Additions: * Data destruction. When that old PC is disposed of, what is done to the disk drive? One local authority drilled a hole through theirs believing it made it safe. Regrettably only the data with a hole in it was destroyed. * Global CRM systems. Who can view what? And is any of that data in Spain? Are model contracts or BCRs in place? Safe Harbor is amusing, but insufficient * Does the Business Continuity Plan have Data Privacy embedded inside it? A major fire is not a reason to erode individuals' rights, nor an excuse for doing so _____ From: Nick Landau [mailto:[log in to unmask]] Sent: 21 March 2007 11:38 To: Tim Trent Subject: Re: [data-protection] Useful examples for training course One to file! Thanks Nick ----- Original Message ----- From: Tim Trent <mailto:[log in to unmask]> To: [log in to unmask] Sent: Wednesday, March 21, 2007 11:32 AM Subject: Re: [data-protection] Useful examples for training course * Physical security of laptops - that Nationwide thing is relevant, though the fine is only really for FSA regulated orgs * Personal trawls through data for own purposes are unlawful. Bank employees have lost their jobs over this, so have Police computer users * Important to monitor free text fields for compliance. Remember Airbus Industrie and Clifford Chance? There was also a letter addressed to "Dear Black Bastard" by a gas company because the data had been altered to make that inevitable by a disaffected employee. * Monitor conditional fields for correctness. My aunt, when 80, was told that she could not have a free TV licence because she was not yet whatever the age is. Yet they had her date of birth correct. Best I can do at short notice. Tim Trent - Consultant Direct: +44(0)1344 392644 Mobile:+44(0)7710 126618 Personal blog: <http://timtrent.blogspot.com/> http://timtrent.blogspot.com/ See also <http://complianceandprivacy.com/> http://complianceandprivacy.com email: <blocked::mailto:[log in to unmask]> [log in to unmask] Marketing Improvement Limited, Abbey House, Grenville Place, Bracknell, United Kingdom, RG12 1BP <blocked::http://www.marketingimprovement.com/> http://www.marketingimprovement.com Important: This message is private and confidential. If you have received this message in error, please notify us and remove it from your system. This email and any attachment(s) are believed to be virus-free, but it is the responsibility of the recipient to make all the necessary virus checks. This email and any attachments to it are copyright of Marketing Improvement Limited unless otherwise stated. Their copying, transmission, reproduction in whole or in part may only be undertaken with the express permission, in writing, of Marketing Improvement Limited. Marketing Improvement Limited is registered in England No. 4283972. Registered Office: 643 Watford Way, London NW7 3JR and its VAT number is GB798 2065 86. -----Original Message----- From: This list is for those interested in Data Protection issues [ <mailto:[log in to unmask]> mailto:[log in to unmask]] On Behalf Of Samantha Hill Sent: 21 March 2007 10:59 To: [log in to unmask] Subject: [data-protection] Useful examples for training course _____ All archives of messages are stored permanently and are available to the world wide web community at large at http://www.jiscmail.ac.uk/lists/data-protection.html Selected commands (the command has been filled in below in the body of the email if you are receiving emails in HTML format): * Leaving this list: send leave data-protection to [log in to unmask] <mailto:[log in to unmask]&BODY=LEAVE data-protection> * Suspending emails from all JISCMail lists: send SET * NOMAIL to [log in to unmask] <mailto:[log in to unmask]&BODY=SET * NOMAIL> * To receive emails from this list in text format: send SET data-protection NOHTML to [log in to unmask] <mailto:[log in to unmask]&BODY=SET data-protection NOHTML> * To receive emails from this list in HTML format: send SET data-protection HTML to [log in to unmask] <mailto:[log in to unmask]&BODY=SET data-protection HTML> All user commands can be found at http://www.jiscmail.ac.uk/help/commandref.htm and are sent in the body of an otherwise blank email to [log in to unmask] Any queries about sending or receiving messages please send to the list owner [log in to unmask] (Please send all commands to [log in to unmask] not the list or the moderators, and all requests for technical help to [log in to unmask], the general office helpline) _____ ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^ All archives of messages are stored permanently and are available to the world wide web community at large at http://www.jiscmail.ac.uk/lists/data-protection.html If you wish to leave this list please send the command leave data-protection to [log in to unmask] All user commands can be found at http://www.jiscmail.ac.uk/help/commandref.htm Any queries about sending or receiving messages please send to the list owner [log in to unmask] Full help Desk - please email [log in to unmask] describing your needs To receive these emails in HTML format send the command: SET data-protection HTML to [log in to unmask] (all commands go to [log in to unmask] not the list please) ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^