All the latest UK technology news, reviews and analysis

European Commission to hit firms with huge data breach fines

by Dan Worth

05 Dec 2011

Comment: 1

  • Tweet this

The European Commission is pushing for the power to fine businesses up to five per cent of annual turnover for breaches of privacy rules, according to a draft of the Data Protection Directive to be unveiled in the new year.

Documents seen by the Financial Times suggest that the EC's proposals will also impose mandatory notifications for all companies within 24 hours of any data breach, as the institution looks to strength citizens' privacy.

The document contains provisions for any organisation with more than 250 employees to appoint full-time staff dedicated to data protection, a system not currently enforced in all EU member states.

Elaine Fletcher, a senior associate at law firm Eversheds, told V3 that some of the proposals outlined by the EC could be hard to implement and a burden for many businesses.

"A 24-hour notification system could be very onerous on firms and difficult to conform to as it's not easy to establish when a breach actually occurred," she said.

"Furthermore, a five per cent turnover fining regime is an interesting mechanism to chose as the UK authorities decided against such as system when issuing powers to the Information Commissioner's Office (ICO) as have other member states."

She also noted that a regime requiring firms over a certain number of employees to have dedicated data protection officers failed to take into account the fact some large firms may not process any sensitive data while smaller firms that did would avoid the obligation.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

40%

0%

10%

50%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Business Development Executive

A Multi-national data analytic's and cloud computing...

C# Developer

A multi-national software solutions organisation are...

UI Application Designer

A multi-national software solution provider are looking...

Service Delivery Manager

Service Delivery Manager, Customer Service, PCT, Primary...

To send to more than one email address, simply separate each address with a comma.