Scammers Update from Compliance February 2023

Modified on Wed, 8 Feb, 2023 at 8:12 AM

Having recently suffered a scamming incident at one of our schools, it is more important than ever that you all continue to be vigilant.

Here are my Top Tips:


1. Emails: Never click on links/attachments unless you are certain that the email is genuine.

Take extra care of emails marked ‘EXTERNAL’ as these are more likely to be suspicious.

Check the sender’s email address – this can indicate that it is a phishing email.

Spelling mistakes in the email address or in the body of the email may mean the email is a scam. Genuine emails will NEVER ask for your username/password.

IF IN DOUBT – FORWARD THE EMAIL TO soc@millhill.org.uk


2. Request for Information or Change of Contact Details: Do not action the request until you have checked that the request is genuine. Checks should include: compare the sender’s email address to the one on our records; speaking to the requestor using the phone number on our records or asking the requestor to provide evidence of identity.

IF IN DOUBT – FORWARD THE EMAIL TO compliance@millhill.org.uk

 

3. Staff Change of Contact Details: Staff at Mill Hill Schools can change their contact details via the ESS portal. For other schools, staff should email HR or their Office Manager from their School email address. Staff must ensure that their school has their up to date contact details.

 

4. Staff Change of Bank Details: Staff must inform Payroll of any changes in their bank details using their school email address. The request will not be actioned until Payroll has spoken to the member of staff to verify the change. PLEASE NOTE: Requests received after the 10th of the month will not be processed until the following month.

 

5. Correct Recipient: Mis-sent emails is our largest category of data breaches. Always check that you are emailing the correct recipient especially if the email contains sensitive information.

 

6. Multi Factor Authentication: Always sign up for MFA, if requested, and inform soc@millhill.org.uk  if you receive an authentication request that you don’t recognise.

 

7. Data Breaches Contacts:

 

  • If you become aware of  a cyber security breach eg providing your password in response to a phishing email, contact soc@millhill.org.uk immediately. This email address is monitored 24/7.
  • To report any other data breach, contact compliance@millhill.org.uk

 

Please let Compliance know if you have any questions about the above or any other Data Protection related issues.

 

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article