Abstract
Data breach events are reported on a regular basis. The nonprofit Privacy Rights Clearinghouse calculates there have been nearly 1 trillion compromised personal records from data breaches to date, since it began tracking publicly announced events in 2005. What makes this number particularly staggering is that the scope of most data breach events is unknown, and the extent and number of compromised records simply cannot be quantified.1 The Identity Theft Resource Center, publishing in conjunction with the U.S. government, also tracks thousands of data breaches and estimates that they have cost firms hundreds of millions of dollars in lost sales and recovery costs, even before accounting for their damages to long-term performance and reputations.
This is a preview of subscription content, log in via an institution.
Buying options
Tax calculation will be finalised at checkout
Purchases are for personal use only
Learn about institutional subscriptionsReferences
For More Information Consult the Privacy Rights Clearinghouse. Learn About Privacy. www.privacyrights.org.
See www.idtheftcenter.org for More Information.
Rouse, M. (2017, December). What Is a Data Breach? TechTarget. Available at https://searchsecurity.techtarget.com/definition/data-breach. Accessed July 23, 2018.
Faulkner, B. (2007). Hacking into Data Breach Notification Laws. Florida Law Review, 59, 1097–1125.
For Further Information see the National Conference of State Legislatures. (2018). 2018 Security Breach Legislation. Updated May 6, 2018. Available at http://www.ncsl.org/research/telecommunications-and-information-technology/2018-security-breach-legislation.aspx. Accessed July 23, 2018.
Martin, K. D., Borah A., & Palmatier, R. W. (2018, February 15). A Strong Privacy Policy Can Save Your Company Millions. Harvard Business Review. www.hbr.org.
Smith, H. J., Dinev, T., & Xu, H. (2011, December). Information Privacy Research: An Interdisciplinary Review. MIS Quarterly, 35, 980–1035.
Romanosky, S., Hoffman, D., & Acquisti, A. (2014). Empirical Analysis of Data Breach Litigation. Journal of Empirical Legal Studies, 11(1), 74–104.
Coombs, W. T. (2007). Attribution Theory as a Guide for Post-crisis Communication Research. Public Relations Review, 33, 135–139.
Schwartz, P. M., & Janger, E. J. (2007). Notification of Data Security Breaches. Michigan Law Review, 105, 913–985.
Burg, N. (2014, January 17). Five Lessons for Every Business from Target’s Data Breach. Fortune. Available at www.forbes.com. Accessed October 24, 2016.
Yang, J. L., & Amrita Jayakumar. (2014, January 10). Target Says Up to 70 Million More Customers Were Hit by December Data Breach. Washington Post. Available at www.washingtonpost.com/business/economy. Accessed October 25, 2016.
Greenberg, A. (2014, May 23). eBay Demonstrates How Not to Respond to a Huge Data Breach. Wired. Available at www.wired.com. Accessed October 25, 2016.
Gao, H., Xie, J., Wang, Q., Wilbur, K. C. (2015, September). Should Ad Spending Increase or Decrease Before a Recall Announcement? The Marketing-Finance Interface in Product-Harm Crisis Management. Journal of Marketing, 79, 80–99.
Germann, F., Grewal, R., Ross, W. T., Jr., & Srivastava, R. K. (2014). Product Recalls and the Moderating Role of Brand Commitment. Marketing Letters, 25, 179–191.
Dawar, N., & Pillutla, M. M. (2000, May). Impact of Product-Harm Crises on Brand Equity: The Moderating Role of Consumer Expectations. Journal of Marketing Research, 37, 215–226.
Knox, G., & van Oest, R. (2014, September). Customer Complaints and Recovery Effectiveness: A Customer Base Approach. Journal of Marketing, 78, 42–57.
Liu, A. X., Liu, Y., & Luo, T. (2016, May). What Drives a Firm’s Choice of Product Recall Remedy? The Impact of Remedy Cost, Product Hazard, and the CEO. Journal of Marketing, 80, 79–95.
Fink, S. (1986, March). Crisis Forecasting. Management Review, 75, 52–57.
Pearson, C. M. (1993). From Crisis Prone to Crisis Prepared: A Framework for Crisis Management. Executive, 7, 48–59.
Coombs, W. T. (2007). Attribution Theory as a Guide for Post-crisis Communication Research. Public Relations Review, 33, 135–139.
Coombs, W. T., & Holladay, S. J. (2008). Comparing Apology to Equivalent Crisis Response Strategies: Clarifying Apology’s Role and Value in Crisis Communication. Public Relations Review, 34, 252–257.
Fehr, R., & Gelfand, M. J. (2010). When Apologies Work: How Matching Apology Components to Victims’ Self-Construal Facilitates Forgiveness. Organizational Behavior and Human Decision Processes, 113, 37–50.
Lee, S., & Chung, S. (2012, December). Corporate Apology and Crisis Communication: The Effect of Responsibility Admittance and Sympathetic Expression on Public’s Anger Relief. Public Relations Review, 38, 932–934.
Kirchhoff, J., Wagner, U., & Strack, M. (2012). Apologies: Words of Magic? The Role of Verbal Components, Anger Reduction, and Offense Severity. Peace and Conflict: Journal of Peace Psychology, 18(2), 109–130.
Koehn, D. (2013, April). Why Saying ‘I’m Sorry’ Isn’t Good Enough: The Ethics of Corporate Apologies. Business Ethics Quarterly, 23, 239–268.
Martin, K. D., Borah A., & Palmatier, R. W. (2017, January). Data Privacy: Effects on Customer and Firm Performance. Journal of Marketing, 81, 36–85.
Smith, N. C., & Cooper-Martin, E. (1997, July). Ethics and Target Marketing: The Role of Product Harm and Consumer Vulnerability. Journal of Marketing, 61, 1–20.
Fisher, J. A. (2013). Secure My Data or Pay the Price: Consumer Remedy for the Negligent Enablement of Data Breach. William & Mary Business Law Review, 215(4), 217–233.
Victor, B., & Cullen, J. B. (1988, March). The Organizational Bases of Ethical Work Climates. Administrative Science Quarterly, 33, 101–125.
Janakiraman, R., Lim, J. H., & Rishika, R. (2018, March). The Effect of a Data Breach Announcement on Customer Behavior: Evidence from a Multichannel Retailer. Journal of Marketing, 82, 85–105.
Martin, K. D., Borah, A., & Palmatier, R. W. (2017, January). Data Privacy: Effects on Customer and Firm Performance. Journal of Marketing, 81, 36–85.
Martin, K. D., & Cullen, J. B. (2006, December). Continuities and Extensions of Ethical Climate Theory: A Meta-Analytic Review. Journal of Business Ethics, 69, 175–194.
Alby, F., Zucchermaglio, C., & Fatigante, M. (2016, July 14). Communicating Uncertain News in Cancer Consultations. Journal of Cancer Education (published electronically). https://doi.org/10.1007/s13187-016-1070-x.
Ptacek, J. T., & Eberhardt, T. L. (1996). Breaking Bad News: A Review of the Literature. Journal of the American Medical Association, 276, 496–502.
Buckman, R. A. (2005, March/April). Breaking Bad News: The S-P-I-K-E-S Strategy. Community Oncology, 2, 138–142.
For a Comprehensive Review, see Bies, R. J. (2013, January). The Delivery of Bad News in Organizations: A Framework for Analysis. Journal of Management, 39, 136–62.
Stephens, K. K., Malone, P. C., & Bailey, C. M. (2005, October). Communicating with Stakeholders During a Crisis. Journal of Business Communication, 42, 390–419.
Fang, E., Er., Palmatier, R. W., & Steenkamp, Jan-Benedict E. M. (2008, September). Effect of Service Transition Strategies on Firm Value. Journal of Marketing, 72, 1–14.
Knox, G., & van Oest, R. (2014, September). Customer Complaints and Recovery Effectiveness: A Customer Base Approach. Journal of Marketing, 78, 42–57.
Malhotra, A., & Malhotra, C. K. (2011). Evaluating Customer Information Breaches as Service Failures: An Event Study Approach. Journal of Service Research, 14(1), 44–59.
Chen, Y., Ganesan S., & Liu, Y. (2009, November). Does a Firm’s Product-Recall Strategy Affect Its Financial Value? An Examination of Strategic Alternatives During Product Harm Crises. Journal of Marketing, 73, 214–226.
Liu, A. X., Liu, Y., & Luo, T. (2016, May). What Drives a Firm’s Choice of Product Recall Remedy? The Impact of Remedy Cost, Product Hazard, and the CEO. Journal of Marketing, 80, 79–95.
Morey, T., Forbath, T. “Theo”, & Schoop, A. (2015, May). Customer Data: Designing for Transparency and Trust. Harvard Business Review, 93, 96–105.
Coombs, W. T. (2007). Attribution Theory as a Guide for Post-crisis Communication Research. Public Relations Review, 33, 135–139.
Dawar, N., & Pillutla, M. M. (2000, May). Impact of Product-Harm Crises on Brand Equity: The Moderating Role of Consumer Expectations. Journal of Marketing Research, 37, 215–226.
Gao, H., Xie, J., Wang, Q., & Wilbur, K. C. (2015, September). Should Ad Spending Increase or Decrease Before a Recall Announcement? The Marketing-Finance Interface in Product-Harm Crisis Management. Journal of Marketing, 79, 80–99.
Chen, Y., Ganesan, S., & Liu, Y. (2009, November). Does a Firm’s Product-Recall Strategy Affect Its Financial Value? An Examination of Strategic Alternatives During Product Harm Crises. Journal of Marketing, 73, 214–226.
Weidan, C., Qi, X., Yao, T., Han, X., & Feng, X. (2016). How Doctors Communicate the Initial Diagnosis of Cancer Matters: Cancer Disclosures and its Relationship with Patients’ Hope and Trust. Psycho-Oncology (published electronically). https://doi.org/10.1002/pon.4063.
Ringberg, T., Odenkerken-Schroder, G., & Christensen, G. L. (2007, July). A Cultural Models Approach to Service Recovery. Journal of Marketing, 71, 194–214.
Bies, R. J. (2013, January). The Delivery of Bad News in Organizations: A Framework for Analysis. Journal of Management, 39, 136–162.
Liu, A. X., Liu, Y., & Luo, T. (2016, May). What Drives a Firm’s Choice of Product Recall Remedy? The Impact of Remedy Cost, Product Hazard, and the CEO. Journal of Marketing, 80, 79–95.
Koehn, D. (2013, April). Why Saying ‘I’m Sorry’ Isn’t Good Enough: The Ethics of Corporate Apologies. Business Ethics Quarterly, 23, 239–268.
Bies, R. J. (2013, January). The Delivery of Bad News in Organizations: A Framework for Analysis. Journal of Management, 39, 136–162.
See Ptacek, J. T., & Eberhardt, T. L. (1996). Breaking Bad News: A Review of the Literature. Journal of the American Medical Association, 276, 496–502.
Kim, P. H., Ferrin, D. L., Cooper, C. D., & Dirks, K. T. (2004). Removing the Shadow of Suspicion: The Effects of Apology Versus Denial for Repairing Competence- Versus Integrity-Based Trust Violation. Journal of Applied Psychology, 89(1), 104–118.
Coombs, W. T., & Holladay, S. J. (2008). Comparing Apology to Equivalent Crisis Response Strategies: Clarifying Apology’s Role and Value in Crisis Communication. Public Relations Review, 34, 252–257.
See Skarlicki, D. P., Folger, R., & Gee, J. (2004, February). When Social Accounts Backfire: The Exacerbating Effects of a Polite Message or an Apology on Reactions to an Unfair Outcome. Journal of Applied Social Psychology, 34, 322–341.
Benoit, W. L., & Drew, S. (1997). Appropriateness and Effectiveness of Image Repair Strategies. Communication Reports, 10(Summer), 153–163.
Torsten, R., Odenkerken-Schroder, G., & Christensen, G. L. (2007, July). A Cultural Models Approach to Service Recovery. Journal of Marketing, 71, 194–214.
Wirtz, J., & Mattila, A. S. (2004). Consumer Responses to Compensation, Speed of Recovery and Apology After a Service Failure. International Journal of Service Industry Management, 15(2), 150–166.
Koehn, D. (2013, April). Why Saying ‘I’m Sorry’ Isn’t Good Enough: The Ethics of Corporate Apologies. Business Ethics Quarterly, 23, 239–268.
Fallowfield, L., & Jenkins, V. (2004, January). Communicating Sad, Bad, and Difficult News in Medicine. Lancet, 363, 312–319.
Fehr, R., & Gelfand, M. J. (2010). When Apologies Work: How Matching Apology Components to Victims’ Self-Construal Facilitates Forgiveness. Organizational Behavior and Human Decision Processes, 113, 37–50.
See Liu, A. X., Liu,Y., & Luo, T. (2016, May). What Drives a Firm’s Choice of Product Recall Remedy? The Impact of Remedy Cost, Product Hazard, and the CEO. Journal of Marketing, 80, 79–95.
Ponemon Institute. (2014). The Aftermath of a Data Breach: Consumer Sentiment. Ponemon Institute Research Report. www.ponemon.org.
Levin, A. (2018, June 7). This Company Was the Latest to Suffer a Data Breach. Its Reaction Was Perfect. Inc. Available at https://www.inc.com/adam-levin/this-company-was-latest-to-suffer-a-data-breach-its-reaction-was-perfect.html.
Author information
Authors and Affiliations
Corresponding author
Rights and permissions
Copyright information
© 2019 The Author(s)
About this chapter
Cite this chapter
Palmatier, R.W., Martin, K.D. (2019). Privacy Failures and Recovery Strategies. In: The Intelligent Marketer’s Guide to Data Privacy. Palgrave Macmillan, Cham. https://doi.org/10.1007/978-3-030-03724-6_6
Download citation
DOI: https://doi.org/10.1007/978-3-030-03724-6_6
Published:
Publisher Name: Palgrave Macmillan, Cham
Print ISBN: 978-3-030-03723-9
Online ISBN: 978-3-030-03724-6
eBook Packages: Business and ManagementBusiness and Management (R0)