DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

UK: Axway provides statistics on complaints to the ICO

Posted on April 29, 2012 by Dissent

Axway issued a press release with some interesting statistics on complaints made to the Information Commissioner Office (ICO). They obtained the data under Freedom of Information requests.

Here are some of the statistics they compiled:

  • Since April 2010, 35%  of complaints to the ICO  involved disclosure of personal data and security breaches. This year alone,  the ICO received 1,002 complaints that raised concerns over the disclosure of personal data or breaches of the DPA  –  an average of eight a day.
  • Since its inception, the ICO has received 26,227 data protection complaints that resulted in serving 14 monetary penalties, equating to a mere £1,171,000 in total fines.

Of course, the ICO didn’t have the authority to impose fines until 2008, but there’s still a significantly low fine:incident ratio.  Here’s a breakdown of complaints by year:

2010

  • 10,598 complaints made in relation to breaching DPA
  • 1,722 complaints made related to disclosure of data
  • 657 complaints related to security
  • 3,781 companies were specifically complained about, with financial organisations and government bodies heralding amongst in the top 10 worst offenders

2011

  • 10,074 total complaints requesting assessment under the DPA
  • 1,834 complaints related to disclosure of private data
  • 620 complaints involved security breaches
  • 4,036 companies were specifically complained about for alleged breaches of DPA

2012 To-date

  • 771 complaints about a breach of the DPA raising concerns over personal data
  • 231 complaints concerning security of personal data

If one extrapolates from the partial 2012 data, it looks like 2012 may see more complaints about personal data and security breaches than either of the previous two years.

The table below, provided by Axway, provides an analysis by sector for 2010 v. 2011. They note, ” Interestingly, with the exception of debt collectors making last year’s Top 10 DPA Worst Offender League Table, (which is probably a symptom of the current economic climate), financial lenders and government continue to take the top spots year on year:”

Top 10 DPA Sector Worst Offenders League Table
Ranking 2010 No. of complaints Ranking 2011 No. of complaints
1 Lenders 1,851 1 Lenders 1,505
2 Local Government 1,012 2 Local Government 1,068
3 General business 876 3 General business 1,053
4 Health 825 4 Health 941
5 Central Government 756 5 Central Government 662
6 Policing 665 6 Policing 482
7 Telecoms 512 7 Telecoms 428
8 Education 339 8 Education 361
9 Insurance 304 9 Insurance 334
10 Internet 299 10 Debt Collectors 309

 

You might think with data such as these that the ICO would start handing out some steep fines to the financial sector as a possible deterrent, but while the ICO has handed out a number of fines to local councils, it has not really gone after the financial sector, raising the question, why?

Category: Commentaries and AnalysesNon-U.S.Of Note

Post navigation

← Ca: Pharmacists lose injunction bid to stop Zellers selling patient info
Theft of personal documents in Fort Worth led to two-year crime spree →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Department of Justice says Berkeley Research Group data breach may have exposed information on diocesan sex abuse survivors
  • Masimo Manufacturing Facilities Hit by Cyberattack
  • Education giant Pearson hit by cyberattack exposing customer data
  • Star Health hacker claims sending bullets, threats to top executives: Reports
  • Nova Scotia Power hit by cyberattack, critical infrastructure targeted, no outages reported
  • Georgia hospital defeats data-tracking lawsuit
  • 60K BTC Wallets Tied to LockBit Ransomware Gang Leaked
  • UK: Legal Aid Agency hit by cyber security incident
  • Public notice for individuals affected by an information security breach in the Social Services, Health Care and Rescue Services Division of Helsinki
  • PowerSchool paid a hacker’s extortion demand, but now school district clients are being extorted anyway (3)

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Clothing Retailer, Todd Snyder, Inc., Settles CPPA Allegations Regarding California Consumer Privacy Act Violations
  • US Customs and Border Protection Plans to Photograph Everyone Exiting the US by Car
  • Google agrees to pay Texas $1.4 billion data privacy settlement
  • The App Store Freedom Act Compromises User Privacy To Punish Big Tech
  • Florida bill requiring encryption backdoors for social media accounts has failed
  • Apple Siri Eavesdropping Payout Deadline Confirmed—How To Make A Claim
  • Privacy matters to Canadians – Privacy Commissioner of Canada marks Privacy Awareness Week with release of latest survey results

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.