quick case study for the cybersec folks here. got this real story in my dpo class & wanted ur thoughts.

IT guy at a bank, last day of his notice period. a trainee saw him puttin some CD-ROMs in his bag & told security. they checked him at the exit and found a full export of the bank’s top clients on the discs. guy got fired for gross misconduct & a police complaint was filed.

any red flags or stuff that stands out to u technicaly or otherwise ? i have my own ideas on this cas but curious what u guys think first?

thx 😎

  • village604
    link
    fedilink
    English
    arrow-up
    1
    ·
    edit-2
    1 month ago

    Some IT positions require some level of access to everything.

    I’m in IT security and I have all of the keys to the kingdom because I need to be able to respond to incidents.

    Also, if he was the only IT guy, he would have been who would receive the alerts. I worked with a guy who had previously been the only IT guy for a bank.