Preview

Breach X

Good Essays
Open Document
Open Document
925 Words
Grammar
Grammar
Plagiarism
Plagiarism
Writing
Writing
Score
Score
Breach X
BREACH AT X

• What are the people, work processes and technology failure points that require attention?
• What practices led to the security breach in TJX and why did such a smart andprofitable organization as TJX face such a situation?
• Was TJX a victim of ingenious cyber crooks or did it create risk by cutting corners? Background a. Describe the company/department History
1. TJX was the largest apparel and home fashion retailer in United States in the off-price segment and is ranked 138th in fortune 500 companies in 2006.
2. TJX sold brand apparels at prices 20 to 70% lower than department or specialty stores
3. TJX has eight independent businesses under a common umbrella. They had over 2400 stores and about 125,000 associates. Conditions
1. Operational efficiency, vendor relationships and scale, which are crucial to an off-price store, are well maintained in TJX.
2. Quality of internal IT systems was crucial to maintain margins and to stay competitive.
3. IT systems help TJX connect people, places and information in the value chain.
4. TJX buys merchandise from manufacturers throughout the year irrespective ofseasonality and trends. Strengths
1. Vendors, buyers, merchandisers, customers, store associates and financial institutions are well connected through TJX’s IT networks.
2. In-store technologies such as kiosks and hand-held price/inventory barcode helped in their customer services and differentiated them from their competitors.
3. They have also invested in CRM to increase revenues by targeting most profitable customers. Weaknesses
1. PCI DSS has showed that TJX had not met nine of the twelve requirements covering encryption, access controls and firewalls.
2. Their auditors failed to identify three key problems with TJX systems i.e. absence of network monitoring, absence of logs and presence of unencrypted data stored on their systems.
3. TJX has retained

You May Also Find These Documents Helpful

  • Good Essays

    Nt1330 Unit 6 Paper

    • 853 Words
    • 4 Pages

    In my opinion the PCI-DSS standards in place should lead to a secure network and ultimately protect the cardholder data. The Payment Card Industry (PCI) data security standard has important requirements like maintaining a firewall configuration, regularly updating anti-virus software, encrypting transmission of cardholder data across open, public networks to name a few. Unfortunately, the auditing practices at TJX were poor and did not identify the real problems with the TJX systems. The were three crucial issues with the TXJ systems. The first one was the absence of network monitoring; according to the PCI standards, a firewall or a “do not use vendor-supplied defaults for system passwords” was required. They also violated the second PCI standard of protecting the cardholder data by not keeping data logs, and the presence of unencrypted data stored on the system. The stolen information was from old transactions from 2002 which were supposed to be…

    • 853 Words
    • 4 Pages
    Good Essays
  • Good Essays

    It/205 Week 5 Checkpoint

    • 928 Words
    • 4 Pages

    The credit card data theft at TJX Companies is considered one of the worst ever. The case is significant because of a lack of appropriate security and control.…

    • 928 Words
    • 4 Pages
    Good Essays
  • Powerful Essays

    TJX Maxx Code Of Conduct

    • 1247 Words
    • 5 Pages

    TJX Maxx was founded in 1976 by Bernard Cammarata, in Framingham Massachusetts. The original name of the company was Zayre until they sold their name and renamed themselves to the TJX Companies Incorporated. TJX is a retail store selling items like apparel, shoes, toys, furniture, and many other items. TJX has stores not only in the US, but also in the UK, Germany, Australia, Ireland, Austria, Poland and the Netherlands. Some of TJX Maxx's largest competitors is JC Penny's, Nordstrom and Isetan Holdings. If we are talking about TJX competition, companies like JCPenney and Nordstrom are not nearly as successful as TJX has been lately.…

    • 1247 Words
    • 5 Pages
    Powerful Essays
  • Satisfactory Essays

    Mrkg 1311 Chapter 12

    • 490 Words
    • 2 Pages

    4. Price: Price is critical, Superstores use price as an effective marketing mechanism in order to attract customers. Use sales to attract customers and price matching and rebates.…

    • 490 Words
    • 2 Pages
    Satisfactory Essays
  • Good Essays

    It 205 Week 3 Assignment

    • 667 Words
    • 2 Pages

    The TJX was still using the old wired equivalent Privacy (WEP) encryption system, which is relatively easy for hackers to crack. An auditor also later found the company had neglected to install firewalls and data encryption, on many of the computers using the wireless network,…

    • 667 Words
    • 2 Pages
    Good Essays
  • Better Essays

    Wet Seal Analysis

    • 3205 Words
    • 13 Pages

    Companies in this industry operate physical retail establishments that sell clothing and accessories. Major companies include TJX Companies (TJ Maxx, Marshalls), Gap, and Limited Brands (all based in the US), along with Hennes & Mauritz (Sweden), Inditex 's Zara chain (Spain), and Arcadia Group 's Topshop (UK). The US clothing store industry includes about 100,000 stores with combined annual revenue of about $165 billion and is expected to grow at a low rate in the next two years. Key growth drivers include consumer spending levels and popular clothing styles.…

    • 3205 Words
    • 13 Pages
    Better Essays
  • Satisfactory Essays

    It205 Week 5 Checkpoint

    • 272 Words
    • 2 Pages

    TJX could have switched to the more secure Wi-Fi Protected Access (WPA) standard with more complex encryption. TJX had also failed to install firewalls and data encryption on a lot of their computers by using the wireless network, system passwords and should have had good up- to- date antivirus software…

    • 272 Words
    • 2 Pages
    Satisfactory Essays
  • Powerful Essays

    In 1984, after the success of Price Club and with the increased presence of Wal-Mart 's Sam 's Club, the owner of retail chains TJ Maxx, Hit or Miss and HomeClub, Zayre Corporation launched BJ 's. With a total of 140 warehouses in 16 states, BJ 's is the third largest warehouse club retailer in the US behind Costco and Sam 's Club.…

    • 2968 Words
    • 12 Pages
    Powerful Essays
  • Powerful Essays

    1) It stabilized and improved basic business processes. It developed enhanced supply-chain capabilities, including fast delivery of customized product. It purchased a rash of new software applications. Underlying the entire project was a desire to integrate supply-chain strategy with that of the organization as a whole.…

    • 838 Words
    • 3 Pages
    Powerful Essays
  • Satisfactory Essays

    Checkpoint: Tjx Companies

    • 326 Words
    • 2 Pages

    I believe that TJX should have taken full responsibility for that data theft. I think that the biggest moral obligation that was not met is the obligation to securely store customer data. This moral fault has been estimated to cost upwards of one billion dollars. I also believe that TJX should have been held accountable for all damages since it was their lack of security that allowed the hackers to steal the data in the first…

    • 326 Words
    • 2 Pages
    Satisfactory Essays
  • Best Essays

    The apparel store industry within the USA is a highly competitive market, consisting of number of companies that are willing to fight for their share of the market. To remain afloat in this business, corporations must be highly innovative, price-conscious, knowing the trend, and with great responses to consumer needs. Each company within this industry must be aware of the competitors’ move, trying to match every trends and benefits offered by another, in order to steal the average consumers. Market-alertness is the key to survival; each company must balance marketing strategies and customer-service, responding to consumer demands within the shortest processing time possible. This paper shall provide an analysis of the apparel store industry through Urban Outfitters, Inc.…

    • 3773 Words
    • 16 Pages
    Best Essays
  • Good Essays

    Additionally TJX buys merchandise on an opportunistic basis, mostly buying inventory that is highly discounted due to manufacturer overruns and closeouts. Which allows them to buy these goods much cheaper than the tag price, and furthermore transfer these cost savings to its customer by charging them 20 to 40% cheaper than other departments store. This strategy allows TJX to attract more customers, and make potential customers choose TJX retail stores instead of regular outlets or department…

    • 686 Words
    • 3 Pages
    Good Essays
  • Satisfactory Essays

    Mathcounts

    • 543 Words
    • 3 Pages

    Respond quickly to changing fashions. Products are made to be used in a limited way.…

    • 543 Words
    • 3 Pages
    Satisfactory Essays
  • Good Essays

    In fact they were found to be deficient in 9 of the 12 requirements (Case Study: Operation Get Rich or Die Tryin’, n.d). In an analysis of the data breach by Mounica Vennamaneni, they found company was not just negligent in regards to PCI. There were multiple areas of failure, including, the employees level of awareness, the encryption used and even their logging procedures (Mounica Vennamaneni, 2016). Each of these failures is a lesson that, with any luck, TJX and others have taken to heart and taken steps to rectify.…

    • 724 Words
    • 3 Pages
    Good Essays
  • Good Essays

    zara

    • 658 Words
    • 3 Pages

    Inditex's secret? Besides selling relatively cheap clothes, which fit the times, the company maintains an iron grip…

    • 658 Words
    • 3 Pages
    Good Essays