BrightView
bd_ceb382c54b02a495 · schema v1 · pii pii-v1
Full breach record for BrightView →BrightView disclosed that on February 3, 2016, an employee responded to a phishing email by sending a document containing personal information of legacy Brickman team members to an unauthorized party. The data included names, SSNs, dates of birth, addresses, and employment details. BrightView became aware of the incident on February 4, 2016, and notified affected individuals on February 5, 2016. The company engaged Kroll for identity monitoring and is reviewing security controls and providing phishing training.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 3, 2016
Begins
Feb 4, 2016
Discovered
Feb 10, 2016
Filed
vs. sector median
17 wks faster
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.