Remove 12
article thumbnail

U.S. Charges 4 Chinese Military Officers in 2017 Equifax Hack

Krebs on Security

Justice Department today unsealed indictments against four Chinese officers of the People’s Liberation Army (PLA) accused of perpetrating the 2017 hack against consumer credit bureau Equifax that led to the theft of personal data on nearly 150 million Americans. Compounding the confusion, on Sept.

Military 253
article thumbnail

List of mandatory documents required by the GDPR

IT Governance

Personal Data Protection Policy (Article 24). A data protection policy is a statement that sets out how your organisation protects personal data. If you are unsure what your data protection policy should include, this template , created by our expert GDPR practitioners, can help you create one in minutes.

GDPR 77
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Parenting support club Bounty fined in ‘unprecedented’ data breach

Data Protection Report

On 12 April, the Information Commissioners Office ( ICO ) fined Bounty , a pregnancy and parent support club, £400,000 for illegally sharing personal data belonging to more than 14 million people. In particular, the ICO called out the following areas of non-compliance. Inadequate consent. Fair treatment of individuals.

article thumbnail

ICO Release Annual Report

Privacy and Cybersecurity Law

The ICO has been involved in producing significant GDPR guidance in the last 12 months and has also run an internal change management process to ensure it is up to the demands placed upon it by GDPR (think: extra staff, new breach reporting functions and helplines). Data Sharing Codes of Practice. Self Reported Data Breaches.

GDPR 40
article thumbnail

UK data protection after Brexit – UK government Statement of Intent contains few surprises

Data Protection Report

On the 7 th August 2017, the UK’s Government Department for Digital, Culture, Media and Sport issued a Statement of Intent (the Statement ) outlining its planned reforms of the UK’s data protection laws which are to be implemented by the Data Protection Bill (the Bill ).

article thumbnail

Weekly podcast: 2018 end-of-year roundup

IT Governance

This week, in our last podcast of the year, we revisit some of the biggest information security stories from the past 12 months. million US customers had been affected by 2017’s Equifax breach , bringing the total number of victims to 147.9 Dixons Carphone admitted suffering a major data breach in July 2017, involving 5.9

article thumbnail

The UK ICO’s Regulatory Sandbox Points to a Future of Pro-Active Engagement

HL Chronicle of Data Protection

The ICO intends to use its own Sandbox to support organisations that are looking to use personal data in innovative ways through the use of new technologies and approaches. The expectation is that, within the next 12-18 months, the ICO’s scheme will be rolled out to a much wider population of organisations. Next steps.

GDPR 40