
ICO - the situation isn't "any worse"…
By Tom Espiner
Published: 18 February 2008 08:40 GMT
The Information Commissioner's Office has said that the rash of data-breach reports in the past five months is due not to more data breaches - but to more people admitting to them.
Security from A to Z
Click on the links below to find out more...
A is for Antivirus
B is for Botnets
C is for CMA
D is for DDoS
E is for Extradition
F is for Federated identity
G is for Google
H is for Hackers
I is for IM
J is for Jaschan (Sven)
K is for Kids
L is for Love Bug
M is for Microsoft
N is for Neologisms
O is for Orange
P is for Passwords
Q is for Questions
R is for Rootkits
S is for Spyware
T is for Two-factor authentication
U is for USB sticks/devices
V is for Virus variants
W is for Wi-fi
X is for OS X
Y is for You
Z is for Zero-day
HM Revenue & Customs' loss of 25 million details of people claiming and receiving child benefit was the catalyst for a surge of data-loss reports, an ICO spokesperson told silicon.com sister site ZDNet.co.uk.
The spokesperson said: "More people are stepping forward as they realise the importance of data breaches. We don't think the situation is any worse. Back in July last year we highlighted the need for more data protection."
The ICO released its annual report in July 2007, which criticised "horrifying" security lapses at some of the UK's largest companies.
Increasing scrutiny from regulators, including the ICO, is encouraging more disclosure, said the ICO spokesperson. There is also an ongoing review of data-handling procedures in Whitehall, which the spokesperson said is exposing more data-loss incidents.
The spokesperson added: "People are stepping forward because they want to get it right."
Recent reports of data losses include the loss of a laptop by the Ministry of Defence, disclosed in January, which contained personal details of 600,000 prospective or actual recruits for the armed forces. The MoD also lost the bank details of approximately 3,500 of those people. The DVA admitted to losing thousands of learner-driver details in December, while the NHS said in January it had lost thousands of patient records on a USB drive.
The ICO said that a common thread in these incidents is the devices lost had no encryption. "If people used more encryption, they would have fewer problems," said the spokesperson.
Private companies can also suffer from regulatory scrutiny due to data loss. The Financial Services Authority fined Norwich Union £1.26m in December for failing to manage customer-data adequately.
Financial advisory firm Deloitte said there was increased scrutiny of organisations by regulators. Mike Maddison, head of security and privacy services at Deloitte, said: "The issue of protecting the privacy of sensitive data has never been under such intense scrutiny. Increasingly regulators and watchdogs are examining the approaches organisations are taking to protect this vital private information."
Original article: ICO: Data-breach spate 'no worse' than normal from ZDNet UK
From the tenor of this article, it seems that data...
Haydn Rees
ah ok
so this is the normal situation then
s...
Karen Challinor
Toothless ICO - otherwise people would be ensuring...
Roger Huffadine
this will be the government response to the ICO's ...
Karen Challinor
Provide a monthly report on security activities and incidents as part of service management reporting. Mobile device encryption V Pointsec/BeCrypt We ...
Having moved from being a single product company to a full portfolio vendor, Websense is now regarded as a true market leader in web security, ...
About the Role:This is a challenging and complex technical pre-sales role, supporting Strategic Account Sales and Field Sales teams in Ireland, ...
Agenda Setters 2008
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.
Stories from the web...
Copyright © 2008 CBS Interactive Limited. All rights reserved. Top of page
Naked CIO Naked CIO: Should you monitor staff? Somebody's watching you
Elinor Mills Why 1970s hackers had 'whiz kid' status Q&A: Kevin Mitnick - blackhat hacker turned good guy