ZDNet UK


Skip to Main Content

  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Jobs
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


Security threats Toolkit

HSBC's bankrupt security thinking

Leader ZDNet.co.uk

Published: 20 Sep 2006 16:50 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Imagine a government information film that said only bad people buy locks because this encourages thieves to go after the lockless. Imagine then the protests from public and law enforcers alike at such dangerously twisted thinking. But then, no organisation could be that clueless.

Or so we thought. HSBC proved us wrong this week, when it attacked rival banks for introducing two-factor authentication. By introducing stronger protection for their customers, it argued, banks such as Barclays were unfairly singling out rivals such as HSBC as easier pickings for hackers and criminal gangs.

To normal people, that's as perverse as imposing a penalty charge that breaks an overdraft limit, then imposing a penalty for that too. In other words, it's frighteningly normal — for bankers. This kind of thinking stems from the endemic short-sighted, profit-fixated culture that characterises retail finance. Clearly, at HSBC, customer protection comes somewhere below outsourcing support abroad and just above the rights given to cleaning staff, an annoyance that only becomes worse if someone else takes it seriously.

HSBC's competition has realised that secure customers are more likely to hang around, and the competitive advantage of this approach has started to hit home. But a truly customer-centred approach to security would see the banks and other financial institutions working together to create a secure environment, one where the sector as a whole regains the reputation for safety that it once held in the pre-electronic era.

If companies we trust to protect our hard-earned money are to stand a chance against the ruthless innovations of cybercriminals, then they must stand together. HSBC should be agitating for this, not complaining about some hacker influx looking for an easy mark. If it doesn't, it should ready itself instead for a mass exodus of the community which ultimately governs its fortunes — its customers.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with Konica

Did you find this article useful?
47 out of 118 people found this useful


Company/Topic Alerts

Create a new alert from the list below:




Sentry Posts Blog

The Technological Singularity

Are we approaching a point when machines may wake up and become self or seemingly self aware? Vernor Vinge in 1993 seemed to think so. He refered to this event as the "technological... More

2 comments

Mobile Operating Systems: MOPS At a Gl...

Mobile Operating Systems: At a Glance Author: Eric Everson, Founder MyMobiSafe Since posting my blog exposing the security Google G1 security issue, I have received a few emails... More

Post a comment

Met Police catch test cheats

I saw the funny side of this press release, I can just imagine the two people sitting in the car giving the answers to the questions. Why they had wires running from under the bonnet... More

Post a comment