
Vital for consumer defence…
By Nick Heath
Published: 1 September 2008 13:21 GMT
Watchdog the National Consumer Council (NCC) is calling on lawmakers to force businesses to confess to their data breaches.
The NCC is petitioning the European Union to draft legal powers to compel businesses and banks to inform customers when they lose their personal data.
silicon.com's Full Disclosure campaign - what we are asking for...
silicon.com wants the government to review its data protection legislation and improve the reporting of information security breaches in the public and private sectors.
We are calling for greater public debate and for the government to consider legislation that would require organisations that suffer information security breaches to alert their customers if there is a chance the breach has put individuals' sensitive personal data at risk.
We want to hear your views about this campaign and the issues it raises. Make your voice heard by leaving a Reader Comment below or emailing us at editorial@silicon.com.
The EU is currently debating proposals to overhaul the ePrivacy Directive to compel ISPs to come clean about data breaches, recently welcomed by deputy information commissioner David Smith.
The NCC, and its fellow European consumer watchdogs, want the proposed revisions to be extended so that all UK banks and businesses face a reporting requirement, claiming that because many smaller breaches go unreported by UK businesses, consumers can't properly defend themselves against identity fraud.
Anna Fielder, senior policy advisor with the NCC, told silicon.com: "Thousands of businesses are handling bank account details, dates of birth and other personal details daily and a lot of incidents could go unreported because they are not considered high profile enough.
"All banks and businesses should be obliged to report losses to enable customers to take action and protect themselves."
Fielder added: "It would also provide the incentive needed for businesses to improve their data security and be less cavalier with customers' data."
According to Fielder, the UK is failing to keep up with the US, where about 40 States have a data breach notification law in place.
She said: "We are hoping that we will get support for this in the EU but we understand that it will be resisted by business."
The reckless loss of personal data became a civil offence earlier this year and the NCC called for the Information Commissioner's Office to be given more powers to fine offending private and public sector organisations.
The issue of public data loss shot into the public eye late last year with the HMRC's loss of 25 million people's details on two CDs, which sparked a host of revelations about missing data in government and business - most recently a Home Office contractor losing the details of 84,000 prisoners and personal data of one million bank customers being found on a server sold on eBay.
Huntress does not discriminate on the grounds of age, race, gender, disability, creed or sexual orientation and complies with all relevant UK ...
Responsible for keeping up-to-date with the latest employment legislation as advised by our employment lawyer Ownership of employee staff manual, ...
Huntress does not discriminate on the grounds of age, race, gender, disability, creed or sexual orientation and complies with all relevant UK ...
Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.
Stories from the web...
Copyright © 2008 CBS Interactive Limited. All rights reserved. Top of page
Tim Ferguson Exclusive: Former MySQL boss Marten Mickos talks open source Why Microsoft could become one of the "biggest friends of open source" and why Oracle getting its hands on MySQL could be "one of the biggest open source coups ever"...
Naked CIO Naked CIO: Cloud computing more expensive than we thought? Smart IT leaders will examine the impact of how they pay for tech