Share

Related Links

  • Home : BCS
  • ISAF
  • Elsevier Ltd is not responsible for the content of external websites.

Related Stories

  • Comment: Trusting contractors with your data
    Matthew Poyiadgi, European VP of CompTIA, argues that organisations have to be more careful when sharing confidential data with third parties and must implement robust policies to ensure data stays safe when it’s out of their hands.
  • PCI update: Your guide to Version 2.0
    The PCI Security Standards Council released the latest version of its standards in October 2010. Stephen Pritchard looks at how businesses can bring their operations in line with the new requirements
  • Social networking: The ‘what not to do’ guide for organisations
    Sales and marketing executives are getting excited about social media, and savvy IT professionals are backing them up. There has been a sea change in the last three months, as Twitter, in particular, takes the corporate world by storm. Infosec professionals are left wondering whether social networking is leading the way, or in the way. Brian McKenna reports
  • Navigating the black hole of small business security
    Although size may indeed matter when it comes to larger organisations’ ability to dedicate security resources, evidence shows that smaller firms are well aware of the information security threats they face – but the question remains about where to focus these smaller budgets. Stephen Pritchard examines the options currently available for SMEs
  • How not to spend your infosec budget
    Spending money on information security is essential for most companies – be it in the form of technology, awareness, or education – but it’s where you spend it that makes all the difference. Wendy M. Grossman investigates which technologies and activities are worthy of your budget, and which are a complete waste of money

Top 5 Stories

News

Guide to handling personal data launched by BCS and ISAF

02 June 2009

The British Computer Society (BCS) has linked up with the Information Security Awareness Forum (ISAF) to launch a professional code of best practice when handling personal data.

According to an ISAF spokesperson, the code, which was developed jointly between the two organisations, aims to help organisations and individuals understand their responsibilities when it comes to handling personal data.

The BCS drafted the code initially and then came to the Forum for their input, he told Infosecurity.

"We added to the code, amending it to talk about people, rather than data subjects, and so we ended up with the final draft."

The joint project was developed as a direct response to the recent spate of high-profile breaches of personal data in the UK by public and private sector organisations.

Louise Bennett, Chair of the BCS Security Forum, says that this is the culmination of two years of consultations and which exposed the need for practical help in changing culture to embed good data guardianship principles in all organisations.

The code, she says, is the equivalent of the Highway Code for motorists and will help all those involved in the management of personal data understand their role and enable them to carry out their jobs better.

Dr David King, the ISAF's chairman, says that people should be able to trust that their personal data is being handled with respect and managed securely.

"Yet, it is evident that this is not always the case."

The aim of the guide, he says, is to encourage a sea-change in the attitude to data and how it is handled.

"We hope that the guide will encourage people to understand their roles in this chain of activity and empower them to better understand the law and processes."
 

This article is featured in:
Data Loss  • Public Sector

 

Comment on this article

You must be registered and logged in to leave a comment about this article.