padlock

Updated: ICO offers advice to businesses handling data

Government watchdog to release handbook for dealing with data

Written by David Neal

The Information Commissioners Office has called for firms to consider the privacy of individuals before installing, or developing new IT systems.

At a conference in Manchester the organisation, the UK government's data watchdog, described last month's data losses at HMRC as a watershed moment in privacy, and added that in order to reduce the risk of similar incidents firms should implement safeguards to protect data. To support this it has launched a guide to help firms better manage data, and also, to give individuals more confidence in their ability to protect privacy. This is called the Privacy Impact Assessment handbook.

The handbook is designed to suit all organizations, regardless of their size, and thus is quite lengthy. However, it is broken down into relevant areas, and suggests that firms only carry out an assessment if they are implementing tools and systems that have an impact on the privacy of individuals. It adds. "While it is necessary to ensure compliance with privacy laws, there is no obligation to undertake a PIA."

It suggests that firms take a PIA to ensure that they avoid the loss of trust and reputation, to identify and manage risks, to avoid later costs, and to help meet, and exceed their legal requirements. Company directors and senior executives are warned that ultimately they are responsible for ensuring that risks are identified, assessed and managed.

With pushes for stronger legislation happening almost constantly, firms would be advised to carry out such an assessment, if only to ensure their partners, and customers, that their data was looked after in an appropriate manner.

The handbook contains a list of questions for firms to consider, starting with, "Does the project involve new, or inherently privacy-intensive, technologies?" The ICO suggests that these would include smart cards, biometrics, RFID tags, data mining, and the logging of electronic traffic. It then asks, whether the privacy implications of these are well understood by the business, and indeed the public.

Further questions are designed to help firms get a better understanding of their system and its implications on privacy, and data protection. Where firms handle a lot of data, so they should pay more attention to their systems, and their compliance with relevant regulations.

Tags:

reader comments

related articles

Richard Thomas

Firms woken up by HMRC breach, says ICO

Data watchdog, the Information Commissioner, says that the HMRC breach could have a positive outcome 05 Dec 2007

 

HMRC leak raises prospect of new data rules

Will the loss of two CD-roms make the government overhaul its security procedures? 22 Nov 2007

HMRC scandal could hit ID card plans

The data loss scandal could knock confidence in the UK ID card scheme 22 Nov 2007

ICO calls for privacy impact assessments

Necessary to restore public confidence in data collection 12 Dec 2007

Privacy impact guidelines to be launched

The public does not realise data collection is at the heart of surveillance, says the Information Commissioner 11 Dec 2007

Gateway reviews must look at privacy, says Information Commissioner

But Office of Government Commerce rejects use of assessments as standard 06 Mar 2008

today's top stories

Analysis: Will IE8 cause more problems than it solves?

Microsoft's new browser may lead to compatibility issues and affect online advertising 29 Aug 2008

CIO morale plummets as crunch hits

Fewer opportunities and less responsibility depress IT managers 27 Aug 2008

The pIT stop Q&A: Should packaged software users adopt SOA?

Our expert panel answer readers' questions 29 Aug 2008

Computing podcast 28 August 2008

CIO job satisfaction plummets, and why schools' IT spending is set to top £1bn 28 Aug 2008

The definitive guide to collaboration

Five key technologies and five best practice tips to improve your collaborative IT 28 Aug 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Jobs

Job of the week

Job alerts

Sign up here

Find your next job here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Would you recruit a student with an IT degree?

Would you recruit a student with an IT degree?

As IT student numbers plummet - would you recruit an IT graduate?

Previous poll results

Latest audio and video articles

A stressed CIOAudio

Computing podcast 28 August 2008

CIO job satisfaction plummets, and why schools' IT spending is set to top £1bn 28 Aug 2008

Bryan Glick video whiteboardVideo

The definitive guide to collaboration

Five key technologies and five best practice tips to improve your collaborative IT 28 Aug 2008

Latest in-depth articles

Myron HrycykAnalysis

General management skills are now as important as technical ability

A selection of leading chief information officers talk about what they see as the most important aspects of the role 28 Aug 2008

Internet Explorer logoAnalysis

Analysis: Will IE8 cause more problems than it solves?

Microsoft's new browser may lead to compatibility issues and affect online advertising 29 Aug 2008

Primary Navigation