Criminal Division Reports Multiple Security Incidents Involving PII and Classified Information
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Between December 2005 and November 2006, the Criminal Division reported 24 security incidents to DOJCERT, including 5 incidents involving potential PII loss and 10 incidents potentially involving classified information. The Criminal Division defines reportable data loss as information on lost electronic media or devices, or information released from its network. Employees are required to report incidents immediately to the Information Technology Management Help Desk, which logs the incident and notifies the Incident Response Team. The team assesses the incident and provides initial reports to DOJCERT, with formal reports typically submitted within 24 hours. The division's Incident Response Plan has been updated to align with DOJCERT's guidelines. The Criminal Division relies on definitions from OMB Memorandum M-06-19 for PII and Executive Order 12958 for classified information.
Key Points: • 24 security incidents reported by the Criminal Division between December 2005 and November 2006. • 5 incidents involved potential loss of Personally Identifiable Information (PII). • Incident reporting procedures require immediate action and formal reporting within 24 hours.