Cyber-security incident
This week we were informed that our customer database supplier, Beacon CRM, experienced a cyber-security incident.
An unauthorised third-party accessed Beacon’s systems in late July. Copies of Beacon’s database backups were made and possibly downloaded. We believe that the John Muir Trust is one of around a thousand organisations affected.
Beacon implemented immediate measures to secure its systems and prevent any further unauthorised access. They are conducting a forensic investigation with their cyber-security specialists.
As soon as we learned of this incident, we began our own investigation, supported by external cyber incident experts. The information we hold in Beacon includes the name, email address, postal address, and phone number of people we contact. No financial data, bank account or payment card details are affected. We have secured our system connections with Beacon, and our current operations are not impacted.
We know you place your trust in us to protect your personal data; doing so is something we take very seriously. We also know that incidents like this can be concerning. Please remain alert to any unexpected or suspicious emails, letters, or phone calls you may receive.