Information Age: News, analysis & insight for IT & business leaders

Wigan Council condemned for losing details on 43,000 students 

7 September 2009  

Wigan Council's loss of personal information on 43,000 students highlights the need for encryption and staff training, says Information Commissioner's Office.

Wigan Borough Council in Lancashire has been criticised by the Information Commissioner’s Office (ICO) after it revealed that a laptop stolen from a locked office contained the personal details of 43,000 school pupils.

The data had been downloaded to a laptop by a staff member, and was unencrypted.

The ICO’s head of enforcement, Sally-Anne Poole, said although the Council had a data protection policy prohibiting the transfer of sensitive information to mobile devices, there were no obstacles to prevent staff from doing so.

“This incident could have been averted if the data was simply accessed from the main council computer network,” she said. “Storing large volumes of personal information on portable devices is unnecessarily risky.”

Wigan Council’s chief executive Joyce Redfearn signed an undertaking to encrypt data on portable devices in the future, while staff would receive additional training.


Comments  [1]

Ash Patel
Wednesday 9th September 2009

Policies, policies, policies. We can have policies until they come out of our ears but until such time as people adhere to them and believe in following the set processes, nothing will change from a human perspective.

The one thing that is however more than capable of at least being able to restrict simple breaches such as the one at Wigan, is technology. If you deploy the correct technology then you are able to control the amount of data that can be downloaded to a PC or any portable device, or even control as to who has access to what.

Secondly, if you use technologies such as SSL VPN devices you can enable employees to access such data remotely as and when needed via a secure portal. It therefore avoids the need to have to download the data to a device that could potentially be compromised.

Ash Patel, country manager, UK & Ireland, Stonesoft

Report this comment »

People who read this also read...

CIO priorities are BI, virtualisation and security, says IBM survey

Global CIO survey highlights business intelligence (BI), virtualisation and security as key spending areas

T-Mobile and Orange UK announce merger 

The UK mobile operations of Deutsche Telekom and France Telecom will merge under a single, as yet undecided, banner.

Most of the web's biggest sites are unsafe

Web security vendor finds 61 of the 100 most popular websites to be hosting malware or redirecting to malicious sites

Cisco and EMC mull services joint venture

Partnership, dubbed Alpine, would cement increasing dominance of networking equipment and information infrastructure giants

Wal-Mart phishing fraudster pleads guilty

A 30-year-old Sacremento man has pleaded guility to defrauding Wal-Mart stores using identities stolen through phishing attacks

 

White Papers

Read article

'Think Lean' When Developing Management System Documentation

Learn how to efficiently and effectively implement a document management system for your organization.

Read article

11 Hiring Trends for 2011

In this document, you'll get the insider info you need to give potential employers what they want and beat your competition in 2011. You'll learn about the most valuable certifications and the game-changing skills that can lead to more job security and stability.

Read article

12 Hiring Manager Secrets to Getting the IT Job You Want

Learn how you can make yourself a more attractive candidate now with PrepLogic's free 12 Hiring Manager Secrets to Getting the Job You Want.

More
Advertisement
div class="banner">