Most Read
- The Almost-Meteoric Rise of SaaS on Wall Street
- 15 Percent of FX Trades Could be Completed With Algorithms by 2010
- Nasdaq OMX Europe Strikes Order Routing Deal with Citi
- 5 Steps for Stopping the Insider Threat
- TowerGroup Warns That Without Innovation, Fee Revenue Processing Costs Will Skyrocket
- IT Executives See Greening of Data Center as Mission-Critical, But Lack "Green" To Go Green
- Investors Allocated only $16.4 Billion to Hedge Funds in Q1 2008
- Thomson Reuters Links Portfolio Management and Reference Data Systems
E*TRADE Gets Proactive About E-Mail Fraud
Welcome. My name is Mike Ellison and I am the EVP at Corporate Insight. We’re a firm that looks at the retail experience at a number of brokerage, mutual fund, and banking firms. From time to time, I’m going to be blogging on subjects related to wealth management. Much of what I will be talking about will come from our experiences in maintaining live accounts at the firms we follow in our research. When we uncover something I feel would generate some lively discussion, I’ll post it and hopefully you’ll chime in with your opinions.
To open our discussion, we recently received an email from E*TRADE on identifying and avoiding fraud that I think should generate some dialog.
E*TRADE recently sent us a text-based email that had the following message:
Dear (NAME REDACTED), Account Number Ending In: REDACTEDIdentity theft is a serious issue, no matter how it originates. The vast majority of online fraud is a result of a compromised personal computer - when a consumer knowingly or unknowingly discloses identifying information like their user name and password.
By exercising caution and following some basic guidelines, you can reduce your chances of falling victim to online identity theft.
1. Be suspicious of ANY email that asks for sensitive personal
information, even if the sender seems to be familiar.2. Never open attachments or click links in spam or
unsolicited emails.3. Avoid filling out forms contained in an email message or pop-
ups, even if they appear to be from a legitimate company with
whom you do business.4. Run the latest version of a proven anti-virus software program
on your computer.5. If you have logged on to a Web site, log off when you are
finished and close your browser completely.At E*TRADE FINANCIAL we protect every asset and transaction you make with our Complete Protection Guarantee, providing complete fraud coverage, payment and privacy protection. In addition, we've introduced the Digital Security ID(1) to help our customers protect their identities by making unauthorized account log on virtually impossible.
Rest assured, E*TRADE deploys advanced protection solutions to ensure our systems are secure. Our strict physical, electronic and procedural safeguards are designed to exceed industry standards and safeguard customers' non-public information.
We encourage you to take an active role in protecting your identity.
Visit "www.etrade.com/onlinesecurity" for more details on these services as well as additional security tips.
http://email.etradefinancial.com/r/c/r?2.1.3K1.2Y0.13CFs4.By1zSK..T.Clyw.1Hzu.DeRIEcR0If you suspect that you have received a fraudulent email from E*TRADE, please contact Customer Support at 1-800-838-0908.
Sincerely,
It is a reality of this day and age that firms need to be more proactive in informing their customers about online fraud. Of course, doing so via email is tricky because that’s the very medium that is subject to abuse. E*TRADE’s email above does a good job in dealing with this because it lists out five simple steps users can take and provides a link to the site for more information. There is also a subtle feature that makes this a good email – it is in plain text (as opposed to HTML). This is beneficial because you cannot hide nefarious links in seemingly innocuous URLs (e.g., having http://www.etrade.com really lead to http://123.45.678 or something like that), which is how phishing scams work. What is surprising, however, (and E*TRADE is not alone in this) is that we’ve never seen firms mention this simple fact. If anyone is suspicious of a link in an HTML based email, they can simply hover over it (in Outlook at least) to see the real URL to which you will be sent.
Regardless, this is something that firms must continue to be more proactive about. It is not enough to post a page on the website (that’s passive and people may not go to it) or to put something together to go into your privacy statement (just more legalese). You need to hit customers from multi-ple angles repeatedly to drive the point home.
Posted by Michael Ellison at 11:45 AM
This is a public forum. CMP Media and its affiliates are not responsible for and do not control what is posted herein. CMP Media makes no warranties or guarantees concerning any advice dispensed by its staff members or readers.
Community standards in this comment area do not permit hate language, excessive profanity, or other patently offensive language. Please be aware that all information posted to this comment area becomes the property of CMP Media LLC and may be edited and republished in print or electronic format as outlined in CMP Media's Terms of Service.
Important Note: This comment area is NOT intended for commercial messages or solicitations of business.
Greg MacSweeny Columns
Greg MacSweeney15 Percent of FX Trades Could be Completed With Algorithms by 2010
Market participants are rapidly adopting electronic trading strategies in FX market, says ...
Measurisk Joins JPMorgan’s Alternative Investment Services
Thomson Reuters Links Portfolio Management and Reference Data Systems
Larry Tabb Columns
Larry TabbNow Is the Time for Firms to Position Themselves for the End of the Economic Downturn
Downturns happen -- the industry will survive. But firms need to adjust to changing market...
Clearing and Settlement Top-of-Mind for Front-Office Execs
Risk Management IT Comes to the Forefront in the Wake of Subprime Credit Crisis
In a Tumultuous Economy, Wall Street Must -- and Will -- Find a New Model
CHECK THIS OUTNovell Real Time Linux Webcast SeriesIn order to succeed, companies must be able to respond quickly, deliver superior value and quality of service, and carefully manage their costs. In this series of brief webcasts, you will learn how SUSE Linux Enterprise Real Time from Novell enables organizations to respond quicker by delivering low latencies, deliver increased value with fast response times, and better manage costs. |
EventsLive Events:Navigating the New World of Risk on the Street October 07, 2008 Bank Systems & Technology's 3rd Annual Executive Summit October 19-22, 2008 Avoiding the Mobile Blind Spot: Enhanced Security for the Wireless Workplace October 28, 2008 Buy-Side Trading Summit 2008 November 16-18, 2008 Accelerating Wall Street 2009 March 18, 2009 Web Events: CEP Beyond the Trading Desk September 17, 2008 Where the Millionaires Are, What They Want, and the Technology Needed To Serve Them September 25, 2008 |
|
Marketplace |
Career CenterReady to take that job and shove it?
|
Most Recent Job Posts:
* Cirrus Logic seeking Digital IC Design Engr in Austin, TX
* Hebrew SeniorLife seeking Senior Network Analyst in Boston, MA * Agilent seeking NPI Project Manager in Shanghai, CN * UC Berkeley seeking Helpdesk Team Lead in Berkeley, CA * Rohm and Haas seeking Product Portfolio Manager in Philadelphia, PA For more tech jobs in the industry, visit Wall Street & Technology's Career Portal. |










