17 November 2009

Consultation on Revised Fines for Serious Data Breaches

The Ministry of Justice has announced the Government's consultation on revised fines for serious breaches of the Data Protection Act.

Partial image of the consultation cover with the words 'Ministry of Justice, Civil Monetary Penalties, Setting the Maximum Penalty

In Civil Monetary Penalties: Setting the Maximum Penalty proposals are made for a maximum £500,000 fine. The powers to impose civil monetary penalties were granted to the Information Commissioner's Office (ICO) by being added to the Data Protection Act (DPA) 1998 (Sections 55A to 55E) through section 144 of the Criminal Justice and Immigration Act 2008.

The civil monetary penalty would apply in serious contraventions of section 4(4) of the DPA by the data controller, of a kind likely to cause substantial damage or substantial distress, and the contravention was either deliberate or "the data controller knew or ought to have known that there was a risk that the contravention would occur, and that such a contravention would be of a kind likely to cause substantial damage or substantial distress, but failed to take reasonable steps to prevent the contravention".

The closing date for comments is the 21st December 2009 and a paper summarising the responses to the consultation will be published by 11th January 2010.

Update later on 17th November 2009: Just caught up with the news and heard the ICO is investigating whether T-Mobile has been selling their mobile phone customers' records illegally.

Posted on: 17 November 2009 at 14:09 hrs

Comments Comments (0) | Permalink | Send Send

Comments

Comments are filtered automatically and should appear shortly after they been checked.

Post a comment
Confirm acceptance and understanding of the terms of use
New posts to this thread will be sent to your email address
Consultation on Revised Fines for Serious Data Breaches
http://www.clerkendweller.com/2009/11/17/Consultation-on-Revised-Fines-for-Serious-Data-Breaches
ISO/IEC 18004:2006 QR code for http://clerkendweller.com

Page http://www.clerkendweller.com/2009/11/17/Consultation-on-Revised-Fines-for-Serious-Data-Breaches
Requested by 38.107.191.117 on Friday, 12 March 2010 at 14:58 hrs (London date/time)

Please read our terms of use and obtain professional advice before undertaking any actions based on the opinions, suggestions and generic guidance presented here. Your organisation's situation will be unique and all practices and controls need to be assessed with consideration of your own business context.

Terms of use http://www.clerkendweller.com/page/terms
Privacy statement http://www.clerkendweller.com/page/privacy
© 2009-2010 clerkendweller.com