Are the Businesses You Frequent or Work for Exposing You to an Identity Thief?Copyright © 1996-2006. Privacy Rights Clearinghouse / UCAN Revised May 2005.
Assign 1 point for each NO answer.
___
It conducts a criminal or civil background check before hiring employees who will have access to personal identifying information and screens cleaning services, temp services, and contractors.
___
It provides cross-cut paper shredders at each workstation or cash register area for the disposal of credit card slips, sensitive data or prescription forms.
___
It "wipes" electronic files, destroys computer diskettes and CD-ROMs, and properly removes any data from computers before disposal.
___
It uses an alternate number instead of a Social Security numbers (SSNs) for employee, client and customer ID numbers.
___
It requires its health insurance providers to use an alternate number rather than the SSN for employee ID numbers on health insurance cards.
___
It has trained designated staff about security procedures in sending sensitive personal data by fax, email or telephone.
___
It places photos on employee business cards for better identification and security.
___
It keeps all personal data about employees and customers in locked cabinets.
___
It stores sensitive personal data in secure computer systems with access restricted only to qualified persons with a legitimate.
___
It has implemented electronic audit trail procedures to monitor who is accessing what and enforces strict penalties for illegitimate browsing and access.
___
It has installed encryption and other data safeguards for workplace mobile computers, such as laptops and PDAs, that contain files with sensitive personal data.
___
It has trained employees in how to receive personal identifying information from customers and clients without jeopardizing their security. For example, pharmacists who do not ask you to repeat your SSN aloud in a busy store.
___
It has a policy of never selling or sharing data about employees or customers.
___
It never asks for more data than absolutely necessary. For example, a health club does not need a SSN nor does a vet really need your driver's license number.
___
It does not print full SSNs on paychecks, parking permits, staff badges, time sheets, training program rosters, lists of who got promoted, on monthly account statements, on customer reports, you name it.
___
It notifies customers and/or employees of computer security breaches involving sensitive personal information.
___
It has developed a crisis management plan that includes instructions to prevent identity theft if SSNs and/or financial account numbers are obtained illegitimately or in case sensitive employee or customer data is lost, stolen, or acquired electronically.
___
It has adopted a comprehensive privacy policy that includes responsible information-handling practices and has appointed an individual and/or department responsible for the privacy policy, one who can be contacted by employees and customers with questions and complaints.
Each item illustrates what businesses can do to prevent identity theft. If they are not, it may be time for you to speak up.
If you weren't sure of some of the answers-perhaps you should be asking more questions at work and where you do business. It's your responsibility to be a ID theft aware consumer as well.
Copyright © 1999-2006. Privacy Rights Clearinghouse/UCAN. For distribution of this Identity Theft Quiz, see our copyright and reprint guidelines. This copyrighted document may be copied and distributed for nonprofit, educational purposes only.The text of this document may not be altered without express authorization of the Privacy Rights Clearinghouse. This quiz should be used as an information source and not as legal advice. PRC fact sheets contain information about federal laws as well as some California-specific information. Laws in other states may vary. Overall, our fact sheets are applicable to consumers nationwide.
Privacy Rights Clearinghouse, 3100 - 5th Ave., Suite B, San Diego, CA 92103. Web: http://www.privacyrights.org/index.htm Contact us: https://secure.privacyrights.org/inquiryform.html