Advertisement
Promo

Security threats Toolkit

Story: Watchdog aims to compel data-breach confessions

  • Previous comment

Posted by: DGH (Tuesday 2 September 2008, 4:25 PM)

  • Reply

CMA

Fine in theory, but we hope the NCC has thought it through. Any new legislation must be careful to define what constitutes a breach. For example:
• Is a data loss necessarily a data breach?;
• Does a data breach occur even where no harm has been caused?
• Is the loss of encrypted data always harmless? Or must the strength of the crypto algorithm be taken into account when making a judgement?
• If it can be shown that the data was lost in some remote part of the business chain (eg: by an ISP, by a data warehouse, a call centre, or outsourcer) and not by the data user, how will blame be apportioned?

Private message disabled

DGH

DGH
London UK
Member since: January 2004

Site Activity Rating:

1

 


  • Previous comment

  • Reply to this comment
  • Return to story
  • Report this as offensive


Full Talkback thread

Sentry Posts Blog

DNA details of innocent will be kept f...

The government has announced that it plans to keep innocent people's DNA details for up to six years. In response to a consultation it launched last December, the government said... More

4 comments

Motorola Droid Drops Today: Happy Droi...

Motorola Droid Drops Today: Happy Droid Day America! Author: Eric Everson, Mobile Security Expert If you’re wondering what all of the buzz is about with words like Droid and Android... More

Post a comment

Mobile Security Profile: BlackBerry St...

Mobile Security Profile: BlackBerry Storm2 Author: Eric Everson BlackBerry handsets are a staple of office culture; from syncing calendars to sharing business-related data,... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters