Need for "radical change" in gov't data handling

Justice minister calls for records 'minimisation'

By Tom Espiner, 26 June 2008 08:16

NEWS

Justice minister Michael Wills has called for a root-and-branch change in how the government handles citizen data.

Wills told the House of Lords Constitution Committee on Wednesday that government should treat data transactions in the same way as financial transactions.

CIO50 2008: Top 10

The UK's leading CIOs revealed…

1.Robin Dargue Royal Mail

2.David Lister Royal Bank of Scotland

3.Neil Cameron Unilever

4.Catherine Doran Network Rail

5.John Suffolk UK government

6.Gordon Lovell-Read Siemens UK

7.Paul Coby British Airways

8.Tania Howarth Birds Eye Iglo Group

9.Simon Post Carphone Warehouse

10.Ben Wishart Whitbread

Wills said: "There is a clear need for radical change in government in how we handle data. We don't handle data in the same way as we handle money, and I think we should."

The minister spoke of the need for 'data minimisation' - that is, only holding as much data as is necessary to provide a service - and following other data-protection principles, such as only providing access to data for the purposes for the data was originally collected.

He said: "I don't think anyone wants to see gigantic databases where anyone can go and search. I think the security implications of that are horrendous."

Government plans for increased data sharing, which the government claims will improve services to citizens, will not be possible if the public doesn't have confidence in government data handling, said Wills.

"There is unease about the spread of data [that] people are holding on you," Wills added. "Clearly this is an issue we are going to look at."

The justice minister's comments were made in light of a number of reports on government data losses published on Wednesday, including a review of the HMRC loss of 25 million child-benefit claimant details by PricewaterhouseCoopers chair Kieran Poynter, and a report into MoD data breaches by Sir Edmund Burton, chair of the Information Assurance Advisory Council.

Cabinet secretary Gus O'Donnell also published a review of information security in government on Wednesday.

According to O'Donnell, in response to the raft of public-sector data losses, a series of mandatory security measures are being put in place, including data encryption and compulsory penetration testing by independent contractors. All civil servants dealing with personal data are to undergo annual training, while the government will introduce 'privacy impact assessments' to projects, as recommended by the information commissioner.

O'Donnell said: "Recent data losses and thefts have underlined the need for urgent action to improve data protection right across government and to bring about a fundamental change in culture among those who are entrusted with the public's personal records."

Comments

There are 2 comments. Join the discussion

  1. 1. Karen Challinor

    "Wills told the House of Lords Constitution Committee on Wednesday that government should treat data transactions in the same way as financial transactions"

    - which is something I pointed out in one of my posts to SC about a year ago

    "The minister spoke of the need for 'data minimisation'"

    - nice idea but can you see the government voluntarily voting for a reduction in it's own powers, it's a bit like expecting a two year old to voluntarily hand back the cookie jar before it's empty

    "Recent data losses and thefts have underlined the need for urgent action to improve data protection right across government and to bring about a fundamental change in culture among those who are entrusted with the public's personal records."

    - bravo, wise words indeed, however my personal prediction is that any changes will be purely cosmetic in nature and mainly designed to obfuscate the fact that nothing has changed, maybe a few small concessions will be made and these will be harped on about by ministers every time the main issue is raised, but nothing like a root and branch cultural change will occur

  2. 2. Radical Meldrew

    Nice of them to recognise that I could do better than them! Okay, being honest just about anybody could equal or even better their appalling record.

Post your comment

In order to post a comment you need to be registered and logged in.

Log in or create your silicon.com account below

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy.

Questions about membership? Find the answers in the Membership FAQ