Print

Print


Given that most P1 breaches are down to individuals the emphasis on P7
is not really surprising. At the organisational level P7 is much more
serious. If I send an email enclosure to the wrong person, my authority
is vicariously liable for my P1 breach, but far more serious is that it
allowed me to do it in the first place - P7.
 
If you look at the penalty notices based on p7 it is clear that they
encompass the p1 breaches en passant

________________________________

From: This list is for those interested in Data Protection issues
[mailto:[log in to unmask]] On Behalf Of Lawrence Serewicz
Sent: 27 September 2011 11:48
To: [log in to unmask]
Subject: [data-protection] The ICO does enforce more than the 7th
Principle. :) (Eastleigh Undertaking on use of PVP list



Dear All,

I recall there was some discussion as to enforcement action by the ICO
beyond the seventh principle.  I thought it would be of interest to note
that that the undertaking for Eastleigh  was based on the 3rd and the
7th Data Protection Principles.


20 September 2011

An undertaking to comply with the third and seventh data protection
principles has been signed by Eastleigh Borough Council. This follows
the potential disclosure of a document containing sensitive personal
data.
View the Eastleigh Borough Council undertaking
<http://www.ico.gov.uk/what_we_cover/taking_action/~/media/documents/lib
rary/Data_Protection/Notices/eastleigh_borough_council_undertaking.ashx>


 

I think it only a matter of time, and resources, before enforcement is
recorded against all the principles. I would imagine, given the powers
to fine, that the enforcement of principles will follow an arc similar
to those for exemptions, decision notices,  and tribunal cases.

 

I hope this is of interest and use.

 

Best,

 

Lawrence

 

Principal Information Management Officer

Durham County Council

Room 4/140

County Hall

County Durham

DH1 5UF

 

0191 372 8371

VPN 77778371

 

 


________________________________


Help protect our environment by only printing this email if absolutely
necessary. The information it contains and any files transmitted with it
are confidential and are only intended for the person or organisation to
whom it is addressed. It may be unlawful for you to use, share or copy
the information, if you are not authorised to do so. If you receive this
email by mistake, please inform the person who sent it at the above
address and then delete the email from your system. Durham County
Council takes reasonable precautions to ensure that its emails are virus
free. However, we do not accept responsibility for any losses incurred
as a result of viruses we might transmit and recommend that you should
use your own virus checking procedures.

________________________________

All archives of messages are stored permanently and are available to the
world wide web community at large at
http://www.jiscmail.ac.uk/lists/data-protection.html

Selected commands (the command has been filled in below in the body of
the email if you are receiving emails in HTML format):

*	Leaving this list: send leave data-protection to
[log in to unmask] <mailto:[log in to unmask]&BODY=LEAVE
data-protection>  
*	Suspending emails from all JISCMail lists: send SET * NOMAIL to
[log in to unmask] <mailto:[log in to unmask]&BODY=SET *
NOMAIL>  
*	To receive emails from this list in text format: send SET
data-protection NOHTML to [log in to unmask]
<mailto:[log in to unmask]&BODY=SET data-protection NOHTML>  
*	To receive emails from this list in HTML format: send SET
data-protection HTML to [log in to unmask]
<mailto:[log in to unmask]&BODY=SET data-protection HTML>  

All user commands can be found at
http://www.jiscmail.ac.uk/help/commandref.htm and are sent in the body
of an otherwise blank email to [log in to unmask]

Any queries about sending or receiving messages please send to the list
owner [log in to unmask]

(Please send all commands to [log in to unmask] not the list or the
moderators, and all requests for technical help to
[log in to unmask], the general office helpline)

________________________________


**********************************************************************
Privileged/Confidential Information may be contained in this message. If you are not the addressee indicated in this message (or responsible for delivery of the message to such person), you may not copy or deliver this message to anyone. In such case, you should destroy this message and kindly notify the sender by reply email. Please advise immediately if you or your employer does not consent to Internet email for messages of this kind.  Opinions, conclusions and other information in this message that do not relate to the official business of the Council of the City and County of Cardiff shall be understood as neither given nor endorsed by it.  All e-mail sent to or from this address will be processed by Cardiff County Councils Corporate E-mail system and may be subject to scrutiny by someone other than the addressee.
**********************************************************************
Mae'n bosibl bod gwybodaeth gyfrinachol yn y neges hon. Os na chyfeirir y neges atoch chi'n benodol (neu os nad ydych chi'n gyfrifol am drosglwyddo'r neges i'r person a enwir), yna ni chewch gopio na throsglwyddo'r neges. Mewn achos o'r fath, dylech ddinistrio'r neges a hysbysu'r anfonwr drwy e-bost ar unwaith. Rhowch wybod i'r anfonydd ar unwaith os nad ydych chi neu eich cyflogydd yn caniatau e-bost y Rhyngrwyd am negeseuon fel hon. Rhaid deall nad yw'r safbwyntiau, y casgliadau a'r wybodaeth arall yn y neges hon nad ydynt yn cyfeirio at fusnes swyddogol Cyngor Dinas a Sir Caerdydd yn cynrychioli barn y Cyngor Sir nad yn cael sel ei fendith. Caiff unrhyw negeseuon a anfonir at, neu o'r cyfeiriad e-bost hwn eu prosesu gan system E-bost Gorfforaethol Cyngor Sir Caerdydd a gallant gael eu harchwilio gan rywun heblaw'r person a enwir.
**********************************************************************


-- 
Scanned by iCritical.


^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
     All archives of messages are stored permanently and are
      available to the world wide web community at large at
      http://www.jiscmail.ac.uk/lists/data-protection.html
     If you wish to leave this list please send the command
       leave data-protection to [log in to unmask]
All user commands can be found at http://www.jiscmail.ac.uk/help/commandref.htm
 Any queries about sending or receiving messages please send to the list owner
              [log in to unmask]
  Full help Desk - please email [log in to unmask] describing your needs
        To receive these emails in HTML format send the command:
         SET data-protection HTML to [log in to unmask]
   (all commands go to [log in to unmask] not the list please)
    ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^