Mandatory data breach notification back on government agenda

Privacy Amendment (Privacy Alerts) Bill received first reading in Senate this week after lapsing in 2013

The Privacy Amendment (Privacy Alerts) Bill is back on the government agenda after it had a first reading in the Senate this week.

The Bill lapsed in 2013 after a second reading in parliament was delayed during June and the Coalition government was elected into office.

If passed by the Coalition, the bill will require government agencies and businesses to notify customers of serious data breaches in relation to personal, credit reporting, credit eligibility or tax file number information.

The 2014 version of the Bill includes the Australian Privacy Principles (APPs) which were passed into law on 12 March this year.

If the Bill is passed, Australian Privacy Commissioner Timothy Pilgrim would have the power to investigate data breaches. This means if he finds there has been a serious data breach in relation to personal information, credit reporting information, credit eligibility or tax file number, the Commissioner could ask the company or government agency to prepare a statement explaining what happened.

The statement would need to include information such as a description of the breach and recommendations about steps affected customers or clients should take.

Australian Information Security Association (AISA) Queensland branch chair Lani Refiti told Computerworld Australia that organisations need to be “held more accountable” for the data they hold, particularly when it’s not their data.

“We would have much better visibility into the current state of information security in Australia if we had mandatory breach notification,” he said.

“It's not a panacea, compliance and regulatory requirements never are but they would be a step in the right direction. Also, it [the bill] needs careful public consultation as was done with the Privacy Bill amendments.”

In June 2013, a Senate Standing Committee on Legal and Constitutional Affairs recommended the bill should be passed, stating that mandatory data breach notifications would benefit both Australian consumers and industry stakeholders.

In October 2013, Australian Privacy Commissioner Timothy Pilgrim said that while it was a decision for the Coalition government as to whether they would reintroduce the new legislation, he was supportive of it becoming law.

“I will be putting to government that I think it is an important piece of legislation,” he said. “It’s something that needs to be given strong consideration for reintroduction.”

Timothy Pilgrim has been contacted for comment by Computerworld Australia.

Follow Hamish Barwick on Twitter: @HamishBarwick

Follow Computerworld Australia on Twitter: @ComputerworldAU, or take part in the Computerworld conversation on LinkedIn: Computerworld Australia

Join the newsletter!

Or
Error: Please check your email address.
Show Comments

Blog Posts

Social purpose: Oxygen for your brand health vitals

If trust is the new currency, then we’re in deep trouble. Here's why.

Carolyn Butler-Madden

Founder and CEO, Sunday Lunch

Customer experience disruption: Healthcare faces a bitter pill

Over the past decade, disruptors such as Amazon, Apple and Australia’s Atlassian have delivered technology enhanced customer experiences, which for the most part, have improved customers’ lives and delivered unparalleled growth. Can they do the same for healthcare?

Alex Allwood

Principal, All Work Together

How can a brand remain human in a digital world?

Some commentators estimate that by 2020, 85 per cent of buyer-seller interactions will happen online through social media and video*. That’s only two years away, and pertinent for any marketer.

James Kyd

Global head of brand strategy and marketing, Xero

https://bit.ly/2qLgzmR Transform your life a proven digital blueprint

Okitoi Steven

How this banking group tackled a digital marketing transformation

Read more

Its great to hear that companies including JCDecaux, oOh!media, Omnicom and Posterscope Australia have all partnered with Seedooh inorder...

Blue Mushroom Infozone Pvt Ltd

Out of home advertising companies strive for greater metrics and transparency

Read more

Much ado about nothingAnother fluff piece around what it could possibly do rather than what it is doing

gve

How AMP is using AI to create effortless ‘experiences’

Read more

is it true that Consumer expectations are also changing as a result. If we trust someone with our data there is also an expectation that ...

Sunita Madan

Society will decide where digital marketing takes us next: Oracle

Read more

This Blog is Very interesting to read and thank you for sharing the valuable information about Machine Learning. The information you prov...

johny blaze

What machine learning has done for the Virgin Velocity program

Read more

Latest Podcast

More podcasts

Sign in