04 Jul 2006
Just under half of UK IT directors are breaking the Data Protection Act and putting customer data at risk, according to a study by IT management firm Compuware.
The report found that 44 of the 100 IT directors questioned use live customer information to test applications.
Such an action counts as 'using data for purposes other than those for which it was collected' and risks prosecution under the Data Protection Act.
As well as the legal implications, using live data also risks information being leaked to malicious sources.
"While 83 per cent of those surveyed are using non-disclosure agreements to control data usage when outsourcing, a lot of the time this doesn't mean anything to the outsourcers as it can be tough to communicate legal jargon to employees," said a Compuware spokesman.
"Selling confidential data can also pay a lot more than employees would normally earn in a month, so compared to the relatively small risk of being caught and prosecuted, a non-disclosure agreement is not going to mean very much."
Despite the Data Protection Act being passed in 1998, some 48 per cent of senior IT decision makers admitted to being only "vaguely familiar" with the legislation.
"Companies have had plenty of time to understand and implement robust data privacy measures since the Act was introduced eight years ago," said Ian Clarke, worldwide enterprise director at Compuware.
"Unless they have rigorous procedures in place, they run the risk of live data being leaked to third parties. This can have severe repercussions on customer confidence and company reputation, and will ultimately affect the bottom line."
Clarke pointed to laws in the US that force organisations publicly to d isclose when customer data has been leaked, and said that he expected similar legislation to follow in the UK at some point.
Latest stories from Management
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Sneak peek at the forthcoming glass-based machine
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
FX Technical Implementation Consultant (Business Analyst...
IT Support Analyst required by Leyland, Lancashire Software...
A talented PHP / Web Developer is required for a web...
Software Developer ( .NET, C#, VB6, SQL) needed. This...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?
Non caring attitute
I belive this is totally due to laziness on the part of developement/testing teams. It is not hard to get and use tools that randomize your customer data.
Posted by: Vijay Kumar 10 Jul 2006