Data Security Incident Affecting Beacon CRM

The below is regarding a data security incident involving Beacon CRM, a third-party service provider that we use to manage our donors, funders, and newsletter subscribers.

Earlier this week, along with many other charities and organisations who use Beacon CRM, we were notified by them that they had experienced a cybersecurity incident affecting certain data stored on their systems. As a result, some personal information relating to SARI supporters and newsletter subscribers may have been accessed by an unauthorised third party.

What information may have been affected?

In Beacon’s incident FAQ page (https://www.beaconcrm.org/incident-faqs)  they have stated ‘we understand copies of database backups were made’. 

Based on this statement, we believe this could include names, contact details, and correspondence we have had with you.

A full update from Beacon is here: https://www.beaconcrm.org/incident

What are we doing at SARI?

As soon as we became aware of the incident, we:

·         Contacted Beacon for further information.

·         Reported the incident to the Information Commissioner’s Office (ICO)

We understand that incidents of this nature can be concerning and we sincerely apologise for any distress this may cause. We are continuing to monitor the situation and will work closely with Beacon on its investigation.

If you have any questions or would like further information about this incident or your personal data, please contact: Donations@saricharity.org.uk

Thank you for your understanding and continued support.