ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Data Breaches

HMRC appoints data guardians

Kablenet.com

Published: 29 Feb 2008 10:18 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

HM Revenue & Customs has appointed 37 staff to protect information, since it lost personal records on 25 million people last November.

Each HMRC business unit has appointed a data guardian, "to strengthen the management of the department's data assets", according to a parliamentary written answer by Jane Kennedy, financial secretary to the Treasury, on 27 February 2008.

Kennedy said 24 of these officers are based in London, and two in Tyne and Wear, the location of the office from which the unencrypted computer discs containing the child-benefit data were sent. A further 11 offices are based in other locations.

In response to another written question connected to the child-benefit data loss, the Department for Work and Pensions said it provides data to the National Audit Office using "rigorous courier arrangements and a requirement that physical transfers of data must have the specific authority of a member of the senior civil service", according to Anne McGuire, minister for disabled people.

HMRC lost the child-benefit discs while sending them through the government's unregistered internal post service to the National Audit Office, and a junior member of staff was initially blamed.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with HP

Did you find this article useful?
2 out of 5 people found this useful


Full Talkback thread

0 comments

More in this Special Report

The top five internal security threats

The top five internal security threats

It's widely known that internal staff are the biggest threat to IT security, but what specifically should an employer watch out for? more

US gov't: Treat personal data 'like toxic waste'

US gov't: Treat personal data 'like toxic waste'

Computer scientists in the US have advised organisations to be extremely cautious when handling information that can be used to identify individuals more

Home Office laptop and disc 'bought on eBay'

Home Office laptop and disc 'bought on eBay'

IT repair technicians near Manchester have found an encrypted Home Office CD under the keyboard of a laptop, apparently purchased recently on eBay more

Data breaches cost an average business £1.4m

Data breaches cost an average business £1.4m

The vast majority of lost data is accidental rather than a result of any criminal activity, researchers claim more

ICO: Data-breach spate 'no worse' than normal

ICO: Data-breach spate 'no worse' than normal

The Information Commissioner's Office has said the recent surge of data-breach reports does not indicate a rise in security lapses more

PGP: Encryption alone no cure for data breaches

PGP: Encryption alone no cure for data breaches

In the fight against security breaches, PGP chief executive Phil Dunkelberger cautions that encryption by itself is not the answer more

Keeping mobile data from going walkabout

Keeping mobile data from going walkabout

Mobile email is no longer the preserve of upper management but providing access to company information on the go has its risks more

Public gets more savvy about data security

Public gets more savvy about data security

An ICO survey has found people are taking more care with their personal information, suggesting the recent spate of high-profile data breaches has had an impact more

ICO urges gov't to retain data-theft laws

ICO urges gov't to retain data-theft laws

The watchdog has warned it is vital the government resists pressure to water down laws that could jail people selling stolen personal details more

Don't blame 'stupid users' for data breaches

Don't blame 'stupid users' for data breaches

A defence researcher claims companies need to move away from the idea of command and control of their employees and get them on side when it comes to improving IT security more

Symantec, RSA call for unified data-breach law

Symantec, RSA call for unified data-breach law

At the RSA security conference the vendors argued the case for a single US federal data-breach notification law, echoing similar demands last year in the UK more

How to avoid liability for a data breach

How to avoid liability for a data breach

Data breaches can be costly not only for customers but for the business involved. Implementing certain measures, however, can limit liability more

Company/Topic Alerts

Create a new alert from the list below:





Related Jobs

VP IT Audit - Infrastructure

Ideally you will have internal audit experience from another bank, but having worked in a complex IT environment is also acceptable. This major ...

Financial Services - IT Audit - London

An opportunity to join a rapidly growing specialised IT Audit team as a Senior IT Auditor has arisen. Joining a London based team, you will audit the ...

IT Audit, Risk Assement, Global Investment Bank, London

The role involves carrying audits across technology areas (Applications and Infrastructure) reporting to the Global Head of Audit in a high ...

Sentry Posts Blog

How many headshots does one chairperso...

We got a strange request last week from the head of PR from Russian security experts Kaspersky. It seems although the company was very happy with the interview we recently carried with... More

Post a comment

Google sponsors open source security p...

Google has announced it is to sponsor oCERT, an open source computer emergency response team. In a blog post on Monday, Google security engineer Will Drewry said that one of the... More

Post a comment

Indian officials accuse China of cyber...

China is actively engaged in mapping India's computer networks, according to the Times of India. China is mounting "almost daily" attacks against Indian Government computer systems,... More

Post a comment

Featured Talkback

On the contrary, if vendors were forced to stand behind their products it should increase innovation. It would force more, and better , testing before hitting the sales floor, resulting in fewer updates and less downtime for the consumer. At present the EULA removes responsibility from the vendor, and moves it to the user, which is a step backward. Make the vendor responsibility for their code.

By: ator1940

Read full story:
RSA: Vendor liability may stifle innovation