Reply to post:

TalkTalk attack: 'No legal obligation to encrypt customer bank details', says chief

Adam 1

Whilst key management is the Achilles heel of encryption systems, it does remove a lot of attack vectors like second hand hard drives and lost backup tapes. Even if they are legally in the clear, a breach like this can take down a company. Setting aside the ethical constraints of caring for your customers' data, it is at the lowest common denominator still a good idea.

