Information Commissioner
Information Commissioner tells CEOs to be vigilant about data protection

ICO criticises chief executives for lax security

Level of security breaches is "inexcusable" and CEOs must do better

Written by Dinah Greek

Information Commissioner Richard Thomas has said that the “alarming” number of security breaches reported to his Office in the past six months is “inexcusable.”

Since the security breach at HM Revenue and Customs in November last year, the Information Commissioner’s Office (ICO) has been notified of almost 100 data breaches by public, private and third-sector organisations.

Of the security breaches that the ICO has been made aware of by private sector organisations, half were reported by financial institutions. Of those reported by public bodies, almost a third occurred in central Government and associated agencies and a fifth in NHS organisations.

He reiterated a warning to chief executives about the vital importance of protecting staff and customers’ personal information.

Information Commissioner Richard Thomas said: “It is particularly disappointing that the HMRC breaches have not prevented other unacceptable security breaches from occurring. The Government, banks and other organisations need to regain the public’s trust by being far more careful with people’s personal information.

“Once again I urge business and public sector leaders to make data protection a priority in their organisations. The level of understanding about data protection and the need to safeguard people’s personal information have no doubt increased and I am encouraged that more chief executives and permanent secretaries appear to be taking data protection more seriously. But the evidence shows that more must be done to eradicate inexcusable security breaches.”

Information that has gone missing includes unencrypted laptops and computer discs, memory keys and paper records. Information has been stolen and gone missing in the post and while in transit with a courier. The material includes a wide range of personal details, including financial and health records.

The ICO is investigating the circumstances of the breaches. In 16 cases the ICO has required the organisation to make procedural changes to improve data security, such as encryption. In three instances the lost information has been recovered.

The ICO encourages organisations to report data breaches and can advise on dealing with breaches and notifying affected customers. The ICO has recently published new guidance for organisations on how to deal with security breaches. A copy of the ICO’s Guidance on data security breach management can be downloaded.

Tags:

reader comments

related articles

Justice Commitee wants tougher data laws

MPs want to make the punishment fit the crime 03 Jan 2008

 

Commissioner wants data protection raids

Public should be protected from cyber-criminals and 'idiots' who break the data protection laws 05 Dec 2007

'Remove CD writers from HMRC'

Lib Dem steps in as Government admits security error could happen again 28 Nov 2007

HMRC loses data for 25 million people

Loss is "one of the world's biggest ID protection failures" 20 Nov 2007

NHS smartcard loss threatens privacy

Cards give access to patient records 08 Feb 2008

UK customers caught up in TK Maxx data theft

Has your card been maxed out to the limit? 30 Mar 2007

Information Commissioner’s Office to investigate Marks and Spencer’s security procedures

Details of 26,000 M & S employees could be at risk 11 May 2007

Watchdog slams 'inexcusable' security breaches

Information Commissioner gets tough 25 Apr 2008

HMRC loses data for 25 million people

Loss is "one of the world's biggest ID protection failures" 20 Nov 2007

Data bombshell engulfs MoD

Whitehall under fire as personal details of another 600,000 people is stolen 06 Feb 2008

related whitepapers

today's top stories

Body Shop rolls out PCI system

Retailer hopes to benefit from improved customer data analysis 07 Oct 2008

Where to offshore (and why not here?)

Tholons, the research firm founded by well-known offshoring guru Avinash Vashistha , has just published some new research in Global Services magazine... 07 Oct 2008

The future of Ethernet

Where is Ethernet going? We look at the future of the widely-used networking technology. 07 Oct 2008

The pIT stop Q&A: How can I measure the business success of IT applications?

Ou expert panel answers readers' real-life IT questions 07 Oct 2008

National Identity Fraud Prevention Week

Every Monday seems to mark the beginning of a new awareness drive and this week’s theme has particular importance to small businesses... 06 Oct 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Would you apply for a job that was advertised on Facebook or a similar social networking site?

Would you apply for a job that was advertised on Facebook or a similar social networking site?

The government is using Facebook to recruit IT staff - would you apply to such an ad?

Previous poll results

Latest audio and video articles

Ethernet cableVideo

The future of Ethernet

Where is Ethernet going? We look at the future of the widely-used networking technology. 07 Oct 2008

Podcast imageAudio

Computing podcast - Next-generation broadband Britain; and we report from Gartner's IT security summit

In our latest podcast, we discuss the hurdles that a national fibre-optic network must overcome, and look at the issues discussed at the recent IT security conference 02 Oct 2008

Latest in-depth articles

Features

How to ensure progress in programming

Best practice advice from Forrester Research 02 Oct 2008

BT workersAnalysis

Wanted: a viable model for fibre

While other European countries are pressing ahead with fibre rollouts, progress in the UK is being held back as the debate over who will foot the bill drags on, writes Dave Bailey 02 Oct 2008

Advertisement

Primary Navigation