The employee was immediately dismissed and a police report was lodged, with the case still under investigation.
The external consultant engaged for the information security management system and internal procedural policies review of the incident identified certain low-risk rated findings. The consultant also recommended that Commune Lifestyle should implement a policy which allows authorised account creations in the absence of CEO with regular review of user activities, as well as standardised push notifications within the payment gateway system.
Koda says it agrees with the findings and will address the issues. The company is in the midst of conducting a second phase review relating to the IT governance, risk and compliance analysis for all the integrated payment gateways and systems, including IT system audit relating to receipts collection.
Shares in Koda closed unchanged at 23 cents on Dec 27.