The Charity Commission has issued guidance for charities following a recent cyber security incident involving Beacon CRM, a customer relationship management system used by charities.
The Commission says it is aware of the potential impact on organisations using the service and is working with the Information Commissioner’s Office (ICO) as the situation develops.
Charity trustees affected by the incident are being encouraged to consider whether they need to submit a serious incident report to the Charity Commission. This applies where an incident has resulted in, or risks causing, significant harm, loss or damage to a charity, its beneficiaries, assets, services or reputation.
Affected organisations should also consider whether they have reporting obligations to the ICO and whether individuals whose data is stored within Beacon systems need to be informed. The Commission has stressed that clear communication with supporters and other stakeholders is important for maintaining trust.
Charities are also encouraged to review existing guidance on dealing with cyber crime and data breaches.
Read the full guidance from the Charity Commission:
Guidance for charities affected by the Beacon cyber security incident
Discover more from Community VISION CIO
Subscribe to get the latest posts sent to your email.

