Welcome!

News Feed Item

NAFCU: Credit Unions Pay High Price for Data Breaches

The National Association of Federal Credit Unions’ (NAFCU) February Economic & CU Monitor survey found that credit unions, and by extension their 96 million members, are paying a high price for retailers’ data breaches. NAFCU estimates that the recent Target data breach could end up costing the credit union community nearly $30 million. Among those surveyed, the average cost for the Target data breach was $45,000.

“The survey findings are staggering. Credit unions are being hit by a double whammy in terms of numbers of possible data breaches and costs while they continue to pick up the tab for retailers who are not subject to the same high level of data security standards,” said NAFCU Chief Economist and Director of Research David Carrier. “It is ironic that despite the ample rules in place to ensure data protection standards at financial institutions like credit unions, merchants and retailers are not held accountable for data breaches. Cybercriminals will continue to capitalize on this double standard and wreak havoc with consumers and our economy.”

NAFCU’s Economic & CU Monitor on data security reported:

  • Respondents were alerted to a possible breach 263 times on average in 2013, and the average amount spent on data security measures was $158,600.
  • Respondents reported an average of $152,000 for data breaches in 2013. The median cost was $59,000.
  • The bulk of these costs were related to fraud losses and investigations (46.7 percent), followed by reissue costs (34.4 percent) and monitoring costs (19 percent). Reissuing cards takes 7 days, on average, and costs $5 per card.
  • Almost half (42 percent) of respondents confirmed that their reputation had been harmed due to a merchant data breach.
  • Survey respondents indicated that an average of 10,300 cards were affected by merchant data breaches in 2013.

NAFCU was the first financial services trade association to weigh in on this issue on Capitol Hill and urged Congress to take action and set national data security standards for retailers and merchants. Financial institutions, including credit unions, have been subject to standards on data security since 1999 under the Gramm-Leach-Bliley Act. However, retailers and other entities that handle sensitive personal financial data are not. So, when a data breach occurs, financial institutions bear a significant burden as the issuers of payment cards used by millions of consumers.

NAFCU is urging Congress to pass S. 1927, the “Data Security Act of 2014,” by Sens. Tom Carper, D-Del., and Roy Blunt, R-Mo. This bill leaves intact the federal standards already imposed on financial institutions and seeks to extend the protection further, by setting national standards for all merchants and retailers to follow in protecting data, providing timely breach notification and paying their share of the clean-up when breaches occur.

NAFCU’s Economic and CU Monitor is a member-only monthly e-newsletter of the latest macroeconomic and financial trends affecting today's credit unions, including trend data among NAFCU member federal credit unions.

The National Association of Federal Credit Unions is the only national organization that focuses exclusively on federal issues affecting credit unions, representing its members before the federal government and the public.

More Stories By Business Wire

Copyright © 2009 Business Wire. All rights reserved. Republication or redistribution of Business Wire content is expressly prohibited without the prior written consent of Business Wire. Business Wire shall not be liable for any errors or delays in the content, or for any actions taken in reliance thereon.

Latest Stories
SYS-CON Events announced today that EastBanc Technologies will exhibit at SYS-CON's 18th International Cloud Expo®, which will take place on June 7-9, 2016, at the Javits Center in New York City, NY. EastBanc Technologies has been working at the frontier of technology since 1999. Today, the firm provides full-lifecycle software development delivering flexible technology solutions that seamlessly integrate with existing systems – whether on premise or cloud. EastBanc Technologies partners with p...
In his session at 18th Cloud Expo, Andrew Cole, Director of Solutions Engineering at Peak 10, will discuss how the newest technology advances are reducing the cost and complexity of traditional business continuity and disaster recovery solutions. Attendees will: Learn why having a full disaster recovery strategy is more important now than ever before Explore the key drivers of a successful disaster recovery solution Achieve measurable operational and business value from a disaster recovery ...
SYS-CON Events announced today that Commvault, a global leader in enterprise data protection and information management, has been named “Bronze Sponsor” of SYS-CON's 18th International Cloud Expo, which will take place on June 7–9, 2016, at the Javits Center in New York City, NY, and the 19th International Cloud Expo, which will take place on November 1–3, 2016, at the Santa Clara Convention Center in Santa Clara, CA. Commvault is a leading provider of data protection and information management...
SYS-CON Events announced today that Tintri Inc., a leading producer of VM-aware storage (VAS) for virtualization and cloud environments, will exhibit at the 18th International CloudExpo®, which will take place on June 7-9, 2016, at the Javits Center in New York City, New York, and the 19th International Cloud Expo, which will take place on November 1–3, 2016, at the Santa Clara Convention Center in Santa Clara, CA.
SYS-CON Events announced today that Hanu Software will exhibit at SYS-CON's 18th International Cloud Expo®, which will take place on June 7-9, 2016, at the Javits Center in New York City, NY. Leveraging best-in-class people, processes, and technologies, Hanu provides high-quality, high-value software development and business process outsourcing services to independent software vendors (ISVs) and enterprises.
SYS-CON Events announced today Object Management Group® has been named “Media Sponsor” of SYS-CON's 18th International Cloud Expo, which will take place on June 7–9, 2016, at the Javits Center in New York City, NY, and the 19th International Cloud Expo, which will take place on November 1–3, 2016, at the Santa Clara Convention Center in Santa Clara, CA.
In his session at 18th Cloud Expo, Bruce Swann, Senior Product Marketing Manager at Adobe, will discuss how the Adobe Marketing Cloud can help marketers embrace opportunities for personalized, relevant and real-time customer engagement across offline (direct mail, point of sale, call center) and digital (email, website, SMS, mobile apps, social networks, connected objects). Bruce Swann has more than 15 years of experience working with digital marketing disciplines like web analytics, social med...
SYS-CON Events announced today that ContentMX, the marketing technology and services company with a singular mission to increase engagement and drive more conversations for enterprise, channel and SMB technology marketers, has been named “Sponsor & Exhibitor Lounge Sponsor” of SYS-CON's 18th Cloud Expo, which will take place on June 7-9, 2016, at the Javits Center in New York City, New York. “CloudExpo is a great opportunity to start a conversation with new prospects, but what happens after the...
The initial debate is over: Any enterprise with a serious commitment to IT is migrating to the cloud. But things are not so simple. There is a complex mix of on-premises, colocated, and public-cloud deployments. In this power panel at 18th Cloud Expo, moderated by Conference Chair Roger Strukhoff, panelists will look at the present state of cloud from the C-level view, and how great companies and rock star executives can use cloud computing to meet their most ambitious and disruptive business ...
The cloud era has reached the stage where it is no longer a question of whether a company should migrate, but when. Enterprises have embraced the outsourcing of where their various applications are stored and who manages them, saving significant investment along the way. Plus, the cloud has become a defining competitive edge. Companies that fail to successfully adapt risk failure. The media, of course, continues to extol the virtues of the cloud, including how easy it is to get there. Migrating...
SYS-CON Events announced today that Isomorphic Software will exhibit at SYS-CON's [email protected] at Cloud Expo New York, which will take place on June 7-9, 2016, at the Javits Center in New York City, NY. Isomorphic Software provides the SmartClient HTML5/AJAX platform, the most advanced technology for building rich, high-productivity enterprise web applications for any device. SmartClient couples the industry’s broadest, deepest UI component set with a java server framework to deliver an end-...
The IoTs will challenge the status quo of how IT and development organizations operate. Or will it? Certainly the fog layer of IoT requires special insights about data ontology, security and transactional integrity. But the developmental challenges are the same: People, Process and Platform. In his session at @ThingsExpo, Craig Sproule, CEO of Metavine, will demonstrate how to move beyond today's coding paradigm and share the must-have mindsets for removing complexity from the development proc...
SYS-CON Events announced today that AppNeta, the leader in performance insight for business-critical web applications, will exhibit and present at SYS-CON's @DevOpsSummit at Cloud Expo New York, which will take place on June 7-9, 2016, at the Javits Center in New York City, NY. AppNeta is the only application performance monitoring (APM) company to provide solutions for all applications – applications you develop internally, business-critical SaaS applications you use and the networks that deli...
Companies can harness IoT and predictive analytics to sustain business continuity; predict and manage site performance during emergencies; minimize expensive reactive maintenance; and forecast equipment and maintenance budgets and expenditures. Providing cost-effective, uninterrupted service is challenging, particularly for organizations with geographically dispersed operations.
What a difference a year makes. Organizations aren’t just talking about IoT possibilities, it is now baked into their core business strategy. With IoT, billions of devices generating data from different companies on different networks around the globe need to interact. From efficiency to better customer insights to completely new business models, IoT will turn traditional business models upside down. In the new customer-centric age, the key to success is delivering critical services and apps wit...