auto dealer in black and red logo
MenuMENU
SearchSEARCH

Your Identity Theft Program: Comply Or Risk Fines

Lisa Asbell - If you have a data breach and a customer suffers losses (or even worse, if multiple customers suffer losses), you can be held responsible for those damages along with federal and state fines...

Lisa Asbell
Lisa AsbellCertified Identity Theft Risk Management Specialist
Read Lisa's Posts
September 26, 2007
3 min to read


Most dealers who are striving to comply with privacy laws like the GLBA Safeguards Rule can immediately tell me who their chief information officer is and what steps they are taking on a daily basis to protect customer information.

If you can tell me what you are doing, you should also be able to show me what you are doing to comply with these laws. If you can’t tell me about your data security program, you probably don’t have one in place. You could be, in essence, playing the lottery with your dealership.

Ad Loading...

Here are some simple but necessary steps to get you on the right path and out of the lottery.

     1. Designate an employee as your chief information officer. It’s a CIO’s responsibility to oversee your security program.

     2. Draft a written security plan that states how you handle non-public information.

     3. Train every employee on handling non-public information. 

     4. Have employees and vendors sign confidentially agreements.

     5. Draft a checklist that includes a quarterly audit to see how you are doing following your security plan.

While these steps won’t ensure compliance because compliance still has to be executed on a daily basis, they will put you on the right path.

Identity theft in businesses keeps gaining momentum. In 2002, 70 percent of identity-theft-related crimes stemmed from one-on-one attacks like dumpster diving or e-mail scams like phishing. A recent statistic indicated 70 percent of identity-theft-related crimes are now coming from a work environment due to either careless or corrupt employees. That is a significant shift. The reason for this shift is that identity thieves know that if they can get access to your customer records, they get a lot more bang for the buck. This means that you can no longer take chances with non-compliance.

Customers are getting smarter, too. There have been documented cases of “customers” sniffing around the dealership in hope of finding deal jackets, a driver license or other personal information out in the open. Other customers are looking for an opportunity to sue you and your dealership, and it is a game they can win if you are not legally prepared.

Ad Loading...

If you have a data breach and a customer suffers losses (or even worse, if multiple customers suffer losses), you can be held responsible for those damages along with federal and state fines. USA Today reports, “The average damages to victims of identity theft are over $92,000.” If you are going to take chances like that, you’ll need more than lady luck on your side. That’s why you need a solid data security plan.

Have you ever heard the expression, “house rules?” In the game of compliance, the FTC is the “house.” If you have to gamble, go to your favorite casino, but please don’t gamble with your dealership. You will lose. The FTC is serious about dealer compliance. Contact your attorney today, and make certain you have what you need in place to protect your customers, your employees and your dealership. If you do, the odds are stacked in your favor.

Vol 5, Issue 8

Subscribe to Our Newsletter

More Dealer Ops

Dealer Opsby StaffSeptember 8, 2025

Cox Automotive Acquires Inspection Firm

Full ownership of Alliance Inspection Management, or AiM, meant to unlock growth for Manheim inspection capabilities

Read More →
Dealer Opsby StaffAugust 26, 2025

Assurant Expands Partnership With Holman

Extended collaboration delivers training, products and performance development to 30 newly acquired Holman dealerships

Read More →
Dealer Opsby Hannah MitchellAugust 26, 2025

Franchises, Throughput Down in First Half

A handful of states see franchise growth through June, while EV sales per store boost overall business in U.S.

Read More →
Ad Loading...
SalesAugust 25, 2025

How to Build a High-Performance Sales and F&I Team

Performance and profits start with people chosen and led the right way.

Read More →
Dealer Opsby Hannah MitchellAugust 19, 2025

Buy-Sells Up in Q2

Kerrigan metrics show there’s plenty of demand, though many sellers are waiting to pull the trigger.

Read More →
Graphic for July 15, 2025 webinar “Driving Directions to Your Secure Auto Destination,” listing vehicle theft, vandalism, insurance losses, and other security risks with a laptop meeting image.
Dealer Opsby StaffAugust 14, 2025

Webinar Gives Driving Directions for Vehicle Security

Free on-demand session shares solutions for securing vehicle storage and parking facilities.

Read More →
Ad Loading...
Dealer Opsby Hannah MitchellAugust 7, 2025

Own Your Missteps

We all mess up from time to time, but it’s how we address the mistakes that really matters.

Read More →
Jennifer Rappaport, CEO of EFG Companies, stands in a conference room wearing a bright pink suit, with the EFG logo visible on the wall behind her.
Dealer Opsby StaffAugust 1, 2025

Top Questions From Dealers Reflect State of Industry

EFG Cos. says challenging times demand sound counsel during second half of 2025.

Read More →
Dealer Opsby StaffJune 18, 2025

TSD Mobility, Canopy Connect Partner to Ease Insurance Verification

The new integration is intended to bring streamlined functionality to rental agents and dealerships.

Read More →
Ad Loading...
F&Iby StaffApril 2, 2025

DOWC Powers the Future of F&I for NESNA

Company is providing a fully integrated F&I administration model to Nissan Extended Services North America’s dealer network.

Read More →