Equifax mismanaged its recovery by asking for personal information to determine if a user was affected and then issuing a predictable PIN code to those who requested a credit lock, moves that diluted confidence in the company, writes Timothy Crosby, senior security consultant for Spohn Security Solutions.