首页> 外文期刊>Computer weekly >Data Breaches: What A Firm Should Do
【24h】

Data Breaches: What A Firm Should Do

机译:数据泄露:企业应该做什么

获取原文
获取原文并翻译 | 示例
获取外文期刊封面目录资料

摘要

When data controllers are faced with a security breach - especially with regards to notifying the Information Commissioner's Office (ICO) - it is worth examining the conflicting elements of legal and regulatory disclosure requirements, as the interests of the company may not be wholly served by following the directives of the ICO. The ICO's guidelines are notification-oriented and arguably do not provide a best-interest reason to make that notification. If followed to the letter and without internal company consultation, data controllers could create a liability exposure to the regulator, as the ICO directs data controllers to disclose serious data breaches without consideration to the mitigation of corporate liability. The considerations the ICO requests for making a notification are: the potential harm to data subjects; the volume of personal data lost; and the sensitivity of that data.
机译:当数据控制者面临安全漏洞时,尤其是在通知信息专员办公室(ICO)方面,值得检查法律和法规披露要求中相互矛盾的要素,因为遵循以下准则可能无法完全满足公司的利益ICO的指令。 ICO的指南是面向通知的,并且可能没有提供发出该通知的最佳利益理由。如果遵循这封信,并且没有内部公司协商,则数据控制者可能会向监管机构造成责任敞口,因为ICO会指示数据控制者披露严重的数据泄露,而无需考虑减轻公司责任。 ICO要求发出通知的考虑因素包括:对数据主体的潜在伤害;个人数据丢失的数量;以及该数据的敏感性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号