Northern Ireland Charities Advised to Review Beacon CRM Cyber Incident

Published date:

Cyber Incident Image

The Charity Commission for Northern Ireland (CCNI) is encouraging charities that use Beacon CRM to assess the impact of a recently reported cyber-security incident and consider whether a Serious Incident Report is required.

 

On 4 August, Beacon CRM, a customer relationship management platform used by charities and non-profit organisations, announced that it may have experienced a cyber-security incident.

 

While the number of charities in Northern Ireland affected is currently unknown, CCNI is advising trustees to act promptly by reviewing the potential impact on their organisation and considering any reporting obligations to the Commission and the Information Commissioner's Office (ICO). Trustees should assess whether the incident has resulted in, or poses a risk of, significant harm, loss or damage to their charity, its beneficiaries, assets, services or reputation. Maintaining clear records and documenting actions taken will help demonstrate appropriate governance and compliance.

 

CCNI is also reminding charities to consider whether individuals whose data may be affected should be informed and to ensure communications with supporters and stakeholders are clear and timely.

 

For more information on reporting a serious incident, charities can consult CCNI's guidance on Serious incident reporting | CCNI. The Commission will continue to monitor the situation and provide updates as appropriate.