ICO calls for privacy impact assessments

Necessary to restore public confidence in data collection

Written by Ian Williams

The Information Commissioner's Office (ICO) is calling for organisations to make sure they consider the personal privacy implications of installing or developing new IT systems.

At a surveillance conference in Manchester the ICO highlighted the breach at HM Revenue and Customs, saying it was a watershed and will call for organisations to implement new safeguards to help protect individuals' privacy.

"Very often the collection and use of personal information is essential and beneficial to modern life, but many people do not realise that data collection is at the heart of surveillance," said David Smith, deputy commissioner at the ICO.

"Each time someone gives away their personal information they leave electronic footprints that build up a picture of every aspect of their daily lives. It is essential that before introducing new systems and technologies, which could accelerate the growth of a surveillance society, full consideration is given to the impact on individuals and that safeguards are in place to minimise intrusion. Privacy impact assessments are a common sense approach to help organisations develop privacy friendly ways of working."

The ICO will also be producing a privacy impact assessment handbook designed to help organisations address the risks to personal privacy before implementing new initiatives and technologies, thereby helping to increase public confidence in data collection.

Research commissioned by the ICO shows that six out of 10 individuals believe they have lost control over the way their personal information is handled.

"Before giving out any personal information we advise individuals to make sure they know who they are giving their details to, why these details are needed and how they will be used," added Smith.

"If individuals are not satisfied with the response they should not feel obliged to give out their details, they should simply ask to move on to the next question. In order to have trust in an organisation, individuals must be confident that their information is held securely and processed in line with data protection rules."

The ICO advises that anyone who processes personal information must make sure that data is:
• Fairly and lawfully processed
• Processed for limited purposes
• Adequate, relevant and not excessive
• Accurate and up to date
• Not kept for longer than is necessary
• Processed in line with your rights
• Secure
• Not transferred to other countries without adequate protection

Tags:

reader comments

related articles

 

Privacy impact guidelines to be launched

The public does not realise data collection is at the heart of surveillance, says the Information Commissioner 11 Dec 2007

Updated: ICO offers advice to businesses handling data

Government watchdog to release handbook for dealing with data 11 Dec 2007

Government assesses security procedures in light of data breach

Information Commissioner’s Office given power to carry out spot checks on government departments 23 Nov 2007

today's top stories

Analysis: Will IE8 cause more problems than it solves?

Microsoft's new browser may lead to compatibility issues and affect online advertising 29 Aug 2008

CIO morale plummets as crunch hits

Fewer opportunities and less responsibility depress IT managers 27 Aug 2008

The pIT stop Q&A: Should packaged software users adopt SOA?

Our expert panel answer readers' questions 29 Aug 2008

Computing podcast 28 August 2008

CIO job satisfaction plummets, and why schools' IT spending is set to top £1bn 28 Aug 2008

The definitive guide to collaboration

Five key technologies and five best practice tips to improve your collaborative IT 28 Aug 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Jobs

Job of the week

Job alerts

Sign up here

Find your next job here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Would you recruit a student with an IT degree?

Would you recruit a student with an IT degree?

As IT student numbers plummet - would you recruit an IT graduate?

Previous poll results

Latest audio and video articles

A stressed CIOAudio

Computing podcast 28 August 2008

CIO job satisfaction plummets, and why schools' IT spending is set to top £1bn 28 Aug 2008

Bryan Glick video whiteboardVideo

The definitive guide to collaboration

Five key technologies and five best practice tips to improve your collaborative IT 28 Aug 2008

Latest in-depth articles

Myron HrycykAnalysis

General management skills are now as important as technical ability

A selection of leading chief information officers talk about what they see as the most important aspects of the role 28 Aug 2008

Internet Explorer logoAnalysis

Analysis: Will IE8 cause more problems than it solves?

Microsoft's new browser may lead to compatibility issues and affect online advertising 29 Aug 2008

Primary Navigation