<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: roofer]]></title>
    <link>http://securityratty.com/tag/roofer</link>
    <description></description>
    <pubDate>Mon, 09 Jun 2008 14:00:00 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[PCI, PII, a Roofer and a SSN]]></title>
      <link>http://securityratty.com/article/8869a96a4e3a74da407751302fcaa875</link>
      <guid>http://securityratty.com/article/8869a96a4e3a74da407751302fcaa875</guid>
      <description><![CDATA[Yet another J! True Security Story for you
This weekend I met with a roofer at my rental property to take measurements, see what needed to be done and get an estimate. When we met at noon, it was over...]]></description>
      <content:encoded><![CDATA[<p><strong>Yet another J! True Security Story for you&#8230;</strong></p><p><strong>This weekend I met with a roofer </strong>at my rental property to take measurements, see what needed to be done and get an estimate.&nbsp;When we met at noon, it&nbsp;was over 100 degrees&nbsp;there in central&nbsp;North Carolina and we spent just short of 3 hours going over everything. </p><p><strong>The roofer</strong>, let&#8217;s call him Ross,&nbsp;was from one of the larger commercial home improvement stores. This particular store was offering a consumer credit program with 12 months interest-free financing. There was also a full window replacement project to follow right behind the roof. While I was prepared to pay cash for the roof and/or windows, the no-interest option offered an advantage, so I read the terms and conditions and gave the go-ahead. </p><p><strong>Before I realized what was going on</strong>, my friendly roofer Ross was filling out a consumer credit card application for me. I remembered thinking this was odd, as we leaned against his truck, still outside in the heat. I think I mumbled something to the effect of &#8220;<em>oh, it&#8217;s strange they make you guys do this part too</em>..&#8221;. He had asked for all the usuals- my current and previous addresses, annual income and - of course- my Social Security Number. And, after standing in 100+ degree heat for 3 hours, I gave it all&nbsp;to him without batting an eye.&nbsp;As soon as he had it all, he called into to the mothership and was processing my credit app over the phone as I stood by to answer any new questions.</p><p><strong>This day</strong> happened to be Ross&#8217;s wife&#8217;s birthday and they had some afternoon plans once our appointment was over. I was his last appointment of the day before he headed home to the missus for her birthday celebrations. I thanked him for his time, wished him a happy weekend and went on about my day. </p><p><strong>What was&nbsp;wrong with this picture?</strong> I didn&#8217;t quite figure it out until a tall glass of tea cooled me down and returned my brain to normal operating temperature.&nbsp;What in the name of security did I just do? <strong>All </strong>my information (including&nbsp;my new credit card number)&nbsp;was written down on that credit form and tucked into his little notepad with the other miscellaneous papers, product glossies and forms he was carrying around&#8230; in his personal truck&#8230; on a weekend&#8230; <em>D&#8217;OH</em>.</p><p>I&#8217;m sure it will be fine (that&#8217;s what we all tell ourselves, right?). But in the off chance something happens&#8230; well, let&#8217;s not even go there. </p><p># # #</p>
]]></content:encoded>
      <pubDate>Mon, 09 Jun 2008 14:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/roofer">roofer</category>
      <category domain="http://securityratty.com/tag/social security">social security</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/friendly roofer ross">friendly roofer ross</category>
      <category domain="http://securityratty.com/tag/happy weekend">happy weekend</category>
      <category domain="http://securityratty.com/tag/weekend">weekend</category>
      <category domain="http://securityratty.com/tag/true security story">true security story</category>
      <category domain="http://securityratty.com/tag/ross">ross</category>
      <category domain="http://securityratty.com/tag/roof andor windows">roof andor windows</category>
      <source url="http://www.securityuncorked.com/security-uncorked/2008/6/9/pci-pii-a-roofer-and-a-ssn.html">PCI, PII, a Roofer and a SSN</source>
    </item>
  </channel>
</rss>
