Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Thursday, 4 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Ministry of Justice subjected to £180,000 ICO fine

by The Gurus
August 26, 2014
in Editor's News
Share on FacebookShare on Twitter

The ICO reports that highly sensitive information was insecurely handled by prisons across England and Wales for over a year, leading to a data loss at HMP Erlestoke. The penalty follows the loss of a back up hard drive in May 2013.
According to the report, the hard drive contained information about 2,935 prisoners that included ‘details of links to organised crime, health information, history of drug misuse and material about victims and visitors.’ The hard drive was not encrypted, despite the fact the prison service provided new encrypted hard drives to all 75 prisons across England and Wales. The report stated that ‘the prison service didn’t realise that the encryption option on the new hard drives needed to be turned on to work correctly.’
ICO Head of Enforcement, Stephen Eckersley, said “The fact that a government department with security oversight for prisons can supply equipment to 75 prisons throughout England and Wales without properly understanding, let alone telling them, how to use it beggars belief.”
Chris McIntosh, CEO at ViaSat UK agreed with Eckersley that lack of knowledge is still a basic problem that needs to be addressed early on. “Data protection should no longer be a mystery to organisations for individuals and the fact that employees didn’t realise they needed to turn on encryption shows the need for employees to be educated and best practice followed in order for any investment in security to deliver value. It’s clear from this and a myriad of other cases that the message simply isn’t getting through: whether large organisations or single workers it seems that the threat of fines and other recriminations still doesn’t dissuade these actions and fines themselves are left as the only deterrent with any impact.”
Richard Anstey, CTO EMEA, Intralinks said that it might instead be time to find an alternative to encryption.  “Security experts frequently stress the importance of encrypting data when storing it on portable devices. Despite years of such warnings, this simply isn’t happening. It’s clear that a better solution is not to allow the use of portable storage devices at all where sensitive information is at stake. Instead, businesses should employ a secure cloud service that can maintain protection and track access to the information – and also allow them to withdraw access after download. With modern security technologies, sharing and storing data online – if handled correctly – allows much greater security and much higher levels of control over the flow of information, eliminating the risk of physical storage devices being misplaced and delivery security as an inherent part of the process rather than something that someone needs to be specially trained to implement.”

Tags: data breachEncryptionICOIntralinksviasat
ShareTweet
Previous Post

Three quarters of South Korea population impacted by data breach

Next Post

Finance and retail applications most vulnerable to breaches

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol