Feeds

Australia's data breach notification law arrives at last

If you mess up, 'fess up ... or the Feds'll use some duress up in your face

Providing a secure and efficient Helpdesk

Australian companies in control of personal information will soon have to notify the public if their systems are compromised or private data is leaked, under a bill introduced in federal parliament today.

Data breach notification has been under debate in this country for a couple of years, but the wheels of legislation have moved slowly (compared, for example, to parties agreeing to give themselves more electoral funding, something which manages to fly through parliament on the nod in ninety seconds or so).

Where organisations – or incidents – fall under the data breach notification proposals, they will have to notify individuals that a breach has occurred with a description of the breach, the kind of information compromised in the breach, and recommendations about the steps individuals should take in response to the breach.

Where individuals can't be notified, the bill states, a public announcement will be required.

The bill – the Privacy Amendment (Privacy Alerts) Bill 2013, here, gives the privacy commissioner scope to waive the need for notification or publication should there be a strong enough public interest case to do so.

On the other hand, someone trying to keep the lid on a breach could find themselves caught up by the other side of the act: the commissioner will also have the power to order disclosure by a company, particularly if a breach includes information such as personal information, credit reporting or eligibility information, tax file numbers and so on.

Would it surprise readers of Vulture South to learn that exemptions are being built into the legislation for law enforcement? We thought not. ®

Choosing a cloud hosting partner with confidence

More from The Register

next story
Scrapping the Human Rights Act: What about privacy and freedom of expression?
Justice minister's attack to destroy ability to challenge state
WHY did Sunday Mirror stoop to slurping selfies for smut sting?
Tabloid splashes, MP resigns - but there's a BIG copyright issue here
Google hits back at 'Dear Rupert' over search dominance claims
Choc Factory sniffs: 'We're not pirate-lovers - also, you publish The Sun'
EU to accuse Ireland of giving Apple an overly peachy tax deal – report
Probe expected to say single-digit rate was unlawful
Inequality increasing? BOLLOCKS! You heard me: 'Screw the 1%'
There's morality and then there's economics ...
Hey Brit taxpayers. You just spent £4m on Central London ‘innovation playground’
Catapult me a Mojito, I feel an Digital Innovation coming on
While you queued for an iPhone 6, Apple's Cook sold shares worth $35m
Right before the stock took a 3.8% dive amid bent and broken mobe drama
EU probes Google’s Android omerta again: Talk now, or else
Spill those Android secrets, or we’ll fine you
prev story

Whitepapers

A strategic approach to identity relationship management
ForgeRock commissioned Forrester to evaluate companies’ IAM practices and requirements when it comes to customer-facing scenarios versus employee-facing ones.
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Beginner's guide to SSL certificates
De-mystify the technology involved and give you the information you need to make the best decision when considering your online security options.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.