The SSS-GSIS Pensyonado (SGP) Partylist expressed its concern over the security incident at the Government Service Insurance System (GSIS) that might have put the information of numerous members and pensioners at risk.
In a recent statement made by GSIS, the state pension fund’s security partner warned them that a local threat actor had compromised the administrator’s account of one of their computers. GSIS further stated that the compromised machine is for running tests and only holds dummy data instead of actual personal information of GSIS members and employees.
“There are 500,000 GSIS pensioners and more than 2 million active members. The GSIS should prioritize and strengthen its cybersecurity to prevent another data breach and ensure the data privacy of its members and pensioners.” SGP Partylist spokesperson Val Yutan said on Monday (September 16).
Heeding the warning, the GSIS took the compromised computer offline to plug the hole in its cybersecurity.
The pension fund is determining how far the hacker had penetrated their system before the security partner spotted the breach. It’s also validating the allegations made by the local threat actor per the requirements of the Data Privacy Act.
Despite the security breach, the GSIS assures employees, members, and pensioners that it prioritizes the security of their personal information above all other concerns. Furthermore, the pension fund is taking the necessary steps to secure its systems and data from future breaches.
The GSIS states that it will continue to do whatever it takes to protect the privacy and security of the information in its care.