Computerworld
Privacy review supports data disclosure laws in Australia
Privacy Act to be amended as early as 2008
Sandra Rossi  06 August, 2007 14:57

The Federal Government is set to introduce data disclosure laws in Australia as early as 2008.

The push for data disclosure laws in Australia is part of a review of the Privacy Act being undertaken by the Australian Law Reform Commission (ALRC) which began early this year.

A discussion paper, recommending the introduction of these laws which would force organizations to notify customers of security breaches, will be released next month with the final report to be delivered to the Federal Attorney General, Philip Ruddock, in March 2008.

While a spokesperson for the Attorney General was unwilling to comment prior to the report's release, federal government sources said the laws could be accommodated by amending the current Privacy Act, enabling their introduction by the end of 2008.

Similar legislation dealing with data breaches and disclosure laws are currently being introduced in the United States, with one law (bill AB 779) even requiring retailers to be held responsible for the cost of a security breach. This law is scheduled to go before the Senate Appropriations Committee before August 31, 2007.

Claiming that Australia should follow America's lead with similar laws, Federal Privacy Commissioner, Karen Curtis, said that "we are out of step if we don't look at it."

Curtis supports mandatory reporting of breaches, especially if it involves a lot of customer data and a lot of money.

"Customers should be notified. But it is still early days on how we can do it but I certainly think it is worthwhile looking at," she said.

"I think its good business to notify customers although I don't think notification is appopriate under all circumstances, it really depends on the level of damage created by the breach."

Curtis said the ALRC's recommendations, which will be put forward in the discussion paper in September, will lead to a wider review and more discussion.

"I think the introduction of these laws is a natural evolution of the Act," she added.

Operations at the Office of the Privacy Commissioner have certainly been beefed up since Curtis took the helm. Funding has more than doubled in three years from $4 million to $8 million to assist with corporate compliance efforts and identify gaps in the legislation.

The push for the disclosure of data breaches has been gaining momentum, especially after more than 100 HSBC Australia customers had their banking details exposed in a security breach in March this year.

Despite the breach, HSBC didn't take any steps to notify customers. But as Hydrasight analyst, Michael Warrilow, pointed out there is no requirement for the bank to disclose the breach under current laws.

"This isn't an isolated incident, it happens a lot but we don't hear about it. Until disclosure laws are introduced in Australia it will continue to happen," Warrilow said.

Computerworld Buyer's Guide - Vendors Matched to this Article

Comments

Post new comment

Login or register to link comments to your user profile, or you may also post a comment without being logged in.
The content of this field is kept private and will not be shown publicly.
Enter the fully qualified URL, eg. http://www.example.com/
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.

More information about formatting options

Karen Curtis -  Federal Privacy Commissioner Australian Federal Government
Karen Curtis - Federal Privacy Commissioner Australian Federal Government
Add to Google
Computerworld Buyer's Guide - Vendors Matched to this Article
Zones
Zone logoZones provide focussed content from Computerworld and leading technology partners.
Newsletter Subscription
Newsletter Subscription
Sign up for our Computerworld newsletters!
Syndicate content
 

Computerworld Webinar

Thursday, June 11th, 2009
10:30am EST (Sydney, Australia)
Screening at your PC

Computerworld is hosting a 30 minute live webinar to help you to learn how unified communications can save you money, foster innovation and business agility by making it easier for people to find, reach and collaborate with one another.

Register Now

Computerworld Community Comments
Whitepaper

Look before you leap | Key considerations for moving to 802.11n

Discover how you can plan a high performance 802.11n network and how your business can reap the maximum benefit from a clean-slate 802.11n impementation. Read on to discover the best 802.11n strategy for your organisation.

Enterprise IT Buyer's Guide
Find Technology Vendors Fast
 
Find vendors by name | Find by category
Sponsored Links
 
Send Us E-mail | Privacy Policy
Features List | Media Kit | Advertising | Contact Us

Copyright 2009 IDG Communications. ABN 14 001 592 650. All rights reserved.
Reproduction in whole or in part in any form or medium without express written permission of IDG Communications is prohibited.