ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Privacy experts warn of 'ambient intelligence' risks

Tom Espiner ZDNet.co.uk

Published: 04 Feb 2008 11:26 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

A group of European technology researchers and academics has warned industry and policy makers of the privacy and security risks posed by gathering and using so-called "ambient intelligence" — data gathered from ubiquitous technology.

A book published on Thursday, Safeguards in a World of Ambient Intelligence, claims both customers and citizens could be alienated if information collected by embedded devices, such as RFID tags, as well as surveillance technologies, biometrics and communications devices, is not properly controlled.

"Our feeling is that [technological] proliferation, while benefiting industry and the economy, needs to be looked at very carefully," said David Wright, one of the researchers and editors of the book and co-founder of technology consultancy Trilateral Research & Consulting.

"If companies are not careful with the technologies they install or the security measures they employ, once it becomes known that their systems, technologies or services are impacting [on] privacy or have led to a data breach, the company could suffer damage [to its reputation]," added Wright.

Following a number of recent reports of data breaches affecting both public and private-sector organisations, companies should look on the implementation of privacy-enhancing technologies as an investment or insurance against the costs of a security incident, the researchers claimed.

Costs incurred by data breaches include the notification of people affected and dealing with increased regulatory scrutiny, said Wright. "Companies may find the costs of dealing with those situations are not ones they'd like to bear," he added.

Wright also recommended that companies make it standard practice to perform privacy-impact assessments before embarking on any major technology projects. Privacy-impact assessment guidance for the UK can be downloaded from the website of the Information Commissioner's Office (ICO). "The ICO [privacy-impact assessment] handbook is excellent," he said.

Read this

Feature
Special report: Anatomy of a hack attack

We recreate a typical attack on two large organisations

Read more +

Policy makers and government institutions also face damage to their reputations from security incidents and risk losing public trust if they don't safeguard citizen data, the authors claimed.

"In view of what's happened in the UK in the last few months, policy makers can see the harmful impact on reputation and how they are perceived by the public," said Wright. "There's a real trust issue here."

Policy makers in the UK should ensure procurements and processes have privacy and security safeguards — such as those laid out in ISO 17799 — built in from the beginning, said Wright. Research funding should also be allocated in part by how security is going to be built into a project. Legislation also needs to be overhauled to make it more future-proof and governments should implement data-breach notification laws, he added.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with HP

Did you find this article useful?
4 out of 4 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:








Related Jobs

CNC Programmer North West 30k Fabrication, James Wright

My Client is seeking an experienced CNC programmer to join their team. The environment is a fabrication and machining one. Programms used include ...

IT Specialist

IT Specialist Location: Archway, London Company Name: Questionmark Computing Limited Questionmark Corporation, the leader in computerized Testing & ...

NHS Trust East Midlands Data Analyst 23,000 - 31,000

NHS Trust in the East Midlands is looking to build a team of Data Analysts. They are looking for a Senior Data Analyst who would have had experience ...

Sentry Posts Blog

Mobile Linux Better For Mobile Busines...

Mobile Linux Better For Mobile Business Apps? Author: Eric Everson, MyMobiSafe.com As mobile Linux is carving it’s footprint on the future of mobile application development, the... More

Post a comment

DWP downplays security breach

The Department for Work and Pensions (DWP) has admitted that some of its staff have been forwarding passwords with password protected material. An email that was leaked on the 'Dizzy... More

Post a comment

How many headshots does one chairperso...

We got a strange request last week from the head of PR from Russian security experts Kaspersky. It seems although the company was very happy with the interview we recently carried with... More

Post a comment

Featured Talkback

On the contrary, if vendors were forced to stand behind their products it should increase innovation. It would force more, and better , testing before hitting the sales floor, resulting in fewer updates and less downtime for the consumer. At present the EULA removes responsibility from the vendor, and moves it to the user, which is a step backward. Make the vendor responsibility for their code.

By: ator1940

Read full story:
RSA: Vendor liability may stifle innovation