• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia

Trendingnow

1

After forcing workers back to the office, Goldman Sachs and JPMorgan Chase are now letting their staff work remotely—but only for the World Cup

2

The Pentagon said Iran War costs $29 billion, but the real cost is closer to $200 billion—and counting

3

Amazon's record Prime Day masks a darker truth: Americans are spending more and getting less

1

After forcing workers back to the office, Goldman Sachs and JPMorgan Chase are now letting their staff work remotely—but only for the World Cup

2

The Pentagon said Iran War costs $29 billion, but the real cost is closer to $200 billion—and counting

3

Amazon's record Prime Day masks a darker truth: Americans are spending more and getting less
CommentaryCybersecurity

3 leadership lessons from the U.S. government’s data hack

By
S. Kumar
S. Kumar
Down Arrow Button Icon
By
S. Kumar
S. Kumar
Down Arrow Button Icon
July 13, 2015, 11:08 AM ET
Katherine Archuleta
Office of Personnel Management Director Katherine Archuleta testifies before the Senate Homeland Security and Governmental Affairs Committee on Capitol Hill in Washington, Thursday, June 25, 2015, during a hearing on Federal Cybersecurity and the OPM Data Breach. (AP Photo/Susan Walsh)Photograph by Susan Walsh — AP
Add Fortune on Google for similar content.

The U.S. government’s Office of Personnel Management chief Katherine Archuleta resigned last week in the wake of a massive data breach involving social security numbers and other personal information of nearly 21.5 million people. Despite the seriousness of the breach, the Obama administration was supportive of Archuleta even while Republicans wanted her gone. While it’s impossible to tell how much autonomy Archuleta really had in handling the aftermath and in revealing information to the public, as the keeper of the records, her responsibility was heavier than anyone else’s.

The following are 3 areas where Archuleta failed as a leader.

Ignoring a credible threat

The primary function of the OPM is to serve as the human resources office for the federal government. As part of this function, it gathers and maintains mountains of sensitive information on prospective candidates and current employees, and securing that data should be a priority for the agency. Cybercrime is neither a new phenomenon nor is it obscure anymore. It’s a major threat to all organizations and especially one like the OPM that is a treasure trove of personal information.

Despite this, the agency showed a shocking insouciance toward cybersecurity. Its computer systems reportedly lacked even basic security procedures like two-factor authentication and encryption of social security numbers. Even the Department of Homeland Security’s intrusion detection system, called EINSTEIN, apparently failed to detect data breaches until it was too late.

Ignoring a credible threat is a sign of bad leadership. While the DHS might deserve some of the blame, it was ultimately Archuleta’s responsibility to maintain the integrity of the OPM’s database, and she failed at doing that.

Not sounding the alarm

The OPM’s computer vulnerabilities were not unknown. The agency had been warned about the risks of its outdated technology as early as 2007, but no remedial steps were seemingly taken, according to The New York Times. To be fair, it’s certainly possible that Archuleta asked for funds to upgrade the OPM’s systems and was denied, or was thwarted by inter-governmental politics, but nothing has surfaced so far to indicate that.

A good leader would have acknowledged that something was very wrong and sounded the alarm. Had the OPM moved proactively to modernize its cybersecurity eight years ago, the current breach might never have taken place. Sounding the alarm might have pitted Archuleta against those who didn’t consider a hack of this magnitude to be likely or had budgetary concerns, but that was no reason for her to stay silent. She could also have taken her concerns to the press to force action on the issue. It was Archuleta’s job to be bold and take the lead in fixing an obvious problem.

Downplaying the problem

Once the breach had been discovered, Archuleta should have acknowledged the full scope of the hack, but instead she tried to downplay it. According to a Wall Street Journal report, the OPM at first denied that security clearance forms, known as SF-86s, were stolen in the hack, even though the FBI had informed the OPM of that fact. Once it came out, the agency hid behind semantics, claiming that they had agreed with the White House to treat the breach of security clearance forms as a separate incident from that of personnel files and therefore not addressed it initially. Bad politics, but also bad leadership.

The result of this seeming obfuscation was that initial reports of the hack greatly underestimated the number of people who were affected. Given that it wasn’t just social security numbers that were compromised but fingerprint records, financial and mental health histories as well, Archuleta should have shown more empathy with the victims and come clean about the scope of the problem from the beginning.

S. Kumar is a tech and business commentator. He has worked in technology, media, and telecom investment banking.

About the Author
By S. Kumar
See full bioRight Arrow Button Icon
Add Fortune on Google for similar content.

Latest in Commentary

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • World's Most Admired Companies
  • See All Rankings
  • Lists Calendar
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Commentary

Asia’s defense boom is rewiring the global arms supply chain
Commentaryarms, weapons, and defense
Asia’s defense boom is rewiring the global arms supply chain
By Chris OberoiJune 24, 2026
1 hour ago
steve
Commentary250 Years of Innovation
Steve Case: America was built by entrepreneurs. Here’s how we keep that edge for the next 250 years
By Steve CaseJune 24, 2026
10 hours ago
t
CommentaryWhite House
Trump mistakes the bully pulpit for bullying leadership — history’s villains were never heroes
By Jeffrey Sonnenfeld and Steven TianJune 24, 2026
10 hours ago
mg
CommentaryHealth
The ‘tech neck’ time bomb: why 43 million young Americans could cripple U.S. health care within a generation
By Michael GerlingJune 24, 2026
11 hours ago
sb
Commentaryclimate change
The climate policy triangle: why leaders can no longer choose between growth, security and sustainability
By Sebastian BuckupJune 23, 2026
1 day ago
brett
CommentaryManagement
Middle managers aren’t going extinct—they’re evolving into something more powerful
By Brett HurtJune 23, 2026
1 day ago

Most Popular

After forcing workers back to the office, Goldman Sachs and JPMorgan Chase are now letting their staff work remotely—but only for the World Cup
Success
After forcing workers back to the office, Goldman Sachs and JPMorgan Chase are now letting their staff work remotely—but only for the World Cup
By Orianna Rosa RoyleJune 23, 2026
1 day ago
The Pentagon said Iran War costs $29 billion, but the real cost is closer to $200 billion—and counting
Economy
The Pentagon said Iran War costs $29 billion, but the real cost is closer to $200 billion—and counting
By Jacqueline MunisJune 24, 2026
15 hours ago
Amazon's record Prime Day masks a darker truth: Americans are spending more and getting less
Retail
Amazon's record Prime Day masks a darker truth: Americans are spending more and getting less
By Nick LichtenbergJune 24, 2026
7 hours ago
Ray Dalio just finished a 10-day trip to China. He says global leaders know America 'doesn’t have what it takes to fight to maintain its empire'
Asia
Ray Dalio just finished a 10-day trip to China. He says global leaders know America 'doesn’t have what it takes to fight to maintain its empire'
By Nick LichtenbergJune 24, 2026
9 hours ago
Current price of oil as of June 23, 2026
Personal Finance
Current price of oil as of June 23, 2026
By Joseph HostetlerJune 23, 2026
1 day ago
Current price of gold as of June 23, 2026
Personal Finance
Current price of gold as of June 23, 2026
By Danny BakstJune 23, 2026
1 day ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.