Advisory Firms Jittery After Wells Fargo Data Breach - Insurance News | InsuranceNewsNet

InsuranceNewsNet — Your Industry. One Source.™

Sign in
  • Subscribe
  • About
  • Advertise
  • Contact
Home Now reading Top Stories
Topics
    • Advisor News
    • Annuity Index
    • Annuity News
    • Companies
    • Earnings
    • Fiduciary
    • From the Field: Expert Insights
    • Health/Employee Benefits
    • Insurance & Financial Fraud
    • INN Magazine
    • Insiders Only
    • Life Insurance News
    • Newswires
    • Property and Casualty
    • Regulation News
    • Sponsored Articles
    • Washington Wire
    • Videos
    • ———
    • About
    • Advertise
    • Contact
    • Editorial Staff
    • Newsletters
  • Exclusives
  • NewsWires
  • Magazine
  • Newsletters
Sign in or register to be an INNsider.
  • AdvisorNews
  • Annuity News
  • Companies
  • Earnings
  • Fiduciary
  • Health/Employee Benefits
  • Insurance & Financial Fraud
  • INN Exclusives
  • INN Magazine
  • Insurtech
  • Life Insurance News
  • Newswires
  • Property and Casualty
  • Regulation News
  • Sponsored Articles
  • Video
  • Washington Wire
  • Life Insurance
  • Annuities
  • Advisor
  • Health/Benefits
  • Property & Casualty
  • Insurtech
  • About
  • Advertise
  • Contact
  • Editorial Staff

Get Social

  • Facebook
  • X
  • LinkedIn
Top Stories
Top Stories RSS Get our newsletter
Order Prints
September 5, 2017 Top Stories
Share
Share
Tweet
Email

Advisory Firms Jittery After Wells Fargo Data Breach

By Brian O'Connell InsuranceNewsNet

Advisors and data security experts are on the offensive after the recent data breach at Wells Fargo.

In mid-July, word leaked out that a lawyer working with the banking giant shared private client data, including Social Security numbers, and compensation details linked to 50,000 financial clients and investment advisors.

The data was made public when the Wells Fargo attorney delivered the information to an opposing attorney’s law firm, as part of an ongoing litigation case involving a former Wells advisor who is suing the bank.

Wells Fargo attorney Angela Turiano, a New York-based principal at Bressler, Amery & Ross, said the opposing attorney leaked the sensitive data to The New York Times. The newspaper followed up with a story reporting the leak.

Turiano called the data leak “accidental,” and said she hadn’t vetted the data properly. Wells Fargo has a security protocol to follow when handling private company data.

“I thus inadvertently provided documents that had not been reviewed by me for confidentiality and privilege,” she said in an affidavit.

Managing the Data

Accidental or not, the Wells data leak amplified the necessity of protecting client data, a scenario that some financial industry data experts say needs improvement.

“It's a fact of business today that customer and other proprietary data, in many cases, must be shared with vendors and other third parties in order to effectively originate and manage accounts,” said Greg Bonin, chief operating officer at XOR Data Exchange, a data protection company based in Austin, Texas.

Yet managing the secure flow of that data is proving problematic.

“The huge Wells Fargo breach was completely a human error, and an indicator of very poor business practices coupled with ineffective security education,” said Rebecca Herold, president of SIMBUS360 in Des Moines, Iowa. “Some of the glaring problems that were revealed by this huge, preventable breach, including the fact that human error is just as much of a threat as vulnerable systems.”

But that’s not all – not even close, says Herold.

“You also have to look at the lack of effective information security and privacy training involved in the Wells case, which all financial firms should study,” she said.

Laws dictate only sending the minimum amount of sensitive data as required, Herold explained.

“This is called the “minimum necessary” privacy principle, and one that has existed for decades, and has been established in multiple laws and regulations over the past 25–35 years as well,” she added.

Additionally, Wells had a set of policies and supporting procedures for handling and
transmitting large amounts of client data, but the system failed all the same, Herold noted.

“If procedures existed for providing personal date to others outside the organization, why weren’t they followed?” she asked. “This is typically an indicator that the organization is not enforcing their own data security and privacy policies and procedures.”

Checklist for Data Security

There are several primary key types of assessments financial firms can securely use to
evaluate client data security, Herold said. Here’s her list, along with reasons why each item is important for financial firms to address:

Risk assessment: This identifies the networks, systems and applications for security risks, Herold said, and is also a requirement of multiple regulations and industry standards.

“This covers all information security domains, including administrative controls that include data security training and ongoing awareness reminders, which could have prevented the Wells Fargo breach,” she said.

Privacy impact assessment: PIM is an assessment specific to identifying risks to personal data, which also identify potential harms to the associated individuals.

“This is increasingly being expected to be an activity performed within an information security and privacy program,” Herold said, adding that it is also a federal and international regulatory requirement.

Compliance audit: An audit is a recommended practice for all types of organizations, but certainly expected of financial organizations.

“The audit checks the data security and privacy legal requirements for data, network,
systems and applications security settings and controls,” Herold said. “They can be
performed by internal auditors, or from contracted third parties.”

Vulnerability assessment: An assessment identifies the vulnerabilities within an
organization’s information management processes and systems, Herold said.

“This checks for such things as systems and applications patching practices and current
versions in use, insider risks related to workers, and things like that,” she added.

'Take Proactive Steps'

There’s “no doubt” that financial institutions are under increasing pressure from regulators to protect client data, said Meghan McAlpine, director of strategy and product marketing for alternative investments at Intralinks in New York City. “That fact, coupled with an increase in cyberattacks as of late, should be a signal for global financial institutions to take proactive steps to increase cyber security initiatives.”

Wealth management firms should strengthen policies and procedures related to safeguarding client data so that clients feel safer doing business, McAlpine said.

“Firms should also provide alternatives to email when sharing high-value information,” she said. “Delivering investment reports to clients using outdated methods like email and overnight mail don't provide the necessary safeguards for information this sensitive.”

Plus, any technology put into place should be secure and fully audited.

“Any vendor that houses sensitive client data should be 'diligenced' regularly,” she added. “If a vendor is unwilling to be transparent or open to a full audit, that should be a red flag.

“Overall, making the investments in secure technology and training staff on best practices for sharing and storing sensitive data are the best defense against data breaches,” McAlpine said.

Brian O'Connell is a former Wall Street bond trader, and author of the best-selling books, The 401k Millionaire and CNBC's Guide to Creating Wealth. He's a regular contributor to major media business platforms, including CBS News, The Street.com, and Bloomberg. Brian may be contacted at [email protected].

© Entire contents copyright 2017 by InsuranceNewsNet.com Inc. All rights reserved. No part of this article may be reprinted without the expressed written consent from InsuranceNewsNet.com.

Brian O'Connell

Brian O'Connell is a former Wall Street bond trader and author of the best-selling books, such as The 401k Millionaire. He's a regular contributor to major media business platforms. He resides in Doylestown, Pa. Brian may be reached at [email protected].

Older

‘Game On’ for FIA Sales in Second Half of 2017

Newer

Educating Your Clients on 529 College Savings Accounts

Advisor News

  • Bill that could expand access to annuities headed to the House
  • Private equity, crypto and the risks retirees can’t ignore
  • Will Trump accounts lead to a financial boon? Experts differ on impact
  • Helping clients up the impact of their charitable giving with a DAF
  • 3 tax planning strategies under One Big Beautiful Bill
More Advisor News

Annuity News

  • An Application for the Trademark “EMPOWER INVESTMENTS” Has Been Filed by Great-West Life & Annuity Insurance Company: Great-West Life & Annuity Insurance Company
  • Bill that could expand access to annuities headed to the House
  • LTC annuities and minimizing opportunity cost
  • Venerable Announces Head of Flow Reinsurance
  • 3 tax planning strategies under One Big Beautiful Bill
More Annuity News

Health/Employee Benefits News

  • Health insurance in retirement
  • Craig Schillig: Health insurance in retirement
  • TRUMP'S REAPER' IS COMING FOR YOUR DISABILITY BENEFITS
  • Cancer patient denied treatment until it was too late Cancer patient denied potential life-saving treatment until it was too late (copy)
  • Missouri Farm Bureau launches new health plans, raising concerns about coverage limits
Sponsor
More Health/Employee Benefits News

Life Insurance News

  • On the Move: Dec. 4, 2025
  • Judge approves PHL Variable plan; could reduce benefits by up to $4.1B
  • Seritage Growth Properties Makes $20 Million Loan Prepayment
  • AM Best Revises Outlooks to Negative for Kansas City Life Insurance Company; Downgrades Credit Ratings of Grange Life Insurance Company; Revises Issuer Credit Rating Outlook to Negative for Old American Insurance Company
  • AM Best Affirms Credit Ratings of Bao Minh Insurance Corporation
More Life Insurance News

- Presented By -

Top Read Stories

More Top Read Stories >

NEWS INSIDE

  • Companies
  • Earnings
  • Economic News
  • INN Magazine
  • Insurtech News
  • Newswires Feed
  • Regulation News
  • Washington Wire
  • Videos

FEATURED OFFERS

Slow Me the Money
Slow down RMDs … and RMD taxes … with a QLAC. Click to learn how.

ICMG 2026: 3 Days to Transform Your Business
Speed Networking, deal-making, and insights that spark real growth — all in Miami.

Your trusted annuity partner.
Knighthead Life provides dependable annuities that help your clients retire with confidence.

Press Releases

  • Altara Wealth Launches as $1B+ Independent Advisory Enterprise
  • A Heartfelt Letter to the Independent Advisor Community
  • 3 Mark Financial Celebrates 40 Years of Partnerships and Purpose
  • Hexure Launches AI Enabled Version of Its Platform to Power Life Insurance Sales
  • National Life Group Board Approves Dividends for 2026
More Press Releases > Add Your Press Release >

How to Write For InsuranceNewsNet

Find out how you can submit content for publishing on our website.
View Guidelines

Topics

  • Advisor News
  • Annuity Index
  • Annuity News
  • Companies
  • Earnings
  • Fiduciary
  • From the Field: Expert Insights
  • Health/Employee Benefits
  • Insurance & Financial Fraud
  • INN Magazine
  • Insiders Only
  • Life Insurance News
  • Newswires
  • Property and Casualty
  • Regulation News
  • Sponsored Articles
  • Washington Wire
  • Videos
  • ———
  • About
  • Advertise
  • Contact
  • Editorial Staff
  • Newsletters

Top Sections

  • AdvisorNews
  • Annuity News
  • Health/Employee Benefits News
  • InsuranceNewsNet Magazine
  • Life Insurance News
  • Property and Casualty News
  • Washington Wire

Our Company

  • About
  • Advertise
  • Contact
  • Meet our Editorial Staff
  • Magazine Subscription
  • Write for INN

Sign up for our FREE e-Newsletter!

Get breaking news, exclusive stories, and money- making insights straight into your inbox.

select Newsletter Options
Facebook Linkedin Twitter
© 2025 InsuranceNewsNet.com, Inc. All rights reserved.
  • Terms & Conditions
  • Privacy Policy
  • InsuranceNewsNet Magazine

Sign in with your Insider Pro Account

Not registered? Become an Insider Pro.
Insurance News | InsuranceNewsNet