Subscribe to our e-mail newsletters
For more info on a specific newsletter, click the title. Details will be displayed in a new window.
Data Management
Storage
Computerworld Daily News (First Look and Wrap-Up)
Computerworld Blogs Newsletter
The Weekly Top 10
More E-Mail Newsletters 
Computerworld 2007Subscribe to Computerworld
40 years of the most authoritative source of news and information for IT leaders.

Old computers: An IT department liability that's costing more

Resellers now want money to sanitize hard drives
 

Sign up to receive Security Resource Alerts

August 25, 2004 (Computerworld) -- Resellers of old computer equipment say they will no longer accept used equipment without charging for erasing hard drives to ensure they aren't held liable for exposing sensitive data.
Marc Sherman, chairman and CEO of WindsorTech Inc. in Highstown, N.J., a used IT equipment reseller, charges companies a flat $8.75 fee for performing a basic audit of used computer equipment and $10 to $30 for erasing disk arrays, depending on the disk's size.
"As the business developed over the years, we've gone into a world where data security is critical," he said. "The whole thing now is we're in a situation where we're reluctant to buy equipment unless we're fully indemnified. Otherwise, it puts us in a very dangerous situation.
"It's been an educational process for IT users. The information on a computer doesn't belong to the company. It belongs to the customer," he said.
Sherman said he believes his company is more trustworthy when it comes to ensuring data has been erased from drives before resale because his is the only publicly traded firm that resells used equipment and must answer to the U.S. Securities and Exchange Commission and the National Association of Securities Dealers.
Jill Vaske, vice president and co-founder of Redemtech Inc., a Columbus, Ohio-based recycler of PCs and other IT products, said that with the economy picking up, companies are just beginning to change out PCs and servers after holding on to them for longer than the normal three-year refresh cycle.
Redemtech manages end-of-life technology turnover for almost 100 Fortune 500 and Global 1,000 companies, making sure data isn't exposed when computers are reconditioned for continued use or given to charities.
"Our experience is [that] most resellers aren't minding the liability side of end-of-life equipment. They don't assume liability for reselling it," Vaske said.
Liability for any data exposed through the resale of technology equipment rests squarely on the company that created the data, according to Alan Burger, an attorney at the law firm of Burger, Trailor & Farmer in West Palm Beach, Fla. "You can't shift the risk by contract to a reseller," he said.
Burger sees a growing problem around data security and information privacy because of a number of laws that took effect over the past three years, including the Health Insurance Portability and Accountability Act, the Sarbanes-Oxley Act and the Gramm-Leach-Bliley Act, also known as the Financial Institution Privacy Protection Act of 2001.
"You're just getting into that computer changeover due to technology obsolescence now," he said. "You will have billboards on both sides of the highway saying, 'Was your health information exposed? Call ABC attorneys.' "
Examples of the necessity of data protection abound. For instance, in January 2003 a disk drive with 176,000 insurance policies was stolen from Guelph, Ontario-based Co-operators Life Insurance Co.
In response to such events, California adopted a new law, SB 1386, which went into effect July 1, 2003. It requires any company that stores information about California residents to publicly divulge any breach of security affecting that data within 48 hours.
Said Sherman: "These regulations ... are really validating our business model."




Print this Story Send Us Feedback E-mail this Story Digg! Digg this Story Slashdot this Story
"It's IT Blogwatch: in which Sun finally releases OpenSolaris, but with a surprising, cloud-computing twist, courtesy of Amazon EC2. Not..." Read more...
"Randall Craig stole sensetive data on more than 17,000 U.S. Marines and military employees with the explicit purpose of selling..." Read more...
Read more Storage posts or See all Blogs
Microsoft to limit capabilities of cheap laptops
FBI worried as DoD sold counterfeit networking gear
Update: Microsoft to appeal $1.3B EU fine
More top stories...
XP SP3 cripples some PCs with endless reboots
Windows Vista more secure than XP, says security company
Microsoft grows DAISY for blind computer users while Adobe wilts
Mistakes such as putting down co-workers or burning bridges when you resign are surefire ways to darken your career prospects. Here's how to avoid them
Hype and promises abound in the IT world, but these six breakthroughs really will change your life, says author and former IT manager John Brandon.
Baby boomers are retiring and taking their knowledge with them. Why do so few in IT seem to care?
Computerworld editors share stories of their first PCs, including some classics and some real clunkers -- then we ask readers to share their early-PC tales.
Reviews, analyses, how-tos, visual tours, hot issues and predictions about Microsoft's new OS.
Four years from now, the IT field will be a vastly different place. Will you be ready?
All Zones
Application Performance Zone
Enterprise-Class Security Zone
Enterprise Solutions Zone
The File Data Management Zone
Grid Computing on Windows Zone
Security Management Zone
ITIL Best Practices Zone
The SAS Zone
Storage Virtualization Zone
The Data Center Management Zone

Ads by TechWords

See your link here
Critical Considerations for Data De-duplication
Critical Considerations for Data De-duplication
Register for this live webcast, airing May 22nd at 2pm ET!
Go to the webcast 
Computerworld Technology Briefing: Automation + Virtualization = Datacenter Optimization
Download this Technology Briefing now!
(Source: CA) Apart from its merits, virtualization can introduce new levels of complexity into the datacenter. The complexity can impede the freeing up of valuable human resources to work on more strategic projects. What are needed are tools and solutions to help IT optimize resources while ensuring performance, availability, and business continuity.
Download this executive briefing download
The Missing Piece of Virtualization
Get this white paper now!
(Source: Neterion) Server virtualization saves money and increases flexibility.  But it faces some real limits.  Currently, I/O-intensive applications like databases or ERP systems are often excluded from virtualization, due to bottlenecks that are introduced by extra layers of software.

I/O virtualization changes the game.  With new industry-standard technologies and 10 Gigabit Ethernet, hardware-based IOV eliminates these bottlenecks, enabling higher numbers of VMs and applications per virtualized system. To uncover new cost saving opportunities, read this new whitepaper and find the missing piece of virtualization.
Download this white paper go
White Papers
Read up on the latest ideas and technologies from companies that sell hardware, software and services.
New Fujitsu High-End Itanium Windows- and Linux-Based PRIMEQUEST Servers Offer the Utmost in High Availability
New Fujitsu High-End Itanium-Based PRIMEQUEST Servers Offer Industry-Leading System Management for Linux and Windows
Symantec State of the Data Center Report 2007
View more whitepapers