<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>publicSIRO &#187; News</title>
	<atom:link href="http://publicsiro.com/category/news/feed/" rel="self" type="application/rss+xml" />
	<link>http://publicsiro.com</link>
	<description>Resources For Public Sector Senior Information Risk Owners - Promoting Better Information Security, Assurance and Governance</description>
	<lastBuildDate>Tue, 20 Apr 2010 11:22:13 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Public Sector Security Breach Tally Hits 500-Mark</title>
		<link>http://publicsiro.com/breaches/public-sector-security-breach-tally-hits-500-mark/</link>
		<comments>http://publicsiro.com/breaches/public-sector-security-breach-tally-hits-500-mark/#comments</comments>
		<pubDate>Tue, 26 Jan 2010 11:33:23 +0000</pubDate>
		<dc:creator>Ian Cuddy</dc:creator>
				<category><![CDATA[Data Breach Log]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[ICO]]></category>

		<guid isPermaLink="false">http://publicsiro.com/?p=237</guid>
		<description><![CDATA[Over 500 public sector data security breaches have been reported to the Information Commissioner in the past two years, new figures show.]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fpublicsiro.com%2Fbreaches%2Fpublic-sector-security-breach-tally-hits-500-mark%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fpublicsiro.com%2Fbreaches%2Fpublic-sector-security-breach-tally-hits-500-mark%2F&amp;source=publicSIRO&amp;style=normal&amp;space=16&amp;hashtags=ICO" height="61" width="50" /><br />
			</a>
		</div>
<p>Over 500 public sector data security breaches have been reported to the Information Commissioner in the past two years, new figures show.</p>
<p>Latest statistics released by the ICO show public sector bodies made up the majority of the 818 breaches reported since November 2007.</p>
<p>According to the watchdog, the NHS accounted for almost half of the cases involving the public sector. Health bodies reported a total of 240 separate security incidents, 97 of which related to the loss of data or hardware.</p>
<p>Local authorities notified the ICO on 101 occassions, while central government bodies admitted to 71 incidents.</p>
<p>Some 262 out of the 818 incidents were the result of theft, often where the personal information was held on an unencrypted portable device, the ICO said.</p>
<p>David Smith, Deputy Commissioner, said:</p>
<blockquote><p>&#8220;In just over two months a further 100 organisations have reported data security breaches to us. We are keen to work with organisations to prevent breaches occurring in the first place and to help put things right when things do go wrong. Talking to us may of course result in regulatory action. However, organisations must act responsibly; those that try to cover up breaches which we subsequently become aware of are likely to face tougher regulatory sanctions.&#8221;</p></blockquote>
<p>For a full breakdown of the incidents, see the table below.</p>
<p><strong>Related Documents</strong></p>
<p><a href="http://www.ico.gov.uk/upload/documents/library/corporate/research_and_reports/breach_notification_spreadsheet_jan09.pdf">ICO Data Breach Table</a>,  26 January 2010</p>
]]></content:encoded>
			<wfw:commentRss>http://publicsiro.com/breaches/public-sector-security-breach-tally-hits-500-mark/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ICO: Up to £500K Penalty for Serious Data Breaches</title>
		<link>http://publicsiro.com/news/ico-up-to-500k-penalty-for-serious-data-breaches/</link>
		<comments>http://publicsiro.com/news/ico-up-to-500k-penalty-for-serious-data-breaches/#comments</comments>
		<pubDate>Tue, 12 Jan 2010 13:02:54 +0000</pubDate>
		<dc:creator>Ian Cuddy</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[ICO]]></category>

		<guid isPermaLink="false">http://publicsiro.com/?p=274</guid>
		<description><![CDATA[Organisations who are reckless with personal data will face fines of up to £500,000 from April this year, under new powers granted to the Information Commissioner.]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fpublicsiro.com%2Fnews%2Fico-up-to-500k-penalty-for-serious-data-breaches%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fpublicsiro.com%2Fnews%2Fico-up-to-500k-penalty-for-serious-data-breaches%2F&amp;source=publicSIRO&amp;style=normal&amp;space=16&amp;hashtags=ICO" height="61" width="50" /><br />
			</a>
		</div>
<p>Organisations who are reckless with personal data will face fines of up to £500,000 from April this year, it was <a title="Data breaches to incur up to £500,000 penalty" href="http://www.ico.gov.uk/upload/documents/pressreleases/2010/penalties_guidance_120110.pdf">announced</a> today.</p>
<p>Under new powers approved by Home Secretary Jack Straw, the Information Commissioner will shortly be able to levy  heavy penalties for serious data security breaches.</p>
<p>According to <a title="ICO Statutory Guidance on Penalties for Data Security Breaches" href="http://www.ico.gov.uk/upload/documents/library/data_protection/detailed_specialist_guides/ico_guidance_monetary_penalties.pdf">statutory guidance</a> issued today the ICO, fines will be determined by on a case-by-case basis, taking into account factors such as the size and type of the organisation, whether the loss was deliberate or negligent, the potential impact on individuals affected and measures taken to improve security.</p>
<p>Organisations will have 28 days to pay the penalty amount, which will be reduced by 20% if full payment is made in time.</p>
<p>Announcing the new powers, Information Commissioner Christopher Graham warned he would &#8220;not hesitate to use these tough new sanctions for the most serious cases where organisations disregard the law&#8221;.</p>
]]></content:encoded>
			<wfw:commentRss>http://publicsiro.com/news/ico-up-to-500k-penalty-for-serious-data-breaches/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

