Latest Comments
"I feel it with you guys. These irritating interruptions on privacy MUST be stopped. It is a ..."
by Jan Wilmans | Dec 2, 2008 7:11 PM
 
"My AVG WILL NOT UPDATE"
by James Downs | Dec 2, 2008 5:58 AM
 
"Concerned man's comments seem to intimate that if I'm using agents all will be well but the ..."
by Werner K | Nov 26, 2008 8:36 PM
 
"That will enhance Microsoft Office system, including SharePoint - good platform for enterprise ..."
by SGE | Nov 25, 2008 3:29 PM
 
"how many users allow per session? because the digital persona password manager allows only 10 ..."
by Daniel | Nov 25, 2008 12:14 AM

Privacy Commissioner releases data breach guide

  • Email a Friend
  • Print Page
Privacy Commissioner releases data breach guide
By Staff Writers
Aug 25, 2008 2:20 PM
Tags: Data | breach | guideline
Contain a data breach incident then evaluate the associated risk, says the Office of the Privacy Commissioner.

As part of the National Privacy Awareness Week, which kicked-off yesterday, the Privacy Commissioner Karen Curtis released a guide which lists steps that can be taken in case of an incident; in preventing and if necessary, responding to a data breach.

The 41-page document details four key steps: the first, to contain the breach and do a preliminary assessment followed by evaluating the risk associated with the breach.

In step three, organisations should consider the notification of affected individuals where a breach creates a real risk of serious harm to the individuals.

Step four advises organisations to prevent further breaches.

The guide, titled the ‘Guide to Handling Personal Information Security Breaches’ is available for voluntary use by businesses, agencies and non-government organisations.

According to Curtis, "While the Guide is voluntary, it represents good practice in handling breaches, and I would urge all organisations and agencies to read it and consider its use."

Curtis said the Guide was developed following extensive consultation with a range of stakeholders.

A recommendation to the government by the Australian Law Reform Commission earlier this month said the Privacy Law should be amended to include a mandatory data breach legislation in cases of serious harm.

National Privacy Awareness will runs between 24-30 August.

 
Ads by Google
Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 
Tripwire - Click here to win an iTouch
 
 
Breaches & Exposures Whitepapers