Jisc Legal
John X Kelly
- Mobile Devices - BYOD
- eSafety/privacy - Liability Risk
The Data Protection Act says: “Appropriate technical and organisational measures shall be taken against unauthorised or unlawful processing of personal data and against accidental loss or destruction of, or damage to, personal data.”
“ … 47% of all UK adults now use their personal smartphone, laptop or tablet computer for work purposes. But less than 3 in 10 who do so are provided with guidance on how their devices should be used in this capacity, raising worrying concerns that people may not understand how to look after the personal information accessed and stored on these devices…” aspx
“ … how can you guarantee that you will comply with a subject access request if you are not aware of all the devices on which personal data may be stored?... ” aspx
Monitoring
ICO’s Employment Practices Code states: “If workers are allowed to access personal accounts from the workplace, such s should only be monitored in exceptional circumstances”
Risk Appetite
What you can do …