Your Identity Theft Program: Comply Or Risk Fines
Lisa Asbell - If you have a data breach and a customer suffers losses (or even worse, if multiple customers suffer losses), you can be held responsible for those damages along with federal and state fines...
Most dealers who are striving to comply with privacy laws like the GLBA Safeguards Rule can immediately tell me who their chief information officer is and what steps they are taking on a daily basis to protect customer information.
If you can tell me what you are doing, you should also be able to show me what you are doing to comply with these laws. If you can’t tell me about your data security program, you probably don’t have one in place. You could be, in essence, playing the lottery with your dealership.
Here are some simple but necessary steps to get you on the right path and out of the lottery.
1. Designate an employee as your chief information officer. It’s a CIO’s responsibility to oversee your security program.
2. Draft a written security plan that states how you handle non-public information.
3. Train every employee on handling non-public information.
4. Have employees and vendors sign confidentially agreements.
5. Draft a checklist that includes a quarterly audit to see how you are doing following your security plan.
While these steps won’t ensure compliance because compliance still has to be executed on a daily basis, they will put you on the right path.
Identity theft in businesses keeps gaining momentum. In 2002, 70 percent of identity-theft-related crimes stemmed from one-on-one attacks like dumpster diving or e-mail scams like phishing. A recent statistic indicated 70 percent of identity-theft-related crimes are now coming from a work environment due to either careless or corrupt employees. That is a significant shift. The reason for this shift is that identity thieves know that if they can get access to your customer records, they get a lot more bang for the buck. This means that you can no longer take chances with non-compliance.
Customers are getting smarter, too. There have been documented cases of “customers” sniffing around the dealership in hope of finding deal jackets, a driver license or other personal information out in the open. Other customers are looking for an opportunity to sue you and your dealership, and it is a game they can win if you are not legally prepared.
If you have a data breach and a customer suffers losses (or even worse, if multiple customers suffer losses), you can be held responsible for those damages along with federal and state fines. USA Today reports, “The average damages to victims of identity theft are over $92,000.” If you are going to take chances like that, you’ll need more than lady luck on your side. That’s why you need a solid data security plan.
Have you ever heard the expression, “house rules?” In the game of compliance, the FTC is the “house.” If you have to gamble, go to your favorite casino, but please don’t gamble with your dealership. You will lose. The FTC is serious about dealer compliance. Contact your attorney today, and make certain you have what you need in place to protect your customers, your employees and your dealership. If you do, the odds are stacked in your favor.
Vol 5, Issue 8
More Dealer Ops

Ladies and Gentlemen, This Is a Dealership: Why the Fundamentals Still Decide Who Wins
A teaching moment by a legendary football coach happens to apply perfectly in the auto retail space. Learn what it is and how to use it to your store’s advantage.
Read More →
Timing the Market Can Hurt Long-Term Program Performance
For dealer-owned reinsurance entities, avoiding volatility entirely can mean falling behind inflation and missing market rebounds that drive long term surplus growth. Missing just a handful of strong market days can materially impact cumulative returns—an important reminder for long horizon trust and investment strategies.
Read More →
Dealer Ads and the FTC
The agency has made it clear in recent enforcement actions and warnings, in auto retail and other industries, that advertised prices must include all nonoptional costs to the consumer.
Read More →
Used Autos Supply Dwindles
The March shopping surge, despite high prices, cut into inventory by the most since the thick of the pandemic, Cox Automotive analysts calculated.
Read More →
Managing Risk Effectively Through Changing Times
The variables influencing risk pricing have changed significantly over the past five years. Being proactive and responsive to emerging trends is not optional but essential.
Read More →
Survey Reveals What Won't Fix What's Breaking Car Sales
AutoPayPlus says extra-long auto loans are trapping consumers and threatening the dealer trade-in cycle, and that the industry is leveraging the wrong tools to combat high MSRPs.
Read More →
IA American Appoints Two Execs
Senior vice presidents of the company's agent and dealer channels chosen to support general agents and help auto dealers with sales and performance.
Read More →
Cox Automotive Acquires Inspection Firm
Full ownership of Alliance Inspection Management, or AiM, meant to unlock growth for Manheim inspection capabilities
Read More →
Assurant Expands Partnership With Holman
Extended collaboration delivers training, products and performance development to 30 newly acquired Holman dealerships
Read More →
Franchises, Throughput Down in First Half
A handful of states see franchise growth through June, while EV sales per store boost overall business in U.S.
Read More →