Talk:Data Breach Policy/Proposed revisions June 2014
Jump to navigation
Jump to search
Rationale for changes
We now have a standard form for reporting breaches which makes a lot of the old working unnecessary (you can view the current copy here
I've also re-emphasised the requirement to notify within 24 hours and noted that this now applies to all breaches, however trivial. If in doubt staff should contact the ICO to confirm if something less serious constitutes a breach and tend to err on the side of caution and notify.