You are here: silicon.com > Management > IT Director

IT Director

Data breach victims get the mushroom treatment

Full Disclosure: Leaky companies hide security breaches

Tags: security, information commissioner, leak, data

By Steve Ranger

Published: 25 September 2008 17:33 GMT

Companies that suffer data breaches are unwilling to tell their clients about the mishap, leading to renewed calls for mandatory reporting of information security lapses.

In a survey of 300 IT directors, CTOs and IT security managers in the public and private sector, one in 10 admit to falling victim to a security breach.

IT services company Logica, which sponsored the research, said the true number of organisations suffering data breaches is probably far higher.

silicon.com's Full Disclosure campaign - what we are asking for...

silicon.com wants the government to review its data protection legislation and improve the reporting of information security breaches in the public and private sectors.

We are calling for greater public debate and for the government to consider legislation that would require organisations that suffer information security breaches to alert their customers if there is a chance the breach has put individuals' sensitive personal data at risk.

We want to hear your views about this campaign and the issues it raises. Make your voice heard by leaving a Reader Comment below or emailing us at editorial@silicon.com.

Of those organisations that have experienced a data breach, 60 per cent did not tell their clients and half did not alert the police or authorities.

The survey also found that only 30 per cent of organisations educate staff in IT security and information handling procedures on a regular basis, and less than a third have a specific security incident response team.

It also revealed that while 63 per cent of those surveyed hold personal data subject to EU data handling regulations, only a quarter comply with ISO27001/2, which Logica said meant companies are not adhering to appropriate security procedures when storing personal data.

More than half of organisations admitted to having "no idea" of the potential impact of a security breach on their business.

The research has led to renewed calls for organisations to be required to report information security lapses - in line with the silicon.com Full Disclosure campaign.

Tim Best, director enterprise security solutions at Logica, said in a statement: "It is time to take action - it should be mandatory for all organisations to report significant breaches of confidential personal information to the Information Commissioner or their regulatory body. Only through mandatory reporting will the scale of the problem be understood, which will lead to the correct solutions being applied."

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Naked CIO Naked CIO: Social networks are useless for finding a job 'Quantity over quality' approach poisoning professional networks

Peter Cochrane Peter Cochrane's Blog: Uneconomics We must move away from short-termism to prevent next economic crisis


  • Jobs
Enterprise Architect (Frameworks, Design, Bid / 20M)

A proven track record in a major consultancy, telecom, financial, retail, utilities, energy or public sector organisation is mandatory. Enterprise ...

Technical Account Manager/Executive (Media/Marketing)

You will be the technical authority for your clients to contact regarding a bespoke software suite, and as such with need a solid technical grounding ...

Client Service Manager - On-Site Print Management

The role is specifically responsible for making sure that the company fully meets its contractual and service commitments to this new client across ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: