T-Mobile faced three significant data breaches in 2021, 2022, and 2023, affecting millions of customers. Following investigations by the Federal Communications Commission (FCC), T-Mobile agreed to a court settlement that includes implementing a "modern zero-trust architecture," appointing a Chief Information Security Officer, and enhancing its cybersecurity measures with phishing-resistant multifactor authentication, data minimization, and better data management processes. As part of the settlement, T-Mobile is required to pay a $15.75 million penalty and invest an equal amount to bolster its cybersecurity program and compliance plan. The FCC's consent decree indicates that the necessary investments could far exceed this penalty, estimating costs could be around $157.5 million.

https://mobile.slashdot.org/story/24/10/05/0345219/americas-fcc-orders-t-mobile-to-deliver-better-cybersecurity

Comments

Popular posts from this blog

Endor Labs Announces Integrated SAST Offerings

OWASP Releases Enhanced Dependency-Check Tool with Advanced Tagging and Policy Management Features

The Hidden Cost of DevSecOps: Time and Financial Burden of Security on Developers