padlock
R E L A T E D   C O N T E N T
Jargon Buster

ADVERTISEMENT

Updated: ICO offers advice to businesses handling data

Government watchdog to release handbook for dealing with data

David Neal, IT Week 11 Dec 2007
ADVERTISEMENT

The Information Commissioners Office has called for firms to consider the privacy of individuals before installing, or developing new IT systems.

At a conference in Manchester the organisation, the UK government's data watchdog, described last month's data losses at HMRC as a watershed moment in privacy, and added that in order to reduce the risk of similar incidents firms should implement safeguards to protect data. To support this it has launched a guide to help firms better manage data, and also, to give individuals more confidence in their ability to protect privacy. This is called the Privacy Impact Assessment handbook.

The handbook is designed to suit all organizations, regardless of their size, and thus is quite lengthy. However, it is broken down into relevant areas, and suggests that firms only carry out an assessment if they are implementing tools and systems that have an impact on the privacy of individuals. It adds. "While it is necessary to ensure compliance with privacy laws, there is no obligation to undertake a PIA."

It suggests that firms take a PIA to ensure that they avoid the loss of trust and reputation, to identify and manage risks, to avoid later costs, and to help meet, and exceed their legal requirements. Company directors and senior executives are warned that ultimately they are responsible for ensuring that risks are identified, assessed and managed.

With pushes for stronger legislation happening almost constantly, firms would be advised to carry out such an assessment, if only to ensure their partners, and customers, that their data was looked after in an appropriate manner.

The handbook contains a list of questions for firms to consider, starting with, "Does the project involve new, or inherently privacy-intensive, technologies?" The ICO suggests that these would include smart cards, biometrics, RFID tags, data mining, and the logging of electronic traffic. It then asks, whether the privacy implications of these are well understood by the business, and indeed the public.

Further questions are designed to help firms get a better understanding of their system and its implications on privacy, and data protection. Where firms handle a lot of data, so they should pay more attention to their systems, and their compliance with relevant regulations.

See also:

Richard ThomasData watchdog, the Information Commissioner, says that the HMRC breach could have a positive outcome  05 Dec 2007
an ID cardThe data loss scandal could knock confidence in the UK ID card scheme  22 Nov 2007
alistair darlingWill the loss of two CD-roms make the government overhaul its security procedures?  22 Nov 2007

All Privacy & Data

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Aston Carter
C# Web Developer, Finance, London Financial Services Required: C#, ASP.NET, AJAX Fantastic opportunity not to be missed!! This is a great opportunity to work on a unique objectives that no other company is doing working ... more >
| JAM Recruitment
Senior Hardware Engineer Scotland/Edinburgh Communication Systems Permanent Position 40-45K+Benefits A leading organisation involved with the design and development of data acquisition systems and synthesis boards for a range of radar, signal intelligence and software radio ... more >
| JAM Recruitment
FPGA Engineer Defence/Safety Critical Buckinghamshire Permanent Position 45K+Benefits A leading UK defence organisation requires an experienced digital design engineer to strengthen its existing development team due to a number of long-term projects that have recently ... more >
| JAM Recruitment
DSP Engineer 3 Months Contract Hertfordshire £Excellent Rates£ This position requires you to have experience of measurement algorithms development for the generation and analysis of digital wireless communication standards including GSM, EDGE, UMTS, WLAN and ... more >
More job opportunities