ååã¯ããã§ãã¯ã»ãã€ã³ãã»ãœãããŠã§ã¢ã»ãã¯ãããžãŒãº(以äžããã§ãã¯ã»ãã€ã³ã)ãçºè¡ããããã§ãã¯ã»ãã€ã³ã ã»ãã¥ãªã㣠ã¬ããŒã 2013幎çããã宿°å€ãåŒçšããªããããµã€ããŒæ»æã«ã€ããŠç޹ä»ãããä»åãåã¬ããŒãã®èª¿æ»çµæãåèã«ããªãããçµç¹ã«ãããæ å ±æŒããã®å®æ ã«ã€ããŠè§£èª¬ããã
çµç¹ã«ã¯ãããŸããŸãªæ å ±ãæº¢ããŠããããã®æ å ±ãä¿ç®¡ã»ç®¡çããããã«ãITãå©çšããããšãåœããåãšãªã£ãŠä¹ ããããæ¹ããŠèªèããŠããããã®ãããããŒã¿ã®ç§»åã®ãããããã§ãããããŒã¿æ¶å€±ã®ãªã¹ã¯ã軜æžããããã®ããã¯ã¢ãããããã®ãããããããåæãšããŠè¡ãããŠããã±ãŒã¹ãå€ãã
æ å ±ã®ç§»åã容æã§ãããããã«ãæ©å¯æ å ±ãçã£ãAPTæ»æãæ¥å¢ããŠããããšã¯ãååã®èšäºã§è§Šãããã§ã¯ãã¿ãŒã²ãããšãããçµç¹åŽããèŠããšãã©ãã ãã®æ å ±æŒããã€ã³ã·ãã³ã(察çãè¬ããå¿ èŠãããäºæ¡)ãçºçããŠããã®ã ãããã
54%以äžã®çµç¹ã§æ å ±æŒããã€ã³ã·ãã³ããçºç
åã¬ããŒãã«ãããšãæ å ±æŒããã€ã³ã·ãã³ãã«ã€ãªããåé¡ã1件以äžèŠã€ãã£ãçµç¹ã®å²åã¯ã54%ã«ã®ãŒããšããã
ããã¯ãå€éšã¢ãã¬ã¹ãžã®ã¡ãŒã«éä¿¡ããŸãã¯Webãµã€ããžã®æçš¿ã«ãã£ãŠå éšæ å ±ãå€éšãªãœãŒã¹ãžéä¿¡ããäŒæ¥ã»çµç¹ã®æ°ãã«ãŠã³ããããã®ã ãç¹ã«ãå®å ¬åºãšéèæ©é¢ã§å€ãã®åé¡ãèŠã€ãã£ãŠãããšãããè£ãè¿ãã°ãå®å ¬åºãšéèæ©é¢ã¯ããªãã®ç¢ºçã§APTæ»æã®ã¿ãŒã²ããã«ãããŠãããšããããšã ã
ã¬ããŒãã§ã¯ãçµç¹å éšå®ãŠã®ã¡ãŒã«ãå€éšã®ã¢ãã¬ã¹ãžéä¿¡ãããŠããçµç¹ã®å²åã28%ã«éãããšãããŠãããå€éšã«éãããŠããããšã確èªãããæ å ±ã®çš®é¡ã§æãå€ãã£ãã®ã¯ãã¯ã¬ãžããã«ãŒãã®æ å ±ã§ã次ãã§ãœãŒã¹ã³ãŒãããã¹ã¯ãŒãã§ä¿è·ããããã¡ã€ã«ã®é ã«ãªã£ãŠããã
éèæ©é¢ã®36%ããã¯ã¬ãžããã«ãŒãæ å ±ãæµåº
ä»åã®èª¿æ»ã§ã¯ãçµç¹å éšããå€éšãžã®çºä¿¡ãã©ãã£ãã¯ãæ€æ»ããŠãæ·»ä»ãã¡ã€ã«ãã¢ãŒã«ã€ããå«ããã¹ãŠã®ã¡ãã»ãŒãžéšåãã¹ãã£ã³ããã¯ã¬ãžããã«ãŒãçªå·ããã®ä»ã®äŒå¡æ å ±ãå«ãã¡ãŒã«ãéãããŠããªããã©ããããã§ãã¯ããã
ãã®çµæã29%ã®çµç¹ã§ã¯ã¬ãžããã«ãŒãæ å ±ãå€éšã«éä¿¡ãããã€ãã³ãã1件以äžèŠã€ãã£ãŠãããå®å ¬åºã§ã¯47%ãéèæ©é¢ã§ã¯36%ãšããé«ç¢ºçã ãéèæ©é¢ã§ã¯ãå¹³æã®ã«ãŒãçªå·ãã€ã³ã¿ãŒãããçµç±ã§éä¿¡ããããšãçŠæ¢ãããŠãããã«ãŒãäŒå¡æ å ±ãéä¿¡ããå Žåãæå·åã矩åä»ããããŠããã
ããã¯ãPCI DSS(Payment Card Industry Data Security Standard)ãšããã¯ã¬ãžããã«ãŒãã®ã°ããŒãã«ã»ãã¥ãªãã£åºæºã§å®ããããŠãããã®ã ãã«ããããããã3å²ãè¶ ããéèæ©é¢ããã¯ã¬ãžããã«ãŒãã«é¢ä¿ããæ å ±æŒããã€ã³ã·ãã³ããçºèŠãããããããã¯äžé©åãªæ¥åããã»ã¹ã瀟å¡ã®æ³šæäžè¶³ãæèäžè¶³ã«èµ·å ãããã®ãå€ããšèããããã
ããã«ãç±³åœã«éã£ããã®ã ããå»çæ©é¢ãä¿éºäŒç€Ÿã®16%ã§å»çæ å ±ãçµç¹å€ã®ã¡ãŒã«ã¢ãã¬ã¹ãWebãµã€ãã«éä¿¡ãããŠããããšãåãã£ããšããã
ç±³åœã§ã¯ãHIPAA(Health Insurance Portability and Accountability Act)ãšããé£éŠæ³ã«ãã£ãŠãå人ã®å»çæ å ±ã®ä¿è·ãšæ å ±ã«é¢ããæ£è èªèº«ã®æš©å©ãå®ããããŠãããããã§ã¯åççãªãã©ã€ãã·ãŒä¿è·å¯Ÿçãè¬ããŠããã°ãå»çæ©é¢ãæ£è ãšå»çåé¡ã«ã€ããŠã¡ãŒã«ã§é£çµ¡ããããšãèªããããŠãããã®ã®ãåœç¶ãªããæ å ±ã®å€éšæŒãããé²ãããã®å¯Ÿçãæ±ãããããçŸå®çã«ã¯ããããã察çãæ©èœããŠããªãçµç¹ãå°ãªããªããšããããã ã
广çãªå¯Ÿçã¯ããªã·ãŒã«åºã¥ããããã¯ãŒã¯ç£èŠ
ã»ãã¥ãªãã£äºæ ã«è©³ããã¢ãºãžã§ã³ã ã»ãã¥ãªãã£ã»ãã©ã¹ã©ãã®é§ç¬åœ°åœŠæ°ã¯ããã®ã¬ããŒãã®çµæãèžãŸããŠä»¥äžã®ãããªèŠè§£ã瀺ããŠããã
ãå€ãã®æ å ±ãããŒã¿ã§ã¯ãªããçŽããã£ã«ã ã«èšé²ãããŠããã²ãšæåãæ©å¯æ å ±ã¯ãã¡ããšãã¡ã€ãªã³ã°ãããæœé ããæžåº«ã«ä¿ç®¡ãããŠããŸãããæ©å¯æ å ±ãçªåããã«ã¯æžåº«ã«äŸµå ¥ãã忬ãæã¡åºããŠããŸãããåçæ®åœ±ãªã©ã§è€åããªããã°ãããªãã£ãããã§ããæ å ±ãããŒã¿åãããçŸåšããããŒã¿ãå®ãããã®ãèãæ¹ãã¯äžåã§ãæ©å¯æ å ±ã®æµåºã¯ã¢ã¯ã»ã¹æš©éã®èšå®ãæå·åãªã©ã®æè¡ãçšããŠé²ãã§ããŸãã
ããããæ å ±ã®ç§»åã容æã§ãããšããç¶æ³ã¯å€ãããªããããæ©å¯æ å ±æŒããã®äºä»¶ã»äºæ ã¯åŸãçµ¶ããªããåæ°ã¯ããæå³ããªãæ å ±æŒãããé²ãã®ã«æã广çãªã®ã¯ããããã¯ãŒã¯ãç£èŠããå éšããå€éšãžéä¿¡ãããããšããŠããæ å ±ãããªã·ãŒã«åºã¥ããŠèªåæ€åºããããšã§ãããšææããããŸãããæ å ±ãæ±ãã®ã¯ãããŸã§ã人ã§ãã以äžããã£ãããã¹çã100%ãªããããšã¯äžå¯èœã§ããå éšããå€éšãžã®æ å ±æµåºãç£èŠããããã¯ããããšã§ãããšããã«ãŠã§ã¢ã®äŸµå ¥ãèš±ããŠããŸã£ããšããŠããæ å ±ã®æŒããã»æµåºãåé¿ã§ããããšããŠããã