RANT: CSFB stupid “security theater”

Wednesday, February 15, 2012

OBVIOUS STUPIDITY!

Call up to find out where my pension check is.

Called, went through all the automated questions, and then the operator comes on after a short wait and asks me for my password.

What password?

(Ignores the concept that a “password” is a shared secret. If I knew and told her, then it’s no longer a secret. And, a static password! Please. Even Google two factor authentication is better.)

So we can do anything without them mailing me a new temporary password.

Now envision that I sent them in all my paperwork by certified mail and suggest that number as an authenticator. Or that they call me back. Or that they send me a fax or an email.

Argh!

And, who says that US Mail is secure, unless it’s sent certified mail. (We know they won’t do that because it costs more.)

# – # – # – # – #  2012-Feb-15 @ 13:32