palmer School District 38 United States Identity Theft 2,000 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 1, 2015 The 56 Dean Street clinic United Kingdom Identity Theft 780 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 1, 2015 S.J. Services United States Identity Theft 160 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 1, 2015 Mt Annan/ Holsworthy, Campbelltown, Eagle Vale and Harrington Park Medical Centre Australia Identity Theft Unknown Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 1, 2015 Nutmeg United Kingdom Nuisance 32 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
September 1, 2015 Bank of America in North Falmouth United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 1, 2015 Delta Community Credit Union United States Financial Access Unknown California SB-1386 & other State derivatives, GLBA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 1, 2015 Shell United States Financial Access Unknown California SB-1386 & other State derivatives. A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
September 1, 2015 Kmart Australia Account Access Unknown Australian Privacy Act 1988 A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 31, 2015 Dating Websites Russia Account Access 200,000 Russian Federal Law on Personal Data (No. 152-FZ) A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 31, 2015 Community Catalysts of California United States Identity Theft 1,182 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 31, 2015 Minneapolis Clinic of Neurology United States Identity Theft 1,450 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 31, 2015 Admiral United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
August 31, 2015 Bay Area Chiropractic Center United States Nuisance Unknown California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 31, 2015 Dow Corning Corporation United States Identity Theft Unknown California SB-1386 & other State derivatives. A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training  A.13.2.3 - Electronic Messaging
August 31, 2015 Novick & Associates United States Identity Theft 1 California SB-1386 & other State derivatives. A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 30, 2015 Systema Software/Golden State Risk Management Authority (Kansas State Self Insurance Fund/CSAC-EIA and York Insurance Services Group/Salt Lake County) United States Identity Theft 1,500,000 California SB-1386 & other State derivatives. A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 30, 2015 Reis Services United States Existential Data 7,000 California SB-1386 & other State derivatives. A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 30, 2015 OlaCabs India Identity Theft 400 The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
August 29, 2015 Michigan Catholic Conference United States Identity Theft 10,000 California SB-1386 & other State derivatives. A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 29, 2015 Escambia County Department of Human Resources United States Financial Access Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 29, 2015 Taco Bell United States Financial Access 1 California SB-1386 & other State derivatives, PCI/Visa CISP A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 28, 2015 eCay Cayman Island Account Access 2,000 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 28, 2015 Silverberg Surgical and Medical Group United States Identity Theft 857 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
August 28, 2015 South Dakota School of Mines and Technolog United States Identity Theft 350 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
August 28, 2015 York City district judge United Kingdom Existential Data Unknown UK Data Protection Act & EU Directive on Data Protection A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 28, 2015 Perry gas station United States Financial Access Unknown California SB-1386 & other State derivatives, HIPAA Security, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
August 27, 2015 Metropolitan Atlanta Rapid United States Identity Theft 800 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 27, 2015 University of Bedfordshire United Kingdom Identity Theft 50 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
August 27, 2015 Palm Beach County Realtor United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 26, 2015 Children's Hospital Medical Center of Akron United States Identity Theft 7,664 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 26, 2015 padlocks4less.com/ Frank J. Martin Company United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 26, 2015 Westpac / Auckland cash machine New Zealand Financial Access Unknown New Zealand Privacy Act 1993 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 25, 2015 Akron Children's Hospital United States Identity Theft 7,664 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 25, 2015 University of Oklahoma United States Identity Theft 9,300 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 25, 2015 Schwab Retirement Plan Services United States Identity Theft 1,040 California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 25, 2015 Machine Zone United States Existential Data Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 24, 2015 Calirfona State University/ Agent of Change United States Identity Theft 79,000 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 24, 2015 Hepatology & Nutrition of Florida/ Pediatric Gastroenterology United States Identity Theft 13,000 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 24, 2015 Lancaster Cardiology/ Sunder Heart Institute and Vascular Medical Clinic United States Identity Theft 1,200 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 24, 2015 Department of Public Safety United States Identity Theft 18 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
August 24, 2015 Vacaville Housing Authority United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
August 23, 2015 William W. Backus Hospital United States Identity Theft 360 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
August 23, 2015 Sterbick & Associates United States Identity Theft 500 California SB-1386 & other State derivatives A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
August 22, 2015 Valley Children's Hospital United States Identity Theft 164 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 22, 2015 Northeast Credit Union United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
August 22, 2015 UCLA Health United States Identity Theft 1 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 21, 2015 PT Northwest United States Identity Theft 1,500 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 21, 2015 Pediatric Associates United States Identity Theft 10,000 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
August 21, 2015 Winthrop-University Hospital United States Identity Theft 11 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 20, 2015 Chinese airline China Account Access 1,600,000 Hong Kong Personal Data (Privacy) Ordinance (Cap. 486) A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 20, 2015 Empi Inc/ DJO United States Identity Theft 160,000 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 20, 2015 Huntington Medical Research Institutes (HMRI) United States Identity Theft 4,300 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 20, 2015 ICICI Bank India Financial Access Unknown The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 20, 2015 Milk Nursingwear United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 20, 2015 State Information Technology Agency (SITA) South Africa Existential Data Unknown The Protection of Personal Information Act (POPIA)  A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 19, 2015 Nephropathology Associates United States Identity Theft 5,700 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
August 19, 2015 Quad/Graphics United States Identity Theft 693 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 19, 2015 Department of Health and Human Services United States Nuisance 1,615 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 19, 2015 Carilion Clinic United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 19, 2015 El Segundo 7-Eleven United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 18, 2015 Woodhull Medical and Mental Health Center/ NYC Health Center United States Identity Theft 1,581 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 18, 2015 The New York City Health and Hospitals Corporation (HHC) United States Identity Theft 1,581 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 18, 2015 Seychelles bank Indian Ocean Financial Access 800 The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 17, 2015 Cancer Care Northwest United States Identity Theft 1,426 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 17, 2015 Department of Social Protection United Kingdom Nuisance 200 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 17, 2015 Jumbo Netherlands Account Access 100 EU Directive on Data Protection A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 17, 2015 Barclay's Bank United Kingdom Financial Access Unknown UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 16, 2015 Brand Services United States Existential Data Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 15, 2015 MyVidster United States Account Access 19,863 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 15, 2015 Illinois Department of Corrections United States Identity Theft 1,000 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 15, 2015 Barrington Orthopedic Specials United States Identity Theft 1,009 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 15, 2015 Thomson United Kingdom Nuisance 500 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
August 15, 2015 VacationRentPayment/ YapStone United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 15, 2015 Kettering General Hospital United Kingdom Account Access Unknown UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 15, 2015 Department of Human Services Agency United States Nuisance Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
August 14, 2015 Sentara Heart Hospital United States Identity Theft 1,040 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 14, 2015 University of Miami/ Florida International University United States Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 14, 2015 Landmark Bank United States Financial Access Unknown California SB-1386 & other State derivatives, GLBA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 14, 2015 Danske Bank Denmark Existential Data Unknown EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
August 13, 2015 Web.com United States Financial Access 93,000 California SB-1386 & other State derivatives, HIPAA Security, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 13, 2015 Department of Employment and Learning United Kingdom Identity Theft Unknown UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
August 12, 2015 Bon Secours St. Francis Health System United States Identity Theft 2,027 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 12, 2015 Sequoia One of Wyoming/Gen X Marketing United States Identity Theft 2,000 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 12, 2015 Mumsnet United Kingdom Account Access 3,000 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 12, 2015 Clayton Valley Charter High School United States Existential Data Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 11, 2015 U.S. Army United States Existential Data Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 10, 2015 Children's Medical Clinics of East Texas United States Identity Theft 16,000 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 10, 2015 JobsatTEAM United Kingdom Account Access 2,590 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 10, 2015 Johns Hopkins Medicine United States Identity Theft 838 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
August 10, 2015 Summit Chemical Profit Sharing & 401(K) Plan United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 9, 2015 U.S Retailer United States Account Access 100,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 9, 2015 AutoZone United States Identity Theft 50,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 9, 2015 PeaceHealth Southwest Medical Center United States Identity Theft 1,047 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 9, 2015 The British High Commission South Africa Identity Theft 20 The Protection of Personal Information Act (POPIA)  A.11.2.1 - Equipment siting and protection
August 9, 2015 Department of Workforce Solutions New Mexico Existential Data Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 9, 2015 Positive Adjustments United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 8, 2015 Carphone Warehouse United Kingdom Financial Access 2,400,000 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 8, 2015 Emergence Health Network (EHN) United States Identity Theft 11,000 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 8, 2015 Department of Taxation and Finance United States Financial Access Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 7, 2015 Walgreen United States Identity Theft 8,345 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 7, 2015 Office of Max M. Bayard United States Identity Theft 2,000 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 7, 2015 T. J. Samson Community Hospital United States Identity Theft 2,060 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 7, 2015 Baylor College United States Identity Theft 1,004 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 7, 2015 Katy Independent School United States Identity Theft 12,000 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 7, 2015 Trump's appearance at a raucous rally United States Identity Theft 200 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 7, 2015 Massey University New Zealand Nuisance 68 New Zealand Privacy Act 1993 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 7, 2015 Sabre (American Airlines) United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 7, 2015 Interline Brands United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 7, 2015 Outback Steakhouse United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 6, 2015 Baptist Health And Arkansas Health Group United States Identity Theft 6,500 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 6, 2015 WA prison Australia Identity Theft 55 Australian Privacy Act 1988 A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 6, 2015 Internet Corporation for Assigned Names and Numbers (ICANN) United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 6, 2015 Huntington Medical Research Institutes (HMRI) United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 6, 2015 Toyota Financial Services United States Financial Access Unknown California SB-1386 & other State derivatives, HIPAA Security, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 5, 2015 Max M. Bayard, MD United States Identity Theft 2,000 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 5, 2015 Val Verde Regional Medical Center United States Nuisance 2,000 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 5, 2015 Columbia Eye Care United States Financial Access 20 California SB-1386 & other State derivatives, HIPAA Security, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 5, 2015 Florida's Department of Children & Families United States Financial Access Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 5, 2015 Hover Canada Account Access Unknown Canada PIPA & PIPEDA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 4, 2015 Endocrinology Associate United States Identity Theft 1,400 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 3, 2015 U.S. Service and FBI Malaysia Identity Theft 1,351 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 3, 2015 Orlantino Dyoco United States Identity Theft 9,000 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 3, 2015 Massachusetts General Hospital United States Identity Theft 648 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 3, 2015 Sensis Australia Nuisance 230 Australian Privacy Act 1988 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 3, 2015 Rural Administrations Centre India Existential Data Unknown The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 3, 2015 Arizona Department of Child Safety United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
August 3, 2015 Principal Financial Group United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 3, 2015 New Enterprise Associates/Collected Intelligence United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 3, 2015 Verizon's Hum United States Account Access Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
August 2, 2015 Olympics and world championships Global Identity Theft 5,000 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 2, 2015 General Motors Finance Canada Identity Theft 2,200 Canada PIPA & PIPEDA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
August 2, 2015 Village Pizza & Pub/ TransformPOS/CoffeeBytes/University of Washington United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 2, 2015 dubizzle UAE United Arab Emirates Account Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
August 2, 2015 Veteran of the US Air Force/ VA VocRehab United States Identity Theft 1 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 31, 2015 Glidewell Laboratories/ Dental Ceramics/ James R. Glidewell United States Identity Theft 800 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 31, 2015 Bitdefender United States Account Access 250 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 31, 2015 Batavia United States Existential Data Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 31, 2015 Waller County United States Nuisance Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 30, 2015 Hanes Website United States Account Access 900,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 30, 2015 Horizon Blue Cross Blue Shield of New Jersey United States Identity Theft 1,173 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 30, 2015 Genworth United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 30, 2015 John Carroll University United States Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 30, 2015 Shell Gas United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 29, 2015 Economic Freedom Fighters Africa Existential Data Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 29, 2015 Teach for America United States Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 29, 2015 Nationwide United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 28, 2015 Mohu United States Financial Access 2,500 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 28, 2015 Access Adult Family Care Home United States Identity Theft 6 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 28, 2015 U.S. Disabled Veterans, and U.S. Handicapped-Disadvantaged Services United States Identity Theft 5 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 28, 2015 Adult Family Care Home United States Financial Access 5 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 28, 2015 Mama Mio US United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 27, 2015 Valve's Steam United States Account Access 77,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 27, 2015 Dr. Gerardo A. Gamez United States Identity Theft 100 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 27, 2015 Massachusetts Registry of Motor Vehicles United States Nuisance 120 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 27, 2015 Hilton Worldwide Global Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 27, 2015 Abortion Practices United States Nuisance Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 27, 2015 London Tribunal United Kingdom Identity Theft Unknown uK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 26, 2015 Korea Pharmaceutical Information Center/ SK Telecom Korea Identity Theft 43,000,000 Personal Data (Privacy) Ordinance (PCPD) A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 26, 2015 Planet Fitness United States Identity Theft 900 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 26, 2015 Essar Group India Existential Data Unknown The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 26, 2015 Nationstar Mortgage United States Identity Theft Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 25, 2015 Pantagon United States Account Access 4,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 25, 2015 University of Queensland Australia Account Access 9 Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 25, 2015 Canadian Security Intelligence Service (CSIS) Canada Existential Data Unknown Canada PIPA & PIPEDA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 24, 2015 Hillary Clinton_s Private Email United States Account Access 32,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 24, 2015 Credit Card Company United Kingdom Identity Theft 33,000 uK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 24, 2015 Georgia's Department of Human Services Division of Aging Services/ Community Care Services Program United States Identity Theft 3,000 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 24, 2015 Hawker Britton Australia Existential Data 1,000 Australian Privacy Act 1988 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 24, 2015 Melanie Witte United States Identity Theft 1,474 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 24, 2015 Brunswick restaurant/ Beans in the Belfry United States Financial Access 4 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 24, 2015 Vision Nissan United States Identity Theft 10 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 23, 2015 Orange County Employees Association/ Velece Corporation United States Identity Theft 2,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 23, 2015 US Census Bureau United States Account Access 4,200 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 23, 2015 Albuquerque VA United States Identity Theft 73 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 23, 2015 Follett Corporation United States Financial Access 30 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 23, 2015 CoinCut United Kingdom Financial Access Unknown uK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 23, 2015 UK bitcoin vendor United States Financial Access Unknown uK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 23, 2015 Israli Insurance Israel Nuisance Unknown The Privacy Protection Act (PPA) & Basic Law: Human Dignity and Liberty A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 22, 2015 Medline Industries United States Identity Theft 500 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 22, 2015 Motel 6 United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 21, 2015 Department of Human Resources United States Identity Theft 11,549 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 21, 2015 Town of Amherst United States Financial Access 414 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 21, 2015 Alexandria ATM United Kingdom Financial Access Unknown uK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 21, 2015 Rogers Electric United States Identity Theft Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 21, 2015 The REC of Grapevine United States Identity Theft 1 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 20, 2015 AshleyMadison.com Canada Identity Theft 37,000,000 Canada PIPA & PIPEDA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 20, 2015 European Central Bank (ECB) Germany Account Access 20,000 EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 20, 2015 Special Agents Mutual Benefit Association United States Identity Theft 1,475 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 20, 2015 MUJI USA, LIMITED United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 20, 2015 Corrections Victoria/ Beechworth Correctional Centre Australia Financial Access Unknown Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 19, 2015 Buyers Protection United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 19, 2015 Volkswagen of Oakland United States Nuisance Unknown California SB-1386 & other State derivatives A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
July 18, 2015 Indiana Department of Revenue United States Identity Theft 1,262 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 18, 2015 Captain 69 Worldwide Escort Reviews United Kingdom Account Access 2,653 uK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 18, 2015 MeetMeInYourCity United Kingdom Account Access 2,500 uK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 18, 2015 Medvet Laboratories Australia Identity Theft 800 Australian Privacy Act 1988 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 18, 2015 University College Hospital United Kingdom Identity Theft 1 uK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 17, 2015 UCLA Health System United States Identity Theft 4,500,000 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 17, 2015 Nonprofit Organizations United States Identity Theft 630,000 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 17, 2015 AFC Kredieten Belgian Financial Access 24,000 EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 17, 2015 Mrs. Fields Gifts United States Identity Theft 1,789 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 17, 2015 Preferred Guest Resorts United States Identity Theft 1,800 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 17, 2015 Saskatchewan Cancer Agency Canada Identity Theft 900 Canada PIPA & PIPEDA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 17, 2015 U.S Navy Japan Identity Theft 5 California SB-1386 & other State derivatives. Japan Privacy Act A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 17, 2015 VFS Global United Kingdom Identity Theft Unknown uK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 16, 2015 Ontario Disability Support Program Canada Identity Theft 500 Canada PIPA & PIPEDA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 16, 2015 University of South Alabama United States Identity Theft 80 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 16, 2015 Duck gas Station United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 16, 2015 Smartlabtoys United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 16, 2015 Ohio Prison United States Account Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 16, 2015 Sports Traders Canada Identity Theft Unknown Canada PIPA & PIPEDA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 16, 2015 UniCredit.au/RBC.au/RosBusinessConsulting Italy Identity Theft 151,000 EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 16, 2015 Utah Food Bank United States Financial Access 10,385 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 16, 2015 LSU Health New Orleans School of Medicine United States Identity Theft 14,500 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 15, 2015 Costco/PNI Digital Media United States Financial Access 2,200 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 15, 2015 Viewpoint Construction Software United States Identity Theft 115 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 15, 2015 Home Bank & Trust United States Financial Access 24 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 15, 2015 Aon Hewitt United States Identity Theft Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 15, 2015 Barfoot & Thompson New Zealand Existential Data Unknown New Zealand Privacy Act 1993 A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 15, 2015 Epic Games forum United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 15, 2015 New Horizons Computer Learning Centers United States Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 15, 2015 YapStone United States Identity Theft Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 15, 2015 CVSphoto Canada Financial Access Unknown Canada PIPA & PIPEDA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 15, 2015 Rite Aid United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 15, 2015 Sam's Club United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 15, 2015 Tescophoto.com United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 14, 2015 Oakland Family Services United States Identity Theft 16,107 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 14, 2015 Maricopa Special Health Care United States Identity Theft 633 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 14, 2015 Magento's Security United States Identity Theft Unknown California SB-1386 & other State derivatives. A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 14, 2015 Scient Federal Credit Union United States Identity Theft Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 13, 2015 Bollywood India Existential Data Unknown The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 13, 2015 Insurance Services Office United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 13, 2015 Kenya's national Russia Identity Theft Unknown Russian Federal Law on Personal Data (No. 152-FZ) A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 13, 2015 U.S. Women's Soccer Team Parade United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 11, 2015 U.S. Army National Guard United Kingdom Identity Theft 850,000 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 11, 2015 North East Medical Services United States Identity Theft 69,246 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 11, 2015 Mayo Clinic United States Identity Theft 601 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 11, 2015 Ohio University Hospital United States Identity Theft 300 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 10, 2015 Walmart Canada / PNI Digital Media Canada Financial Access 60,000 Canada PIPA & PIPEDA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 10, 2015 Bevo POS United States Financial Access 799 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 10, 2015 University Hospitals Elyria Medical Center United States Identity Theft 297 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 10, 2015 Howard University Hospital United States Financial Access 1,445 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 10, 2015 Round Rock Citizens United States Identity Theft 80 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 10, 2015 Province's Prescription Drug Plan/ Newfoundland and Labrador's health department United States Identity Theft 6 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 10, 2015 Port Hardy firefighters Canada Account Access 2 Canada PIPA & PIPEDA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 9, 2015 Hemmakv_ll Sweden Account Access 50,000 EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 9, 2015 Dow Jones United States Financial Access 3,500 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 9, 2015 Jenkinson's Breakwater Beach Waterpark United States Identity Theft 200 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 9, 2015 PagerDuty United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 9, 2015 Sunflower Bank ATM United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 9, 2015 UAE Bank Dubai Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 9, 2015 myRepoSpace Global Existential Data Unknown California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 8, 2015 Edinburgh City Council United Kingdom Account Access 13,000 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 8, 2015 Aberdeen Royal Infirmary United Kingdom Identity Theft 8,100 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 8, 2015 Dynasty Buffet United States Financial Access 25 California SB-1386 & other State derivatives, PCI/Visa CISP A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 8, 2015 Wigan residents United Kingdom Identity Theft 24 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 8, 2015 Wm. T. Burnett & Co./STX United States Identity Theft Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 7, 2015 Jackson Memorial Hospital United States Identity Theft 2 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 7, 2015 The Georgia Bureau of Investigation Georgia Existential Data Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 6, 2015 University of Rhode Island United States Account Access 3,000 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 6, 2015 Middlesex London Health Unit United Kingdom Identity Theft 12 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 6, 2015 Totally Promotional/Casad United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 6, 2015 Brookdale Main Street United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 5, 2015 Hacking Team Italy Existential Data 32,310 EU Directive on Data Protection A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 5, 2015 Colorado Office of Information Technology United States Identity Theft 1,422 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 5, 2015 Department of Corrections and Rehabilitation United States Identity Theft 1,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 5, 2015 Boston University United States Identity Theft 174 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 5, 2015 East Sussex NHS Trust/Conquest Hospital United Kingdom Identity Theft 3,634 UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 5, 2015 Mental Health Advocacy and Peer Support (MHAPS) New Zealand Identity Theft 200 New Zealand Privacy Act 1993 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 4, 2015 Bharat Sanchar Nigam Limited (BSNL) Telecommunications Journal India Account Access 30,000,000 The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 4, 2015 Brunswick Hotel and Tavern United States Financial Access 2,600 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 3, 2015 UCLA Health United States Identity Theft 1,242 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 3, 2015 Scottrade United States Nuisance 1,240 California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 3, 2015 GM Financial Canada Identity Theft Unknown Canada PIPA & PIPEDA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 3, 2015 Houma's Dynasty Buffet United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 3, 2015 Sunoco In Pasco gas station United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 3, 2015 Cash Express United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 2, 2015 Azerbaijan Bank Azerbaijan Account Access 5,650 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 2, 2015 Hong Kong Universities and Government Agencies Hong Kong Identity Theft 2,000 Personal Data (Privacy) Ordinance (PCPD) A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 2, 2015 Quebec Parental Insurance Plan Centre, The Ministry of Labor, Employment and Social Solidarity (MTESS) and The National Review Commission website Canada Existential Data 2,000 Canada PIPA & PIPEDA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 2, 2015 Bishop Luers High School/ Fort Wayne-South Bend Diocese schools United States Existential Data 13,600 California SB-1386 & other State derivatives,FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 2, 2015 UPMC Health Plan United States Account Access 722 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 2, 2015 Cromwell Middle School United States Identity Theft 159 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
July 2, 2015 Plex United Kingdom Existential Data Unknown UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 2, 2015 Circle K station gas pumps United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 2, 2015 Vmware United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 2, 2015 Citibank Australia Financial Access Unknown Australian Privacy Act 1988 A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 2, 2015 Lillian's Restaurant United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
July 2, 2015 Graham Central Station United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 2, 2015 Waikato high school New Zealand Identity Theft 1 New Zealand Privacy Act 1993 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
July 1, 2015 Salita's Restaurant United States Financial Access 2,000 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
July 1, 2015 Owensboro Health United States Identity Theft Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 11, 2015 Dr Patrick Le, Orange Art of Dentistry, Brookhust McFadden Dental, Comfort Dental, Riverside Dentistry United States Identity Theft 200 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
April 10, 2015 Principal Controller of Defence Accounts India Identity Theft 50,000 The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 10, 2015 BJL Cleaning Corporation, d/b/a Champion Cleaning United States Identity Theft 68 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 10, 2015 Fitchburg State University United States Identity Theft 393 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
April 10, 2015 New York State Office of Mental Health Nathan S. Kline Institute for Psychiatric Research United States Identity Theft 563 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
April 10, 2015 Lincoln County Police United States Existential Data Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 9, 2015 Auburn University United States Identity Theft 364,012 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
April 9, 2015 Unity Recovery Group, Starting Point Detox, Lakeside Treatment Center,Changing Tides Transitional Living, and Unity Recovery Center United States Identity Theft 1,000 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
April 9, 2015 Paul R. Smith Middle School United States Existential Data Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 9, 2015 TV5MONDE Switzerland Account Access 5 EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 9, 2015 Cain Vineyard and Winery United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 9, 2015 Heitz Wine Cellars United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 9, 2015 Round Pond Estates United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 9, 2015 Silverado Vineyards United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 9, 2015 Honig's Whistlestop United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 9, 2015 Regina Businesses Canada Financial Access Unknown Canada PIPA & PIPEDA A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
April 9, 2015 Summers Estate Wine United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 9, 2015 TeleChoice Australia Identity Theft Unknown Australian Privacy Act 1988 A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
April 9, 2015 University Hospital Galway United Kingdom Identity Theft Unknown UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
April 8, 2015 Russian website for anonymous reviews Russia Existential Data 6,700,000 Russian Federal Law on Personal Data (No. 152-FZ) A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 8, 2015 Lebanon Lutheran Church United States Identity Theft 6,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 8, 2015 New York State Comptroller's Office United States Identity Theft 24 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
April 8, 2015 Charlotte Gas Station United States Financial Access 16 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 8, 2015 Obamacare Call Center United States Identity Theft 17 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
April 8, 2015 Harbor Homes United States Nuisance 189 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
April 8, 2015 Donelan Family Wines United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 8, 2015 Flora Springs Winery & Vineyards United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 8, 2015 Jessup Cellars dba The Good Life Wine Collective United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 8, 2015 Larkmead Vineyards Vinter and Grower United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 8, 2015 Martinelli Winery United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 8, 2015 Repris United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 8, 2015 Spring Mountain Vineyard United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 7, 2015 Southern Powerlifting Federation United States Account Access 15,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 7, 2015 Fort Campbell Federal Credit Union United States Financial Access 1,307 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 7, 2015 Department of Aging and Disability Services United States Identity Theft 6,600 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
April 7, 2015 lhbltd.com Israel Identity Theft 2,000 The Privacy Protection Act (PPA) & Basic Law: Human Dignity and Liberty A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 7, 2015 ADT LLC Group Health & Welfare Plan United States Identity Theft 3,074 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
April 7, 2015 Fisher Vineyards United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 7, 2015 Gemstone Vineyards United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 7, 2015 Kanzler Vineyards United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 7, 2015 Outpost Vineyards United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 7, 2015 Cedars Health Clinics United States Financial Access Unknown California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
April 6, 2015 Allina Health United States Identity Theft 6,000 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
April 6, 2015 Fred Finch Youth Center United States Identity Theft 6,871 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 6, 2015 Pride Mountain Vineyards United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 5, 2015 Central New Mexico Community College New Mexico Identity Theft 3,000 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 5, 2015 Stanislaus Surgical Hospital United States Identity Theft 1,170 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 5, 2015 Wellesley College United States Identity Theft 700 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 5, 2015 WAYEB Europe Account Access 477 EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 5, 2015 Success 4 Kids & Families (S4KF) United States Identity Theft 506 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 5, 2015 Huneeus Vintners United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 4, 2015 AT&T Mexico Identity Theft 280,000 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
April 4, 2015 RUAG Switzerland Identity Theft 30,000 EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 4, 2015 Calgary police Canada Nuisance 400 Canada PIPA & PIPEDA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 4, 2015 Tewksbury Police Department United States Existential Data Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 3, 2015 SUPERVALU Group Health plan United States Identity Theft 10,946 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 3, 2015 Australian Federal Police & Telstra Australia Identity Theft 2,000 Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 3, 2015 Covenant Ministries of Benevolance United States Identity Theft 782 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 3, 2015 Office of Elizabeth Kerner United States Account Access 873 California SB-1386 & other State derivatives, HIPAA Security A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
April 3, 2015 CVS United States Identity Theft 100 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
April 3, 2015 Change.org United States Account Access 100 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 3, 2015 Charles Krug Winery (C. Mondavi & Family) United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 3, 2015 Kosta Browne Winery United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 3, 2015 Rhys Vineyards United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 3, 2015 Signorello Estate United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 3, 2015 Miami-Dade Police Department United States Identity Theft Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
April 3, 2015 Oregon & Health CO-OP United States Existential Data Unknown California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
April 2, 2015 City of Philadelphia Fire Department United States Identity Theft 81,463 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 2, 2015 Concordia Plan Services United States Identity Theft 12,500 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 2, 2015 CDC/NIOSH World Trade Center Health Program (WTCHP) United States Identity Theft 958 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 2, 2015 Cigna-Health Spring United States Identity Theft 862 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 2, 2015 PIH Health Hospital - Whittier United States Identity Theft 826 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 2, 2015 Schaeffler Group USA United States Identity Theft 550 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 2, 2015 VA Eastern Colorado Health United States Identity Theft 508 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 2, 2015 Island Health Canada Identity Theft 198 Canada PIPA & PIPEDA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
April 2, 2015 Pediatric Associates United States Identity Theft 627 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
April 2, 2015 Chico State University United States Identity Theft 10 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 2, 2015 Corison Winery United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 2, 2015 Howe Riley & Howe PLLC United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 2, 2015 Palmaz Vineyards United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 2, 2015 Eataly United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 2, 2015 Hard Rock Hotel & Casino United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 2, 2015 Jefferson Davis Highway ATM United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
April 1, 2015 U.S Department of the Interior, U.S. Office of Personnel Management United States Identity Theft 22,000,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 1, 2015 Gallant Risk & Insurance United States Identity Theft 995 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 1, 2015 Wisconsin Veterans United States Identity Theft 637 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
April 1, 2015 Tewksbury Public Schools United States Existential Data 83 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
April 1, 2015 HBO United States Existential Data 4 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 1, 2015 State Department United States Existential Data Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
April 1, 2015 Monroe High School United States Existential Data Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 31, 2015 Westland Middle School United States Account Access 1,400 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 31, 2015 Court Appointed Special Advocates of Travis County United States Identity Theft 800 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 31, 2015 Biggby Coffee, Traction United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 31, 2015 NewMarket Health United States Financial Access Unknown California SB-1386 & other State derivatives, HIPAA Security, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 31, 2015 Copart United States Account Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 31, 2015 CASA of Travis County United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 30, 2015 000webhost/troyhunt.com Global Account Access 13,500,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 30, 2015 British Airways United Kingdom Financial Access 10,000 UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 30, 2015 Bradley University United States Identity Theft 4,700 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 30, 2015 Coral Palm Auto Sales United States Identity Theft 200 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 30, 2015 Blair & Associates United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 30, 2015 Intimacy Management United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 30, 2015 Puush Australia Account Access Unknown Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 28, 2015 Freelancers Insurance United States Identity Theft 43,068 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 28, 2015 DMV Offices In Riverside United States Existential Data 30 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 28, 2015 Multiplay United Kingdom Identity Theft Unknown UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 27, 2015 Project Vida Health Center United States Identity Theft 7,700 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 27, 2015 New United States Identity Theft 500 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 27, 2015 Public Works and Government Services Canada Canada Identity Theft 260 Canada PIPA & PIPEDA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 27, 2015 Beau Chene High School United States Existential Data 10 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 27, 2015 VA Community Based Outpatient Clinic (CBOC) United States Identity Theft 70 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 27, 2015 Department of Administrative Services United States Existential Data Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 27, 2015 For The Record Australia Nuisance Unknown Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 26, 2015 CVS/Molina Healthcare United States Identity Theft 54,203 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
March 26, 2015 Ventura County Health Care Agency United States Identity Theft 1,339 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 26, 2015 Cryptoine United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 26, 2015 Morgan County Health Center United States Financial Access Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
March 25, 2015 Seven 11, Comprehensive Welfare Benefits Plan United States Identity Theft 1,688 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 25, 2015 Northern Territory's Country Liberals Australia Financial Access 67 Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 25, 2015 Hotel Beacon United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 24, 2015 Bluesfest Canada Existential Data Unknown Canada PIPA & PIPEDA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 24, 2015 twitch United States Existential Data Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 24, 2015 EllisLab, ExpressionEngine CMS United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 23, 2015 AT&T Group Health Plan United States Identity Theft 50000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 23, 2015 Heartland Dental United States Identity Theft 2,860 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 23, 2015 Hilton United States Account Access 44 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 23, 2015 Victorville Social Security office United States Identity Theft 50 California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 23, 2015 Department of Business Oversite United States Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 23, 2015 Citibank NY United States Identity Theft 1 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
March 23, 2015 Colchester Borough Council United Kingdom Identity Theft Unknown UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 23, 2015 Doran Reality United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 23, 2015 M&T Bank United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 22, 2015 Linux Australia Account Access 5000 Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 22, 2015 Swedesboro-Woolwich School District United States Existential Data 1700 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 22, 2015 Newton County United Way United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 21, 2015 MetroHealth System United States Identity Theft 981 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 21, 2015 U.S. Army United States Identity Theft 100 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 21, 2015 United Bank Limited Pakistan Existential Data Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
March 21, 2015 Columbian Mutual Life Insurance Company United States Identity Theft Unknown California SB-1386 & other State derivatives A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 20, 2015 Fit College Australia Identity Theft 11000 Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 20, 2015 Mount Sinai Medical Center United States Identity Theft 1,406 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 20, 2015 Life Care Center of Attleboro United States Identity Theft 2473 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 20, 2015 Vermont State Police United States Identity Theft 39 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
March 20, 2015 Community Health Network United States Identity Theft 600 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 20, 2015 Tom Bradley International Terminal United States Financial Access 19 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 20, 2015 Holyoake Australia Identity Theft 27 Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 20, 2015 Bank of Montreal Canada Existential Data Unknown Canada PIPA & PIPEDA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
March 20, 2015 PCSO United Kingdom Identity Theft Unknown UK Data Protection Act & EU Directive on Data Protection A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
March 20, 2015 Calgary Board of Education Canada Account Access Unknown Canada PIPA & PIPEDA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 19, 2015 Career Education Corporation United States Identity Theft 151,626 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 19, 2015 Boyd Hospital United States Identity Theft 8,300 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 19, 2015 Kane Hall Barry Neurology United States Identity Theft 600 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 19, 2015 Tulare County Health & Human Services Agency United States Account Access 845 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 19, 2015 Effingham High School United States Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 19, 2015 Thousand Oaks United States Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 18, 2015 Register.com United States Existential Data 1,400,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 18, 2015 WSFS Bank United States Financial Access 200 California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
March 18, 2015 Equifax United States Identity Theft 300 California SB-1386 & other State derivatives, PCI/Visa CISP A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 18, 2015 British Judo Association United Kingdom Financial Access Unknown UK Data Protection Act & EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 18, 2015 Anglesey United Kingdom Identity Theft Unknown UK Data Protection Act & EU Directive on Data Protection A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 17, 2015 Retail Capital United States Identity Theft 714 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 17, 2015 Ivanhoe Grammar School Australia Account Access 1,000 Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 17, 2015 Labio France Identity Theft 100 EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 17, 2015 Grace Hospital United States Identity Theft 56 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
March 17, 2015 Rolling Hills Hospital United States Identity Theft 200 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
March 17, 2015 Ahwa India Existential Data Unknown The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 17, 2015 New York City Police Department United States Existential Data Unknown California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
March 17, 2015 Coinapult Global Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 17, 2015 Saint Francis Health Hospital United States Financial Access Unknown California SB-1386 & other State derivatives, HIPAA Security A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
March 17, 2015 Tampa Bay Area Gas Station United States Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 17, 2015 Madison Park Senior Community United States Financial Access 1 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
March 17, 2015 Berkeley Health Center, Bay Area Consortium for Quality Health Care United States Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
March 17, 2015 Premera Blue Cross, Washington Identity Theft 11,000,000 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 16, 2015 Advantage Dental. Washington Identity Theft 151,626 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 16, 2015 Bistro Burger. California Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 16, 2015 Apple America Group LLC.  Ohio Existential Data Unknown California SB-1386 & other State derivatives, FERPA A.11.1.1 - Physical security perimeter                             A.8.3.3 Physical media transfer
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
March 13, 2015 EyeCare of Bartlesville. Oklahoma Identity Theft 4,000 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 12, 2015 Virginia Department of Medical Assistance Services Identity Theft 697,586 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 11, 2015 Dr. Anthony T.R. Green DDS New York Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions  A.8.3.3 Physical media transfer
March 6, 2015 Valley Community Healthcare. California Existential Data Unknown California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions  A.8.3.3 Physical media transfer
March 6, 2015 Indiana State Medical Association.  Indiana Existential Data Unknown California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 6, 2015 San Francisco General Hospital and Trauma Center. California Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.11.1.1 - Physical security perimeter                             A.8.3.3 Physical media transfer
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
March 5, 2015 St. Mary's Health Indiana Identity Theft 3,952 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 5, 2015 Sharon J. Jones M.D. California Identity Theft 1,342 California SB-1386 & other State derivatives, HIPAA Security A.11.1.1 - Physical security perimeter                            
A.8.3.3 Physical media transfer
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
March 5, 2015 Mosaic Medical. Oregon Existential Data 2,207 California SB-1386 & other State derivatives, HIPAA Security A.11.1.1 - Physical security perimeter 
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
March 4, 2015 Mandarin Oriental Hotel Group New York Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP.          
UK Data Protection Act 
A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 3, 2015 Toys "R" Us New Jersey Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 3, 2015 Pioneer Bank New York Financial Access Unknown California SB-1386 & other State derivatives, HIPAA Security, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
March 3, 2015 Clinical Reference Laboratory Kansas Account Access 4,668 California SB-1386 & other State derivatives, HIPAA Security A.8.3.3 - Physical media transfer                                   A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 2, 2015 Natural Grocers. Colorado Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 2, 2015 Piedmont Advantage Credit Union,  North Carolina Identity Theft Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
March 2, 2015 Advance Rehabilitation & Consulting LTD. Georgia Account Access 570 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 2, 2015 Georgia Department of Community Health. Georgia Account Access 557,779 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
March 1, 2015 Amedisys. Louisiana Account Access 6,909 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
February 27, 2015 Uber Technologies Inc. California  Account Access 50,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
February 27, 2015 Bulk Reef Supply Minnesota Account Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.10.9.1 - Electronic Commerce
A.10.9.2 - On-line transactions
A.10.9.3 - Publicly Available Information
February 27, 2015 St. Vincent Hospital and Health Care Center Inc. Indiana Existential Data 63,325 California SB-1386 & other State derivatives, HIPAA Security A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
February 27, 2015 Cathrine Steinborn, DDS California Identity Theft 3,224 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
February 27, 2015 Aventura Hospital and Medical Center Florida Account Access 686 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
February 26, 2015 Raymond Mark Turner, M.D. Nevada Existential Data 2,153 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking A.9.1.1 - Physical security perimeter
A.9.1.2 - Physical entry controls
A.9.2.1 - Equipment siting and protection
February 25, 2015 Lime Crime New York Financial Access Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
February 24, 2015 Cathrine Steinborn, Dentist California Identity Theft   California SB-1386 & other State derivatives, HIPAA Security A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
February 24, 2015 The Urban Institute. District Of Columbia Account Access 700,000 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
February 23, 2015 Lone Star Circle of Care. Texas Existential Data 8,700 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
February 20, 2015 American Apparel, Inc. California Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
February 20, 2015 Marketing Clique. Texas Account Access Unknown California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
February 18, 2015 The Office of Jeb Bush Florida Account Access 12,500 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
February 18, 2015 University of Maine Identity Theft 604 California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
February 17, 2015 Escondido Union School District California Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
February 13, 2015 Liberty Tax Services California Existential Data Unknown California SB-1386 & other State derivatives. A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
February 12, 2015 Big Fish Games. Washington Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
February 9, 2015 Dr. Arturo Tomas. Illinois Existential Data Unknown California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training A.13.2.3 - Electronic Messaging
February 5, 2015 Anthem - Indiana Account Access 80,000,000 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
February 5, 2015 Planned Parenthood Southwest Ohio Existential Data 50,000 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
February 4, 2015 South Sunflower County Hospital. Mississippi Existential Data 19,345 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
February 2, 2015 Boston Baskin Cancer Foundation Tennessee Account Access 56,694 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
February 1, 2015 CitiStorage New York Existential Data Unknown California SB-1386 & other State derivatives. A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
January 30, 2015 Unknown Organization, Jewish General Hospital Existential Data Unknown California SB-1386 & other State derivatives, HIPAA Security A.8.3.3 Physical media transfer                                    
A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 30, 2015 Florida Department of Corrections Existential Data 572 California SB-1386 & other State derivatives A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
January 29, 2015 Riverside County Regional Medical Center Existential Data 7,900 California SB-1386 & other State derivatives, HIPAA Security A.11.2.6 - Security of equipment and assets
A .6.2.1 - Mobile device policy
A. 6.2.2 - Teleworking
January 29, 2015 UK Ministry of Justice Existential Data Unknown UK Data Protection Act & EU Directive on Data Protection A.8.3.3 Physical media transfer                                     A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 29, 2015 Prince Albert Parkland Health Region Account Access 12 California SB-1386 & other State derivatives, HIPAA Security A.8.2.1 - Classification of information
A.8.2.2 - Labelling of Information
A.7.2.2 - Information security awareness, education and training
January 28, 2015 Raptr, Inc. Identity Theft Unknown California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 28, 2015 UMass Memorial Healthcare Identity Theft 14,000 California SB-1386 & other State derivatives, HIPAA Security, PCI/Visa CISP A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
January 27, 2015 French Lick Resort Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 26, 2015 Harel Chiropractic & Massage Existential Data 3,000 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
January 23, 2015 Barbecue Renew, Inc. Existential Data Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 21, 2015 Sunglo Home Health Services Identity Theft Unknown California SB-1386 & other State derivatives, HIPAA Security A.11.1.1 - Physical security perimeter
A.11.1.2 - Physical entry controls
A.11.2.1 - Equipment siting and protection
January 21, 2015 Mount Pleasant Independent School District Nuisance 915 California SB-1386 & other State derivatives, HIPAA Security A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 20, 2015 California State University Dominguez Hills Nuisance 747 California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 20, 2015 Lubbock Housing Authority Nuisance 1,100 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 19, 2015 Unknown Organization, Heartland Payment Systems Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 19, 2015 TDC A/S Existential Data 186 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 19, 2015 Wingstop Restaurants Inc. Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 18, 2015 GREERS Professional Fabricare Services Account Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 18, 2015 Campbelltown City Council, Australia Nuisance 15 Australian Privacy Act 1988 A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 16, 2015 Lakes District Health Board Identity Theft 600 California SB-1386 & other State derivatives, HIPAA Security A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
January 16, 2015 Metropolitan State University Identity Theft Unknown California SB-1386 & other State derivatives, FERPA A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 15, 2015 Zavit3 Account Access 10 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 12, 2015 Republic of Turkey Existential Data 50,000,000 EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 12, 2015 UniME (Kleissner & Associates s.r.o.), Czech Nuisance 200 EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 12, 2015 Vallikodi Vanniar Matrimonial, India Nuisance 210 The IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 10, 2015 Restaurant Le Maharaja Nuisance 136 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 09, 2015 Banque Cantonale de Genève Financial Access Unknown EU Directive on Data Protection A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 09, 2015 The State Bank Nuisance 13 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 08, 2015 Brilliant Student Nuisance 156 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 07, 2015 AMResorts Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 05, 2015 Morgan Stanley Identity Theft 350,000 California SB-1386 & other State derivatives, GLBA A.6.1.1 - Information security roles and responsibilities
A.7.1.1 - Screening
A.7.1.2 - Terms and conditions of employment
A.7.2.1 - Management responsibilities
A.7.2.2 - Information security awareness, education and training
A.8.2.4 - Return of assets
A.9.2.5 - Removal  or adjustment of access rights
January 05, 2015 Fast Forward Academy Financial Access Unknown California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 05, 2015 Ourtribune.com Nuisance 27 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 05, 2015 PumpsForLess.com Nuisance 928 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 05, 2015 Moonpig Limited Financial Access 3,000,000 California SB-1386 & other State derivatives, PCI/Visa CISP A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 03, 2015 Starin Marketing, Inc. Account Access 662 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
January 02, 2015 Dorog Account Access 11 California SB-1386 & other State derivatives A.14.1.2 - Securing Applications Services on Public Networks
A.14.1.3 - Protecting Applications Services Transactions
    ESTIMATED TOTAL (ROUGH):  616,276,237    
GRC Certification
Bookmark and Share
Copyright 2005-2017 by eFortresses, Inc. All rights reserved.