Picture of John Meakin at Standard Chartered bank

UK security found wanting

UK business lags behind US on approach to data protection, says survey

Written by Tom Young

UK firms lag behind their US counterparts on IT security and data protection issues because of regulatory confusion and lack of awareness, say business groups.

Twice as many European businesses expect a major data loss in the next 12 months – 22 per cent, compared with 10 per cent in the US – according to a global survey by security supplier Symantec. And only 11 per cent rate corporate governance as critical, compared with 28 per cent of US firms.

UK business leaders say clearer legal requirements would redress the balance, pushing security issues onto boardroom agendas.

The UK would benefit from some elements of the US approach, says John Meakin, information security director at Standard Chartered Bank.

‘We would have a better understanding of the required security controls, and their cost, if we had a regulated framework such as the US,’ he said.

Corporate governance issues are handled differently under UK and US law. In the US, legislation specifies in detail exactly what firms must do, whereas in the UK regulations are at the level of principle, leaving more flexibility in how businesses comply.

We can learn from the US example without losing the benefits of our existing system, says Jim Norton, senior policy adviser at business group the Institute of Directors. ‘I prefer the UK principles-based approach, but the visibility of legislation such as the Data Protection Act at board level is very low,’ he said.

Compliance is not the only thing slipping through the gaps, says Norton. Enforcement levels are also low.

‘US firms will take more aggressive precautions regarding security because the consequences are more serious,’ he said.

‘For example, our data protection laws are adequate but the Information Commissioner has not been strict in enforcing them.’

But UK corporate governance models have the advantage of age, says David Roberts, chief executive of blue-chip user group The Corporate IT Forum.

‘The UK is at least as security conscious. And the processes are more rigorous, having been in place for 25 years,’ he said.

What do you think? Email us at: feedback@computing.co.uk

Related stories

Laws need to be enforced

EU security spend falls short

reader comments

related articles

 

Industry backs e-crime unit

Home Office to fund specific department dedicated to cyber crime 29 May 2008

Security professionals aim to end data breaches

Increasing sensitivity about corporate repuations is spurring actions on leaks 25 Apr 2008

EC proposes overhaul of statutory consumer law

Regulations would guarantee rights for consumers 14 Oct 2008

related whitepapers

today's top stories

Technology and privacy

Watch part one of a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 01 Dec 2008

Got the Knowledge?

Last week the civil service published a new strategy to help government seize the opportunities and meet the challenges of managing knowledge... 01 Dec 2008

Q&A - ntl:Telewest Business managing director Stephen Beynon

The cable provider's chief talks about the future of next-generation broadband access in the UK 28 Nov 2008

Computing podcast - Standard Life's offshoring plans; and the prospects for government IT

The insurance giant outlines its new outsourcing strategy; and we ask if the government's economic bailout will affect its IT plans 28 Nov 2008

India will remain open for business - but that's not the real story

One of the duties I have to fulfil as a director of the National Outsourcing Association is to talk to the media... 28 Nov 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Advertisement

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Will the terrorist attacks in Mumbai affect your offshoring plans?

Will the terrorist attacks in Mumbai affect your offshoring plans?

Is India becoming a risky destination?

Previous poll results

Latest audio and video articles

Padlocked CDVideo

Technology and privacy

Watch part one of a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 01 Dec 2008

Podcast imageAudio

Computing podcast - Standard Life's offshoring plans; and the prospects for government IT

The insurance giant outlines its new outsourcing strategy; and we ask if the government's economic bailout will affect its IT plans 28 Nov 2008

Latest in-depth articles

ntl:Telewest's Stephen BeynonAnalysis

Q&A - ntl:Telewest Business managing director Stephen Beynon

The cable provider's chief talks about the future of next-generation broadband access in the UK 28 Nov 2008

cowboyFeatures

Guns for hire

David Neal explores the world of interim CIOs and discovers why more firms are turning to them to spur on IT-led change 27 Nov 2008

Advertisement

Primary Navigation