Media Release: Privacy Commissioner calls for mandatory reporting of major data security breaches30 January 2008 In the wake of recent significant data breaches in the United Kingdom, the Australian Privacy Commissioner, Karen Curtis, has reiterated her call for compulsory notification of major data security breaches by Australian organisations. "While reporting would need to be proportional to the severity of the breach, it would provide organisations with a strong market incentive to adequately secure their databases," Ms Curtis said. "It would also give people an opportunity to take any necessary steps to protect their personal information." Ms Curtis's call for mandatory reporting was made in a 786-page submission by her Office to the Australian Law Reform Commission (ALRC) in response to its Discussion Paper 72: "Review of Australian Privacy Law". Other recommendations in the submission included:
The full submission is available here. |