Data Protection Act breached by Cambridgeshire Council

-


Cambridgeshire County Council breached the Data Protection Act as a memory stick was lost which contained sensitive data relating to vulnerable adults.

The ICO was informed by the Council in November 2010 that an employe had lost an unauthorised and unencrypted memory stick, which they had used to store notes and minutes of meetings relating to the support of at least six individuals. The employee did have an official council encrypted device, but failed to use it after encountering problems.

The incident occurred shortly after the council had undertaken an internal campaign aimed at promoting its encryption policy. During this time employees had been asked to hand in unencrypted devices and were warned about the importance of keeping personal information secure.

Sally Anne-Poole, Enforcement Group Manager at the ICO, said:
“While Cambridgeshire County Council clearly recognise the importance of encrypting devices in order to keep personal data secure, this case shows that organisations need to check their data protection policies are continually followed and fully understood by staff.

HRreview Logo

Get our essential weekday HR news and updates.

This field is for validation purposes and should be left unchanged.
Keep up with the latest in HR...
This field is hidden when viewing the form
This field is hidden when viewing the form
Optin_date
This field is hidden when viewing the form

 

“We are pleased that Cambridgeshire County Council has taken action to improve its existing security measures and has agreed to carry out regular and routine monitoring of its encryption policy to ensure it is being followed.”

A Cambridgeshire County Council spokesman said the member of staff who lost the device had been disciplined and had also been given advice on their professional conduct following a full investigation.

He said: “Cambridgeshire County Council takes the storage of personal data very seriously and has strict procedures on how it should be stored. We apologise that this loss happened and contacted the relevant people as soon as we were made aware. In this case the member of staff did not follow the council’s policy of using a password protected and encrypted memory stick.”

Latest news

Helen Wada: Why engagement initiatives fail without human-centric leadership

Workforce engagement has become a hot topic across the boardroom and beyond, particularly as hybrid working practices have become the norm.

Recruiters warned to move beyond ‘post and pray’ as passive talent overlooked

Employers risk missing most candidates by relying on job boards as hiring methods struggle to deliver quality applicants.

Employment tribunal roundup: Appeal fairness, dismissal reasoning, discrimination tests and religious belief clarified

Decisions examine appeal failures, dismissal reasoning, discrimination claims and religious belief, offering practical guidance on fairness, causation and proportionality.

Fears of AI cheating in hiring ‘overblown’ as employers urged to rethink assessments

Employers may be overstating concerns about AI misuse in recruitment as evidence of candidate manipulation remains limited.
- Advertisement -

More employees use workplace health benefits, but barriers still limit access

Many workers struggle to access employer healthcare support due to confusion, costs and unclear processes.

Gender pay gap in tech widens to nine-year high as AI roles drive salaries

Women in IT earn less as salaries rise faster in male-dominated AI and cybersecurity roles, widening pay differences.

Must read

Seren Trewavas: What HR can learn from Ryanair

Earlier this month, budget airline Ryanair  announced it would...

Dr Macarena Staudenmaier Keglevich: Is Gen Z driving better standards for health support at work?

There’s an appetite for health support at al ages, but younger workers expect health cover as a standard offering from their employers.
- Advertisement -

You might also likeRELATED
Recommended to you