DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Attorney General Reaches Settlement with Certegy Check Services over Data Breach

Posted on April 16, 2010 by Dissent

Attorney General Bill McCollum today announced a settlement with a financial services company over allegations the company did not provide adequate data security for consumer records. Certegy Check Services, Inc., a St. Petersburg-based company, experienced a massive data breach which exposed personal identification information from approximately 5.9 million consumer files. Under the settlement, the company will ensure that safeguards are in place to protect consumer data.

Certegy Check Services, Inc., a related company, Fidelity National Card Services, and subsidiaries of Fidelity National Information Services, Inc., reported in July 2007 that customer data had been stolen by a former company employee. Certegy promptly notified the Attorney General and consumers of the data thefts, and cooperated with the Attorney General’s investigation. Subsequently, William Gary Sullivan, a former Certegy employee, was convicted of fraud and is currently serving a 57-month sentence in federal prison. Certegy and Fidelity also cooperated with investigations into the dissemination of consumer data through data brokers and marketers.

As part of a class action settlement in U.S. District Court in Tampa, consumers were given the opportunity to elect credit monitoring for one year or bank account monitoring for two years and were able to seek reimbursement of certain out-of-pocket costs incurred or identity theft expenses. Additionally, consumers were able to request credit monitoring at the company’s expense immediately after the thefts were announced.

The settlement with the Attorney General’s Office ensures that Certegy will maintain a comprehensive “Information Security Program” that assesses internal and external risks to consumers’ personal information, implements safeguards to protect that consumer information, and regularly monitors and tests the effectiveness of those safeguards. Certegy and its related entities will also adhere to payment card industry data security standards as those standards continue to evolve.

In addition to the compliance standards, Certegy will contribute $125,000 to the Attorney General’s Seniors vs. Crime Program for educational, investigative and crime prevention programs for the benefit of senior citizens and the community and will pay $850,000 for the state’s investigative costs and attorney’s fees. This investigation and settlement was handled by the Attorney General’s Economic Crimes Division.

If consumers believe at any time they are victims of identity theft, they should report the incidents to the local law enforcement and request that the national credit bureaus place fraud alerts on their credit reports. Consumers should also notify banks and creditors involved of questionable charges or accounts, keep records of all telephone calls and follow up in writing with credit bureaus, banks and creditors. Consumers are urged to review their credit reports as well as bank and credit card account transactions regularly for suspicious activity, and can find additional information about protecting themselves from identity theft online at http://www.myfloridalegal.com/identitytheft.

A copy of the agreement is available online at: http://myfloridalegal.com/webfiles.nsf/WF/MRAY-84KKQN/$file/CertegyAVC.pdf.


Related:

  • Attorney General James Announces Settlement with Wojeski & Company Accounting Firm
  • JFL Lost Up to $800,000 Weekly After Cyberattack, CEO Says No Patient or Staff Data Was Compromised
  • John Bolton Indictment Provides Interesting Details About Hack of His AOL Account and Extortion Attempt
  • UK: 'Catastrophic' attack as Russians hack files on EIGHT MoD bases and post them on the dark web
  • Before Their Telegram Channel Was Banned Again, ScatteredLAPSUS$Hunters Dropped Files Doxing Government Employees (2)
  • Massachusetts hospitals Heywood, Athol say outage was a cybersecurity incident
Category: Financial SectorInsiderOf NoteTheftU.S.

Post navigation

← DVDs with Lorillard Tobacco employee data missing
(update) 9-year-old didn’t hack Blackboard system →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • District of Massachusetts Allows Higher-Ed Student Data Breach Claims to Survive
  • End of the game for cybercrime infrastructure: 1025 servers taken down
  • Doctor Alliance Data Breach: 353GB of Patient Files Allegedly Compromised, Ransom Demanded
  • St. Thomas Brushed Off Red Flags Before Dark-Web Data Dump Rocks Houston
  • A Wiltshire police breach posed possible safety concerns for violent crime victims as well as prison officers
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Almost two years later, Alpha Omega Winery notifies those affected by a data breach.
  • Court of Appeal reaffirms MFSA liability in data leak case, orders regulator to shoulder costs
  • A jailed hacking kingpin reveals all about the gang that left a trail of destruction
  • Army gynecologist took secret videos of patients during intimate exams, lawsuit says

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • As shoplifting surges, British retailers roll out ‘invasive’ facial recognition tools
  • Data broker Kochava agrees to change business practices to settle lawsuit
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Changes in the Rules for Disclosure for Substance Use Disorder Treatment Records: 42 CFR Part 2: What Changed, Why It Matters, and How It Aligns with HIPAAs
  • Always watching: How ICE’s plan to monitor social media 24/7 threatens privacy and civic participation

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.