The Marriott Breach Shows Just How Inadequate Cyber Risk Disclosures Are
Recently, Marriott waited 11 weeks to reveal that 383 million customer records had been compromised, exposing at least 25 million passport numbers and 8 million payment cards.
The Marriott breach offers four takeaways that can be useful to both senior managers and regulators: 1) cyber risk disclosure continues to be inadequate; 2) special events such as mergers and associated cost cutting can trigger cyber breaches; 3) systemic cyber risk in the system is building; and 4) boards continue to be unprepared or unqualified to deal with cyber risk.
Full article: The Marriott Breach Shows Just How Inadequate Cyber Risk Disclosures Are