{"id":41584,"date":"2023-06-29T22:54:40","date_gmt":"2023-06-30T02:54:40","guid":{"rendered":"https:\/\/inside.wooster.edu\/technology\/?page_id=41584"},"modified":"2023-07-12T14:40:13","modified_gmt":"2023-07-12T18:40:13","slug":"tiaa-kaspick-moveit-security-vulnerability","status":"publish","type":"page","link":"https:\/\/inside.wooster.edu\/technology\/moveit-transfer-security-vulnerability\/tiaa-kaspick-moveit-security-vulnerability\/","title":{"rendered":"TIAA Kaspick MOVEIT Security Vulnerability"},"content":{"rendered":"\n<p>The Teachers Insurance and Annuity Association (TIAA) is a financial organization that provides investment and insurance services for those working for organizations in the nonprofit industry in academic, research, medical, government, and cultural fields. TIAA Kaspick provides planned gift management services for the College.<\/p>\n\n\n\n<p>TIAA Kaspick notified Wooster that one of its third-party vendors was affected by the MOVEIt security vulnerability and confirmed that for some donors\/beneficiaries, their personal information processed by the vendor was involved.&nbsp; No information was obtained from TIAA Kaspick\u2019s systems and TIAA Kaspick systems are not threatened. TIAA Kaspick has not observed any unusual activity from this event involving Wooster\u2019s planned gift accounts.<\/p>\n\n\n\n<p>Wooster\u2019s Advancement Team is working closely with the College\u2019s Information Technology (IT) organization as more becomes known about the MOVEIt incident and as we learn more from TIAA Kaspick.&nbsp;<\/p>\n\n\n\n<h2 id=\"faq\" class=\"wp-block-heading\">FAQ<\/h2>\n\n\n\n<section id=\"fca717\" class=\"section-fca717 gutentor-module gutentor-module-accordion\"><div class=\"grid-container\">\n<div id=\"2b0200\" class=\"wp-block-gutentor-m6-item section-2b0200 gutentor-module gutentor-module-accordion-item\"><div class=\"gutentor-module-accordion-panel g-a-panel-fca717\"><div tabindex=\"0\" class=\"gm-ah-fca717 gutentor-module-accordion-item-heading gutentor-module-icon-position-right\"><span class=\"gutentor-module-accordion-panel-handler\" role=\"button\"><span class=\"gutentor-module-accordion-panel-handler-label\"><strong>How do I know if my information was involved?<\/strong><\/span><span class=\"gutentor-module-accordion-icon\"><i class=\"gm-aio-fca717 gutentor-module-accordion-icon-open fas fa-plus\"><\/i><i class=\"gm-aic-fca717 gutentor-module-accordion-icon-close fas fa-minus\"><\/i><\/span><\/span><\/div><div class=\"gm-ab-fca717 gutentor-module-accordion-body\">\n<div id=\"section-g9bbe66\" class=\"wp-block-gutentor-e0 section-g9bbe66 gutentor-element gutentor-element-advanced-text\"><div class=\"gutentor-text-wrap\"><p class=\"gutentor-text\">You will receive an email and letter from the College advising you that TIAA Kaspick has determined that your information was involved. The email\/letter will include more information about next steps and precautions you may want to take now. The sending of emails and letters is planned for July 7, 2023.<\/p><\/div><\/div>\n<\/div><\/div><\/div>\n\n\n\n<div id=\"a95252\" class=\"wp-block-gutentor-m6-item section-a95252 gutentor-module gutentor-module-accordion-item\"><div class=\"gutentor-module-accordion-panel g-a-panel-fca717\"><div tabindex=\"0\" class=\"gm-ah-fca717 gutentor-module-accordion-item-heading gutentor-module-icon-position-right\"><span class=\"gutentor-module-accordion-panel-handler\" role=\"button\"><span class=\"gutentor-module-accordion-panel-handler-label\"><strong>If my information was involved, what happens next?<\/strong><\/span><span class=\"gutentor-module-accordion-icon\"><i class=\"gm-aio-fca717 gutentor-module-accordion-icon-open fas fa-plus\"><\/i><i class=\"gm-aic-fca717 gutentor-module-accordion-icon-close fas fa-minus\"><\/i><\/span><\/span><\/div><div class=\"gm-ab-fca717 gutentor-module-accordion-body\">\n<div id=\"section-gf58157\" class=\"wp-block-gutentor-e0 section-gf58157 gutentor-element gutentor-element-advanced-text\"><div class=\"gutentor-text-wrap\"><p class=\"gutentor-text\">You will receive a letter by mail from TIAA Kaspick\u2019s third-party vendor, Pension Benefit Information, LLC (\u201cPBI\u201d). PBI will fulfill all required obligations under federal and state privacy regulations, including notifying you and offering free credit monitoring for two years at no cost. The letter will provide instructions and a unique code to reference when registering for the free credit monitoring. The letter will include a telephone number you may call to learn more or ask questions about the credit monitoring service<\/p><\/div><\/div>\n<\/div><\/div><\/div>\n\n\n\n<div id=\"ca401b\" class=\"wp-block-gutentor-m6-item section-ca401b gutentor-module gutentor-module-accordion-item\"><div class=\"gutentor-module-accordion-panel g-a-panel-fca717\"><div tabindex=\"0\" class=\"gm-ah-fca717 gutentor-module-accordion-item-heading gutentor-module-icon-position-right\"><span class=\"gutentor-module-accordion-panel-handler\" role=\"button\"><span class=\"gutentor-module-accordion-panel-handler-label\"><strong>Who may I contact if I have questions?<\/strong><\/span><span class=\"gutentor-module-accordion-icon\"><i class=\"gm-aio-fca717 gutentor-module-accordion-icon-open fas fa-plus\"><\/i><i class=\"gm-aic-fca717 gutentor-module-accordion-icon-close fas fa-minus\"><\/i><\/span><\/span><\/div><div class=\"gm-ab-fca717 gutentor-module-accordion-body\">\n<div id=\"section-g34ac69\" class=\"wp-block-gutentor-e0 section-g34ac69 gutentor-element gutentor-element-advanced-text\"><div class=\"gutentor-text-wrap\"><p class=\"gutentor-text\">Wooster Advancement and Information Technology staff can assist with general questions. Feel free to contact either Carolyn Ciriegio, Interim Vice President for Advancement (<a href=\"mailto:cciriegio@wooster.edu\">cciriegio@wooster.edu<\/a> or (330)263-2075) or Ellen Falduto, Chief Information &amp; Planning Officer\/Chief Information Privacy Officer (<a href=\"mailto:efalduto@wooster.edu\">efalduto@wooster.edu<\/a> or (330) 263-2230).<br><br>Specific questions about your information, next steps, or credit monitoring should be directed to the organization in the letter you receive from PBI.<\/p><\/div><\/div>\n<\/div><\/div><\/div>\n<\/div><\/section>\n\n\n\n<h2 id=\"tiaa-resources\" class=\"wp-block-heading\">TIAA Resources<\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li>T<a href=\"https:\/\/www.kaspick.com\/privacy\" data-type=\"URL\" data-id=\"https:\/\/www.kaspick.com\/privacy\" target=\"_blank\" rel=\"noreferrer noopener\">IAA Kaspick privacy policy &amp; contact information<\/a><\/li>\n\n\n\n<li><a rel=\"noreferrer noopener\" href=\"https:\/\/livewooster.sharepoint.com\/:b:\/s\/IT-Everyone-InfoSecurityIncidents\/EW9aBEZqFfRKrBGg51BiBHcBEaUdJc5PA19ljyxivALzVg?e=OKnnQR\" data-type=\"URL\" data-id=\"https:\/\/livewooster.sharepoint.com\/:b:\/s\/IT-Everyone-InfoSecurityIncidents\/EW9aBEZqFfRKrBGg51BiBHcBEaUdJc5PA19ljyxivALzVg?e=OKnnQR\" target=\"_blank\">TIAA Cyber Security Tips<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/cl.s6.exct.net\/?qs=b61c81ed5587fd5fff71e90169834299433f64075a4271b69dcaa6a921695f8e0b12f5494456f52de67d1bab79eb3fb06bca5f091d79f576\" data-type=\"URL\" data-id=\"https:\/\/cl.s6.exct.net\/?qs=b61c81ed5587fd5fff71e90169834299433f64075a4271b69dcaa6a921695f8e0b12f5494456f52de67d1bab79eb3fb06bca5f091d79f576\" target=\"_blank\" rel=\"noreferrer noopener\">TIAA Security Center<\/a><\/li>\n<\/ul>\n\n\n\n<h2 id=\"tiaa-notices-to-the-college\" class=\"wp-block-heading\">TIAA Notices to the College<\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li><a href=\"https:\/\/livewooster.sharepoint.com\/:b:\/s\/IT-Everyone-InfoSecurityIncidents\/EeZgDR3dFfpCjV77QIYhtVIBA5qvfxFs-dODrYVG9-o5vg?e=6Hisb9\" data-type=\"URL\" data-id=\"https:\/\/livewooster.sharepoint.com\/:b:\/s\/IT-Everyone-InfoSecurityIncidents\/EeZgDR3dFfpCjV77QIYhtVIBA5qvfxFs-dODrYVG9-o5vg?e=6Hisb9\" target=\"_blank\" rel=\"noreferrer noopener\">June 16, 2023<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/livewooster.sharepoint.com\/:b:\/s\/IT-Everyone-InfoSecurityIncidents\/ETTdws5IQxRBjgjkG1ztJu0Bf9V9OTy02vlOpWaKRRhebw?e=6RbtvH\" data-type=\"URL\" data-id=\"https:\/\/livewooster.sharepoint.com\/:b:\/s\/IT-Everyone-InfoSecurityIncidents\/ETTdws5IQxRBjgjkG1ztJu0Bf9V9OTy02vlOpWaKRRhebw?e=6RbtvH\" target=\"_blank\" rel=\"noreferrer noopener\">June 22, 2023<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/livewooster.sharepoint.com\/:b:\/s\/IT-Everyone-InfoSecurityIncidents\/EW9tzSvMpmlApEl9OIXpSRsBjzAfezP6wrW64WEqPnQ1OQ?e=eavFA9\" data-type=\"URL\" data-id=\"https:\/\/livewooster.sharepoint.com\/:b:\/s\/IT-Everyone-InfoSecurityIncidents\/EW9tzSvMpmlApEl9OIXpSRsBjzAfezP6wrW64WEqPnQ1OQ?e=eavFA9\" target=\"_blank\" rel=\"noreferrer noopener\">June 29, 2023<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>The Teachers Insurance and Annuity Association (TIAA) is a financial organization that provides investment and insurance services for those working for organizations in the nonprofit industry in academic, research, medical, government, and cultural fields. TIAA Kaspick provides planned gift management services for the College. TIAA Kaspick notified Wooster that one of its third-party vendors was [&hellip;]<\/p>\n","protected":false},"author":27,"featured_media":0,"parent":41565,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_acf_changed":false,"_uag_custom_page_level_css":"","footnotes":""},"coauthors":[436],"class_list":["post-41584","page","type-page","status-publish","hentry"],"acf":[],"featured_image_urls":{"full":"","thumbnail":"","medium":"","medium_large":"","large":"","1536x1536":"","2048x2048":""},"post_excerpt_stackable":"<p>The Teachers Insurance and Annuity Association (TIAA) is a financial organization that provides investment and insurance services for those working for organizations in the nonprofit industry in academic, research, medical, government, and cultural fields. TIAA Kaspick provides planned gift management services for the College. TIAA Kaspick notified Wooster that one of its third-party vendors was affected by the MOVEIt security vulnerability and confirmed that for some donors\/beneficiaries, their personal information processed by the vendor was involved.&nbsp; No information was obtained from TIAA Kaspick\u2019s systems and TIAA Kaspick systems are not threatened. TIAA Kaspick has not observed any unusual activity from&hellip;<\/p>\n","category_list":"","author_info":{"name":"Ellen Falduto","url":"https:\/\/inside.wooster.edu\/technology\/author\/efaldutowooster-edu\/"},"comments_num":"0 comments","uagb_featured_image_src":{"full":false,"thumbnail":false,"medium":false,"medium_large":false,"large":false,"1536x1536":false,"2048x2048":false},"uagb_author_info":{"display_name":"Ellen Falduto","author_link":"https:\/\/inside.wooster.edu\/technology\/author\/efaldutowooster-edu\/"},"uagb_comment_info":0,"uagb_excerpt":"The Teachers Insurance and Annuity Association (TIAA) is a financial organization that provides investment and insurance services for those working for organizations in the nonprofit industry in academic, research, medical, government, and cultural fields. TIAA Kaspick provides planned gift management services for the College. TIAA Kaspick notified Wooster that one of its third-party vendors was&hellip;","_links":{"self":[{"href":"https:\/\/inside.wooster.edu\/technology\/wp-json\/wp\/v2\/pages\/41584","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/inside.wooster.edu\/technology\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/inside.wooster.edu\/technology\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/inside.wooster.edu\/technology\/wp-json\/wp\/v2\/users\/27"}],"replies":[{"embeddable":true,"href":"https:\/\/inside.wooster.edu\/technology\/wp-json\/wp\/v2\/comments?post=41584"}],"version-history":[{"count":18,"href":"https:\/\/inside.wooster.edu\/technology\/wp-json\/wp\/v2\/pages\/41584\/revisions"}],"predecessor-version":[{"id":41661,"href":"https:\/\/inside.wooster.edu\/technology\/wp-json\/wp\/v2\/pages\/41584\/revisions\/41661"}],"up":[{"embeddable":true,"href":"https:\/\/inside.wooster.edu\/technology\/wp-json\/wp\/v2\/pages\/41565"}],"wp:attachment":[{"href":"https:\/\/inside.wooster.edu\/technology\/wp-json\/wp\/v2\/media?parent=41584"}],"wp:term":[{"taxonomy":"author","embeddable":true,"href":"https:\/\/inside.wooster.edu\/technology\/wp-json\/wp\/v2\/coauthors?post=41584"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}