How to Set Up Red Flag Procedures

How to Set Up Red Flag Procedures thumbnail
Recognizing the "red flags" of identity theft is the first step in preventing it.

According to the Federal Trade Commission (FTC), more than 9 million Americans fall prey to identity thieves each year. The federal government is fighting back by requiring certain businesses and organizations to develop a written Identity Theft Prevention Program to detect the "red flags" of identity theft --- and to protect consumers from this costly crime. To comply with the "Red Flags Rule," the FTC recommends a four-step process.

Instructions

  1. Identify the Red Flags

    • 1

      List the risk factors of different types of personal accounts: deposit versus credit, consumer versus business, accounts opened online versus accounts opened in person, etc.

    • 2

      Look for clues about relevant red flags in existing business and industry information. Use your own experience with identity theft to identify red flags --- and keep abreast of new identity theft scams.

    • 3

      Make a list of common red flags. Supplement A to the "Red Flags Rule" lists several warning signs that point to identity theft. A few examples include: an alert from a credit reporting agency, a document that appears altered or forged, a bogus address or Social Security number and suspicious account activity.

    Design Procedures for Detecting Red Flags

    • 4

      Establish methods for exposing red flags when verifying and authenticating identity in person and remotely.

    • 5

      Design procedures for verifying the identity of someone opening a new account. These might include asking for a customer's name, address and identification number. Asking for a driver's license or passport might be adequate for verifying a customer's identity in person. Comparing information that the customer provides with information from other sources --- such as a credit report --- can also be useful.

    • 6

      Set up procedures for verifying the identity of an existing customer. Your program should contain reasonable procedures for making sure that your customers are who they say they are. For advice regarding online authentication procedures, you may want to consult the Federal Financial Institutions Examination Council's guidance on authentication.

    Set Up Response and Prevention Procedures

    • 7

      Detail appropriate response procedures in your program. How you respond to a particular threat depends on the particular risk that the threat poses to your organization.

    • 8

      Establish response methods for low-level threats. These may include monitoring an account, contacting the customer or changing passwords. If you detect a red flag with a new customer, the appropriate response might be not opening a new account.

    • 9

      Establish response protocol for higher level threats. Certain red flags may call for a more aggressive response. For example, if a security breach recently resulted in unauthorized access to a customer's account or a customer has informed you that she unknowingly provided personal information to an impostor, your response may be freezing an account or contacting law enforcement.

    • 10

      Identify situations in which the appropriate response is no response. Some red flags, upon close inspection, may prove to be "false alarms." Your Identity Theft Prevention Program should clearly describe these situations.

    Reassess and Update the Program

    • 11

      Outline how you will reassess your program on an ongoing basis.

    • 12

      Incorporate new red flags that grow from changes in your business, new methods for detecting identity theft or new criminal techniques.

    • 13

      Update your detection procedures to reflect new threats and to make use of new detection technologies.

    • 14

      Modify your red flag response procedures to incorporate improved tactics for preventing criminal activity.

Tips & Warnings

  • Traditional identifying information --- such as a Social Security number, mother's maiden name and date of birth --- are too easily accessible to be reliable means of authentication.

Related Searches:

References

Resources

  • Photo Credit Red Flag image by Gonçalo Carreira from Fotolia.com

Comments

You May Also Like

  • Red Flag Rules & Education

    Red Flag Rules & Education. Under the Fair Credit Reporting Act (FCRA), the red flag rules require certain financial institutions to create...

  • Red Flag Compliance Laws

    Red Flag Compliance Laws. The Fair and Accurate Credit Reporting Act was passed by Congress in 2003. It required that by 2008,...

  • How to Set Up a Flag Pole

    Flagpoles show off patriotism for your country or home state or reveal a love of your favorite sports team. Finding the best...

  • Federal Red Flag Rules

    Red Flag rules require programs to detect, prevent and mitigate identity theft. Red Flag image by Gonçalo Carreira from Fotolia.com

  • How to Set up a Manual Accounting System

    Accounting systems don't need to be complicated, and many small businesses do well with a manual system. Paper and pencil used to...

  • How to Set Up Credit Card Machines

    Credit card processing machines allow you, as a business owner and operator, to accept non-cash payments from customers. Once you have a...

  • What Is Red Flag Legislation?

    The Federal Trade Commission is an agency that issues rules and regulations designed to protect consumers. The FTC and banking regulatory agencies...

  • What Is a Red Flag Warning Weather Condition?

    Red flag weather warnings can be associated with a few different situations. It is a common way to show alerts or grab...

  • Red Flag Procedures for Returned Mail

    Red Flag Procedures for Returned Mail. Red Flag programs are designed to ensure the prevention of identity theft. According to AllBusiness.com, an...

  • Red Flag Laws

    Red Flag Laws. Red Flag laws cropped up in 2003 when Congress passed the Fair and Accurate Credit Transactions Act (FACT) in...

  • HIPAA Red Flags Rule

    HIPAA Red Flags Rule. The HIPAA (Health Insurance Portability and Accountability Act) Red Flags Rule is intended to guard against patient identity...

  • How to Comply With the FTC's Red Flag Rules

    The Federal Trade Commission (FTC) amended its Fair and Accurate Credit Transactions Act (FACTA) of 2003 to include Red Flag rules. Under...

  • Federal Trade Commission Red Flag Rules

    Financial institutions and creditors open and service millions of consumer credit accounts, loan accounts, utility and communication accounts and noncommercial banking ...

  • How to Set Up Office Procedures

    Keeping a business environment organized is a key component for a successful enterprise. Office procedures are the guidelines to that organized environment....

  • How to Set Rules in Outlook

    Small business owners, corporate personnel and independent contractors are all face with the same day-to-day business tasks. Maintaining a calendar for appointments...

  • What Are the Consequences of Falsifying Medical Records?

    Medical records are regarded as being very personal documents. They have many legal and ethical issues surrounding them aimed at keeping them...

  • How Can I Teach Reading & Decoding Skills?

    Decoding skills are essential for reading proficiency. Children must learn the strategies that enable them to read like sounding out words, using...

  • Procedure for How to Set Up New Accounts Payables

    Accounts payable represent claims against a company's assets. Businesses that purchase goods on account will incur accounts payable. In accounting terms, accounts...

  • How to Create an Online Policy & Procedure Manual

    Having a policy and procedure manual online allows any employee to view policies and procedures at any time without having to worry...

Related Ads

Featured