More data goes missing
Author
Discussion

krallicious

Original Poster:

4,312 posts

235 months

Sunday 2nd November 2008
quotequote all
http://uk.news.yahoo.com/4/20081102/tuk-government...


Another good example why ID cards will be a bad idea. How do these private companies get Government contracts? Is it not the same with insurance; the lowest bidder will normally provide the worst service?

Edited by krallicious on Sunday 2nd November 09:16

anonymous-user

84 months

Sunday 2nd November 2008
quotequote all
krallicious said:
http://uk.news.yahoo.com/4/20081102/tuk-government...


Another good example why ID cards will be a bad idea. How do these private companies get Government contracts? Is it not the same with insurance; the lowest bidder will norally provide the worst service?
How do these companies get the contracts? backhanders and being "old school chums" of the lying,conniving,two-faced,theiving,useless,waste of organs that are politicians,especially those in charge at the moment!

groomi

9,331 posts

273 months

Sunday 2nd November 2008
quotequote all
They really are an incompetent bunch of f*ckwits.

ID Cards? Over my dead body...

captainzep

13,306 posts

222 months

Sunday 2nd November 2008
quotequote all
We're no longer allowed to use our own memory sticks at work (NHS).

We have to order them via our procurement people. One at a time.

Mine's been on order for about 2 months now...

bga

8,134 posts

281 months

Sunday 2nd November 2008
quotequote all
You can put all the policies & procedures in place but you will never completely mitigate against human arsewittery.

Take the example of PA consulting, these people are usually pretty damn bright & I count them as one of the better consultancies I have worked with, they still managed to lose data & they are one of the most expensive suppliers. Cheaper providers like Atos, EDS etc will often have some staff who will be ex-PS TUPE'd over to them.

This is only what we hear about. If anything, disclosure in the private sector is worse. There have been countless situations where entire payroll files (Name, address, bank details, DOB etc) have been made available on public network folders. I did one project review where sensitive staff information for 60000 people was protected by the columns being hidden in an Excel file.

Legislation can focus the mind but it needs to be taken seriously. In Austria & Germany data protection is taken very seriously. Even basic stuff can fall under the remit & if you screw up then you can get a heft fine & criminal conviction, your manager & company will be fined too. Funnily enough there is a less cavalier approach to data protection there. It can be annoying at times (we use user activity log data to do a lot of our work) but there are simple ways around it.

Simpo Two

92,840 posts

295 months

Sunday 2nd November 2008
quotequote all
krallicious said:
How do these private companies get Government contracts? Is it not the same with insurance; the lowest bidder will normally provide the worst service?
I'd suggest gullible politicians falling for slick sales patter, and probably backhanders too. Nothing to do with price, after all it's taxpayer money ands that's a bottomless pit...

shadowninja

80,078 posts

312 months

Sunday 2nd November 2008
quotequote all
Do the employees who carry such devices actually feel they are carrying something important? If they felt they were carrying their job in their hands, they might take more responsibility... if they think they'll get a telling off, then they might check it once when they put it into a random pocket and once when they take their jacket off at home.

In other words, I don't really blame politicians, as much as I'd like to.

Edited by shadowninja on Sunday 2nd November 09:32

SimonV8ster

13,009 posts

258 months

Sunday 2nd November 2008
quotequote all
captainzep said:
We're no longer allowed to use our own memory sticks at work (NHS).

We have to order them via our procurement people. One at a time.

Mine's been on order for about 2 months now...
My place is the same. Its gone security stupid.

Laptops have to be locked to desks. No USB type products allowed. Not allowed to read any documents on a train in case anybody is looking over your shoulder.

The amount of work that has been delayed because of it and the hoops you have to jump through to get anything done is complete nonsense.

As somebody has already said it will never be stopped and most of these stories would never have made the news a year or so ago.


Jasandjules

72,607 posts

259 months

Sunday 2nd November 2008
quotequote all
I'm glad to hear that some people are having to "jump through hoops" to make some effort in protecting the confidentiality of that information. Quite frankly, I'd rather morons in Govt didn't have any sensitive information in the first place to lose.

siscar

6,887 posts

247 months

Sunday 2nd November 2008
quotequote all
But most of this information isn't that sensitive in the first place. Names, addresses and telephone numbers are already public domain. Give me a few minutes and I can get that information and more on just about anyone in the country.

CommanderJameson

22,096 posts

256 months

Sunday 2nd November 2008
quotequote all
swerni said:
Anything that goes off site should be encrypted.
Anyone not adhering to this should be sacked.

end of!!!
Encrypt everything, all the time. Normal business service can then be resumed.

sjg

7,677 posts

295 months

Sunday 2nd November 2008
quotequote all
bga said:
Legislation can focus the mind but it needs to be taken seriously. In Austria & Germany data protection is taken very seriously. Even basic stuff can fall under the remit & if you screw up then you can get a heft fine & criminal conviction, your manager & company will be fined too. Funnily enough there is a less cavalier approach to data protection there. It can be annoying at times (we use user activity log data to do a lot of our work) but there are simple ways around it.
Given that the guy who left "top secret" intelligence documents on a train only got fined £2500 (what's that, two weeks salary?), it's hardly surprising that there's a still a cavalier attitude to this sort of thing. It was only that high because it was charged as a breach of the official secrets act, not under any of the data protection legislation.

krallicious

Original Poster:

4,312 posts

235 months

Sunday 2nd November 2008
quotequote all
Jasandjules said:
I'm glad to hear that some people are having to "jump through hoops" to make some effort in protecting the confidentiality of that information. Quite frankly, I'd rather morons in Govt didn't have any sensitive information in the first place to lose.
What he said. Just ashame that these companies seem to always employ fkwits.

(scampers off to submit CV)


league67

1,878 posts

233 months

Sunday 2nd November 2008
quotequote all
swerni said:
Anything that goes off site should be encrypted.
Anyone not adhering to this should be sacked.

end of!!!
agreed, but make sure its done properly. Zip password, 'password' <> encryption.

HTH

Morningside

24,147 posts

259 months

Sunday 2nd November 2008
quotequote all
It is surprising the number of computers I come across with a label that usually reads:


Name : Fred Bloggs
Asset: 12314324ABCD
Serial: 123456


To log on use:
Username: BLOGGS BRICK COMPANY
Password: BLOGG


Sort of defeats the object really.


turbobloke

117,233 posts

290 months

Sunday 2nd November 2008
quotequote all
2010 headline: 'the most incompetent UK government ever goes missing'

We can but hope the electorate sees sense.