Published on PublicTechnology.net (https://publictechnology.net)

Home > Home Office to review data-protection set-up

Home Office to review data-protection set-up

Written by Beckie Smith on 15 April 2019 in News
News

After two breaches inside a week, department commissions independent assessment of compliance

Credit: Karl-Josef Hildenbrand/DPA/Press Association Images

The Home Office has launched an independent review of its compliance with data protection rules, following two recent data breaches, it has announced.

The department has appointed non-executive director Sue Langley to lead the review, immigration minister Caroline Nokes said in a written statement to parliament.

The statement came after the Home Office said it had voluntarily reported itself [1] to the Information Commissioner’s Office for a data breach in which it revealed the email addresses of hundreds of people seeking help with the EU settlement scheme.

The department apologised after an official failed to mask 240 email addresses in a message to some applicants to the scheme, set up to enable EU nationals to live and work in the UK after Brexit, over the weekend. It was also conducting an internal review to determine how the error happened and lessons to be learned from it, Nokes said.


Related content

  • Is the settled status scheme a tech triumph or digital disaster? [2]
  • Windrush scandal fallout sees Home Office suspend data-sharing activities [3]
  • ‘Clear parallels with Windrush’ – concerns raised on EU settlement scheme reliance on digital [4]

The incident was the second to come to light in the space of a week, after email addresses were shared [5] in a message to people enquiring about the Windrush compensation scheme.

In her statement, Nokes said her department “takes its data protection responsibilities very seriously”.

“As a department we have been taking steps to ensure we have the culture, processes and systems in place to treat the public’s personal data appropriately,” she said. "As a further immediate step, we have put in place strict controls on the use of bulk emails when communicating with members of the public to ensure this does not happen again as lessons are learned. An independent review of the department’s compliance with its data protection obligations has also been commissioned, which will be led by non-executive director Sue Langley and will report in due course.”

Langley, chair of the insurance firm Arthur J Gallagher UK and a non-executive director at financial services holding company UKAR, has been a NED at the department since 2013.

Previously she was chief executive of the Financial Services Organisation for UK Trade and Investment.

A Home Office spokesperson said the scope for the review had not yet been set and declined to comment further.

 

About the author

Beckie Smith is a reporter for PublicTechnology sister publication Civil Service World [6], where this story first appeared. She tweets as @Beckie__Smith [7].

Tags
Cybersecurity [8]
Data [9]
Categories
Defence and Security [10]
Public order, justice and rights [11]
#block-views-events-popup-block{ position: fixed; bottom: -30px; padding: 25px 22px; width: 360px; max-width: calc(100% - 30px); text-align: center; border-radius: 0 4px 0 0; color: #fff; background: rgb(0, 170, 200) none repeat scroll 0% 0%; -ms-transform: translateY(100%); -webkit-transform: translateY(100%); transform: translateY(100%); -webkit-transition: all .35s ease-in-out; transition: all .35s ease-in-out; z-index: 2; } #block-views-events-popup-block.show{ bottom:10px; transform:none; -webkit-transform:none; } #block-views-events-popup-block a.btn.btn--outlineWhite { border-color: #fff; color: #fff; background: transparent; } #block-views-events-popup-block .events-popup-close{ position: absolute; cursor: pointer; top: -30px; left: 0; height: 32px; padding: 7px 20px; border-radius: 4px 4px 0 0; color: #fff; background: rgb(0, 170, 200) none repeat scroll 0% 0%; font-size: 13px; } #block-views-events-popup-block .events-popup-close .icon--events-popupClose{ padding-left: 10px; font-family: inherit !important; } #block-views-events-popup-block .icon--events-popupClose:before { content: ''; width: 12px; height: 12px; margin: -1px 7px 0 0; background: url(https://www.publictechnology.net/sites/www.publictechnology.net/themes/pubtech_override/img/close-thin.svg) center no-repeat; background-size: 10px; vertical-align: middle; position: absolute; left: 10px; top: 10px; } #block-views-events-popup-block .views-field.views-field-nid .field-content{ display:none; }

jQuery(window).load(function() { if(jQuery('#event-popup-nid').length){ var eventId = jQuery('#event-popup-nid').text(); jQuery.cookie('eventPageId',eventId); var countCurrentValue = parseInt(jQuery.cookie('countCurrentName')) || 1; var combinedValueValue = eventId+'-'+countCurrentValue; var countCurrentValue = parseInt(jQuery.cookie('countCurrentName')) || 1; jQuery.cookie('combinedValueName',combinedValueValue); const result = combinedValueValue.split('-'); if( result[1] <= 3 ) { jQuery('section#block-views-events-popup-block').addClass('show'); countCurrentValue = parseInt(result[1]) + 1; jQuery.cookie('countCurrentName',countCurrentValue); combinedValueValue = eventId+'-'+countCurrentValue; jQuery.cookie('combinedValueName',combinedValueValue); } jQuery('.events-popup-close').click(function(){ jQuery('section#block-views-events-popup-block').removeClass('show'); }); } });

(function(e,t,o,n,p,r,i){e.visitorGlobalObjectAlias=n;e[e.visitorGlobalObjectAlias]=e[e.visitorGlobalObjectAlias]||function(){(e[e.visitorGlobalObjectAlias].q=e[e.visitorGlobalObjectAlias].q||[]).push(arguments)};e[e.visitorGlobalObjectAlias].l=(new Date).getTime();r=t.createElement("script");r.src=o;r.async=true;i=t.getElementsByTagName("script")[0];i.parentNode.insertBefore(r,i)})(window,document,"https://diffuser-cdn.app-us1.com/diffuser/diffuser.js","vgo"); vgo('setAccount', '253344499'); vgo('setTrackByDefault', true); vgo('process');
Close
Sign up for our free daily newsletter
Register here
6472
Dods PublicTechnology.net is a Merit Group plc title

Quick Links

  • Home
  • News
  • Opinion
  • Features
  • Private Sector Insight
  • Cyber Week
  • White Papers
  • Events
  • On Demand Webinars
  • Partner Directory
  • About
  • Contact

Services

Dods People Dods Political Intelligence Dods ResearchDods EventsDods Training

Media & Publishing

PoliticsHome Parliament MagazineHolyroodThe House MagazineCivil Service WorldTraining Journal

About Dods

Dods Group Part of Merit Group Privacy Policy Terms & Conditions Advertising Sponsorship
Privacy PolicyTerms & ConditionsAdvertisingSponsorship Subscriptions
  • Registered office: 11th Floor
  • The Shard
  • 32 London Bridge Street
  • London SE1 9SG
  • Company number: 04267888
  • © Merit Group plc 2021

Source URL: https://publictechnology.net/articles/news/home-office-review-data-protection-set

Links
[1] https://www.publictechnology.net/articles/news/ico-alerted-breach-eu-citizens%E2%80%99-data
[2] https://www.publictechnology.net/articles/features/settled-status-scheme-tech-triumph-or-digital-disaster
[3] https://www.publictechnology.net/articles/news/windrush-scandal-fallout-sees-home-office-suspend-data-sharing-activities
[4] https://www.publictechnology.net/articles/news/%E2%80%98clear-parallels-windrush%E2%80%99-%E2%80%93-concerns-raised-eu-settlement-scheme-reliance-digital
[5] https://www.publictechnology.net/articles/news/admin-error-sees-home-office-wrongly-share-data-windrush-victims
[6] https://www.civilserviceworld.com/
[7] https://twitter.com/beckie__smith
[8] https://publictechnology.net/tags/cybersecurity
[9] https://publictechnology.net/tags/data
[10] https://publictechnology.net/categories/defence-and-security
[11] https://publictechnology.net/categories/public-order-justice-and-rights