Knowledge Vault


Follow us





Staff ignore Data Protection Act to get job done

Information management policies are poorly executed and cast aside, survey finds

Staff are not being trained in how to handle personal data by their employers, despite a legal obligation to do so under the Data Protection Act according to a survey.

IT Governance has found that in a survey of 130 technology and compliance professionals, including CIOs, that 96 per cent of the organisations held customer or patient information and that 56 per cent held financial information, 39 per cent held sensitive personal information – i.e. ethnic or political affiliation – and 36 per cent held medical information. But only 55 per cent of the employees at these organisations had been trained on the legal responsibilities they had in their handling of that information.

“Under the Data Protection Act it is a legal requirement for organisations to safeguard personal information, but this can only be achieved with the support of employees,” said Alan Calder the IT Governance chief executive.

Carrying out its research IT Governance found that employees regularly side-stepped policies and procedures purely to do their jobs. IT Governance said this was because information management policies were either too obtrusive in design or implementation.

Organisations are aware of their responsibilities under the Data Protection Act, with over 80 per cent tasking an individual for data control and maintaining privacy. Documented procedures existed in 68 per cent of organisations polled; policies for protecting personal data existed in 82 per cent of organisations.

Earlier this year IT specialists Capgemini called for CIOs to put information management and policy back into their job role. In a study Capgemini found that the information culture in many organisations is broken, which in turn led to information management debacles like HMRC data loss.



Email Updates

CIO Newsletters: Expert insight, advice and tools for technology, business, leadership and the CIO career.


Send to a friend

Email this article to a friend or colleague:

PLEASE NOTE: Your name is used only to let the recipient know who sent the story, and in case of transmission error. Both your name and the recipient's name and address will not be used for any other purpose.


CIO White Papers

The financial economics of cloud email

This white paper evaluates cloud computing as a flexible alternative to your current IT capability that delivers tangible benefits including: projects delivered earlier, faster adoption to change, lower risk, reduced costs and easier to scale up or down services.

Beyond Dropbox: Requirements for Enterprise Secure File Sharing

This whitepaper explores the danger “Dropbox” type services pose for enterprises, and the security and compliance requirements for deploying enterprise-wide file sharing solutions.

Top 10 considerations for your IT operations management in the cloud

This paper explores ten questions every IT organization should answer to help determine their cloud based ITOM needs.

How to get your business ready for the 2012 Olympics

IT Manager: "I'm working on contingency plans to ensure that we can keep the business running whatever happens during the Olympics. Hopefully, it'll just be a case of letting people work from home but we need to be ready for anything".


CIO UK - Business - Technology - Leadership

Voice Applications in the Cloud

Watch this webcast to learn about new network and telecoms options.

Register now

Download the CIO BlackBerry App -
Access CIO's Content on the Move


The CIO UK BlackBerry App provides daily business and technology news, opinion and indepth features direct to your BlackBerry device.

Find out more

CIO Transformation Summit

CIO Roundtable:
The Private Cloud

Wed 29 Feb 2012
Tower 42, London, 7pm.

Join a select group of your fellow CIO's to discuss private cloud computing and how best to apply the private cloud to your organisation

Register here to book your place.



Knowledge Vault


* *