Transamerica reported unauthorized access to retirement plan online account information between January and August 2017. Attackers used compromised third-party user credentials to log into Transamerica systems. Affected data included names, addresses, Social Security numbers, dates of birth, financial account information, and employment details. Transamerica engaged forensic investigators, contacted law enforcement, and offered one year of credit monitoring.