UK data-protection spot checks due this year

By Matt Loney, ZDNet UK
Wednesday, April 23, 2008 11:00 AM

Companies in the United Kingdom will face spot checks on their compliance with data-protection law this year, with the Information Commissioner's Office almost certainly relying on independent contractors to carry out the checks.

Speaking at the Infosecurity Europe conference in London on Tuesday, information commissioner Richard Thomas confirmed that the spot checks will begin "later this year". Responding to comments that his office may lack the necessary technical knowledge to carry out the checks, Thomas said: "When we begin these spot checks I am 99.9 percent certain that we will engage independent contractors to carry them out."

Thomas confirmed that the Ministry of Justice "will shortly" be bringing in powers to enable his office to carry out these checks.

The government agreed to increase the powers of the information commissioner to inspect organizations holding sensitive data on members of the public in response to the Personal Internet Security report published by the House of Lords Science and Technology Committee in August 2007. Currently the Information Commissioner's Office is in the unusual--and uncomfortable--position of having to ask permission of organizations before it could inspect their provisions for data protection. "What other regulatory body needs the consent of the organizations it regulates to find out what is going on?" said Thomas.

Funding is another major issue Thomas hopes to tackle--and will need to tackle, if spot checks are to have much effect. "My office is funded entirely by the £35 (US$70) each data controller pays," said Thomas. "That makes a total of £10.5 million (US$21 million). Compare that to the budget of the Health and Safety Executive, which is £875 million (US$1.8 billion), and clearly I do think we need an increase."

A data controller is an organization or person with legal responsibility for the keeping and use of personal information on computer or in manual files. Examples of data controllers include companies, government departments or voluntary organizations.


WORTHWHILE?

0

0 votes
Blog

Talkback 0 comments

There are currently no comments for this post.

Guest user

Guest user

Level: 
Joined: —
Already a member? Log in »



 

Loading...

Tech Jobs Now!

CodeGear extends the Borland legacy

Web Development

Discover what the CodeGear developers are working on.


Read more »



  • HPC Applications

    Ever wondered if High Performing Computing systems really matter in our day-to-day world? Let Dr David Scott from Intel take you a for quick tour on developing HPC applications.
    Play video


  • Maximize IT Spend: Business Acceleration

    How do you ensure your IT solutions are well integrated and streamlined across your enterprise? Rajen from Oracle highlights the important considerations ...
    Play video


  • HPC Architecture: Explained

    Why is High Performance Computing increasingly in demand in today's businesses? Find out which is the most widely deployed HPC architecture today.
    Play video

Tags

  1. apple
  2. attack
  3. attacks
  4. cards
  5. china
  6. firefox
  7. flaws
  8. google
  9. iphone
  10. issues
  11. mac
  12. malware
  13. microsoft
  14. mobile
  15. os
  16. patch
  17. routers
  18. security
  19. site
  20. storm
  21. targets
  22. threat
  23. threats
  24. trojan
  25. uk
  26. us
  27. users
  28. warning
  29. warns
  30. worm

Has the Internet changed our core values?

Blog thumbnail

If you've been following this blog, you might remember that I'm a self-professed sufferer of a, erm, disorder I've come to call, privacy..... by Eileen Yu

Read more »