Feeds

Data Protection Act 'is not enforced'

Private sector losing more data than gov?

Internet Security Threat Report 2014

A subject-matter expert has said that "there is effectively no enforcement" of the Data Protection Act, and suggested that corporate data losses or breaches are even more prevalent than in the public sector.

Andrew Sharpe, partner at London law firm Charles Russell, practices in the field of technology and telecoms law. He also lectures and consults, in particular for the government. In addition to his legal qualifications, he holds a degree in electronic engineering and spent several years working on data and communications in the RAF. Yesterday evening, he was a panel member for a debate entitled "Privacy in the Digital World", hosted by the government's Engineering and Physical Sciences Research Council.

During the debate, Sharpe said that companies were probably losing at least as much confidential and personal data as the government was.

"The public sector is leading the charge [in data loss]" he said. "But just because people are in the private sector, does that mean they never lose a memory stick? I think not."

Sharpe argued that there was no incentive for a corporation to disclose that it had lost people's data, and so generally such news doesn't become public. "Usually they just hope that memory stick just stays there, down the drain in the carpark or wherever they dropped it," he said.

Even where a UK firm was caught bang to rights losing or revealing data there was little comeback, said Sharpe.

"In other fields, companies go to lawyers to make sure they are complying with the law," he said. "Nobody comes to me to make sure they're complying with the Data Protection Act, because there's no downside for them if they screw up.

"If somebody loses your data, or leaks it, or gives it to someone you didn't want to have it, don't come to me - don't expect the law to do anything... there is effectively no enforcement."

Other panel members included Tom Ilube of online-ID security firm Garlik, semantic-web prof Dame Wendy Hall and Jim Killock of the Open Rights Group. All agreed that digital privacy was a hot-button issue, and suggested that in many countries there was effectively no debate. The fact that there is a debate in the UK was seen by Ilube, for one, as a "major opportunity" for the UK - naturally enough he thought that privacy combined with useful online access could be big business, as that's what his firm sells.

Even so, nobody seemed to have a firm idea of the right balance between information being useable and accessible and people's rights to privacy - or even to make a mistake without having it recorded for all time. The strategy of "digital nudism" - simply exposing all your information on the web and not worrying about it - was widely rubbished, but the assembled experts also gave it as their opinion that some online/net presence and conspicuousness was unavoidable.

"People ask me sometimes, how do I go off the grid, disappear?" said Ilube.

"You don't." ®

Choosing a cloud hosting partner with confidence

More from The Register

next story
Facebook pays INFINITELY MORE UK corp tax than in 2012
Thanks for the £3k, Zuck. Doh! you're IN CREDIT. Guess not
Happiness economics is bollocks. Oh, UK.gov just adopted it? Er ...
Opportunity doesn't knock; it costs us instead
YARR! Pirates walk the plank: DMCA magnets sink in Google results
Spaffing copyrighted stuff over the web? No search ranking for you
In the next four weeks, 100 people will decide the future of the web
While America tucks into Thanksgiving turkey, the world will be taking over the net
Microsoft EU warns: If you have ties to the US, Feds can get your data
European corps can't afford to get complacent while American Big Biz battles Uncle Sam
Don't bother telling people if you lose their data, say Euro bods
You read that right – with the proviso that it's encrypted
prev story

Whitepapers

Choosing cloud Backup services
Demystify how you can address your data protection needs in your small- to medium-sized business and select the best online backup service to meet your needs.
Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.
Reg Reader Research: SaaS based Email and Office Productivity Tools
Read this Reg reader report which provides advice and guidance for SMBs towards the use of SaaS based email and Office productivity tools.
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.