Advertisement
Promo

Security threats Toolkit

Infosecurity Europe 2008

Data-protection spot checks due this year

Matt Loney ZDNet.co.uk

Published: 22 Apr 2008 15:50 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Companies in the UK will face spot checks on their compliance with data-protection law this year, with the Information Commissioner's Office almost certainly relying on independent contractors to carry out the checks.

Speaking at the Infosecurity Europe conference in London on Tuesday, information commissioner Richard Thomas confirmed that the spot checks will begin "later this year". Responding to comments that his office may lack the necessary technical knowledge to carry out the checks, Thomas said: "When we begin these spot checks I am 99.9 percent certain that we will engage independent contractors to carry them out."

Thomas confirmed that the Ministry of Justice "will shortly" be bringing in powers to enable his office to carry out these checks.

Read this

Infosecurity Europe 2008: Special report

All the latest news and blogs from the security industry's biggest UK event...

Read more +

The government agreed to increase the powers of the information commissioner to inspect organisations holding sensitive data on members of the public in response to the Personal Internet Security report published by the House of Lords Science and Technology Committee in August 2007. Currently the Information Commissioner's Office is in the unusual — and uncomfortable — position of having to ask permission of organisations before it could inspect their provisions for data protection. "What other regulatory body needs the consent of the organisations it regulates to find out what is going on?" said Thomas.

Funding is another major issue Thomas hopes to tackle — and will need to tackle, if spot checks are to have much effect. "My office is funded entirely by the £35 each data controller pays," said Thomas. "That makes a total of £10.5m. Compare that to the budget of the Health and Safety Executive, which is £875m, and clearly I do think we need an increase."

A data controller is an organisation or person with legal responsibility for the keeping and use of personal information on computer or in manual files. Examples of data controllers include companies, government departments or voluntary organisations.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
1 out of 1 people found this useful


Full Talkback thread

0 comments

More in this Special Report

Blog: Social networking and portability

Blog: Social networking and portability

One of the more interesting speakers at Infosec's "Locking Down Social Networking Vulnerabilities" event today was Giles Hogben of the European Network and Information Security Agency (ENISA) more

ICO: Data-protection spot checks due this year

ICO: Data-protection spot checks due this year

The information commissioner has confirmed that his office will be getting new powers to carry out spot checks on any company in the UK holding data on individuals more

Infosecurity Europe 2008: Preview

Infosecurity Europe 2008: Preview

Over 11,000 delegates and 320 exhibitors will attend one of Europe's largest IT security shows on Tuesday at London's Olympia conference centre more

Security breaches down, says IT security report

Security breaches down, says IT security report

The latest Information Security Breaches Survey has reported that while the number of security breaches has fallen in the past two years, the average spend on defences has increased more

Facebook admits to increased attacks by spammers

Facebook admits to increased attacks by spammers

The social-networking site has come under increased attack by spammers and phishers this year, according to its head of security more

Security industry gears up for biggest UK event

Security industry gears up for biggest UK event

Infosecurity Europe 2008 is underway in London and will include keynotes and product demos from the some of the leading organisations in IT security more

Vendors urged to take responsibility for security

Vendors urged to take responsibility for security

When it comes to the security of hardware and software, suppliers should be put on the spot, argue experts at Infosecurity Europe 2008 more

Media lobbying 'watered down' data-misuse laws

Media lobbying 'watered down' data-misuse laws

As a result of media lobbying, the information commissioner says another serious data breach will need to occur before prison sentences for data misuse are imposed more

HMRC data loss blamed on targets

HMRC data loss blamed on targets

Merlin, Lord Erroll, believes targets and budgets rather than individuals should be blamed for the loss of 25 million UK citizens' confidential records last year more

Former White House adviser talks mobile threats

Former White House adviser talks mobile threats

Security strategist Howard A Schmidt discusses whether mobile attacks are overhyped and what new risks have been introduced by virtualisation more

Security expert voices virtualisation concerns

Security expert voices virtualisation concerns

Mikko Hyppönen, chief research officer for security specialist F-Secure, claims virtualisation technology will have its own specific security threats more

Lord: No proof any data was lost from HMRC

Lord: No proof any data was lost from HMRC

Security expert Merlin, The Earl of Erroll, claims no evidence has come to light to prove data was actually lost in last year's HMRC missing-disc incident more

Video icon

Video

Sentry Posts Blog

Climate research centre compromised

One of the UK's leading climate change research centres has had a security breach. The Climate Research Unit at the University of East Anglia (UEA) suffered a compromise of information,... More

1 comment

Government web-monitoring plans on hol...

Government plans to compel ISPs to process and store details of all web communications have been put on hold until after the next election. The Home Office told ZDNet UK on Wednesday... More

1 comment

Watchdog reveals illegal sale of phone...

The Information Commissioner's Office is preparing a prosecution file against a mobile operator's employees who allegedly sold on thousands of customers' details to a competitor. The... More

1 comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters