News and analysis for the well-informed compliance or audit exec. Select an option and click continue.
Annual Membership $499 Value offer
Full price one year membership with auto-renewal.
Membership $599
One-year only, no auto-renewal.
- Chief Compliance Officer and VP of Legal Affairs, Arrow Electronics
By Neil Hodge2024-08-13T20:35:00
The U.K. Information Commissioner’s Office (ICO) proposed a 6.1 million pound (U.S. $7.8 million) fine against Advanced Computer Software Group, an IT contractor for the National Health Service (NHS) that allegedly failed to secure the data of 83,000 people after a cyberattack.
The ICO said in a press release Wednesday it provisionally penalized Advanced after the company allegedly failed to implement basic cybersecurity controls to protect personal data. If finalized, the enforcement action would be the agency’s first financial penalty against a data processor under the U.K. General Data Protection Regulation.
Advanced provides the NHS and other healthcare providers with IT and software services. In August 2022, the company suffered a ransomware attack that gave hackers access to some of the company’s health and care systems via a customer account that did not have multi-factor authentication.
THIS IS MEMBERS-ONLY CONTENT. To continue reading, choose one of the options below.
News and analysis for the well-informed compliance or audit exec. Select an option and click continue.
Annual Membership $499 Value offer
Full price one year membership with auto-renewal.
Membership $599
One-year only, no auto-renewal.
2024-03-25T13:36:00Z By Neil Hodge
The Information Commissioner’s Office updated its data protection fining guidance to provide companies with greater transparency and clarity about how and why it would issue penalties for a breach of the U.K. General Data Protection Regulation or Data Protection Act 2018.
2023-04-24T14:05:00Z By Neil Hodge
Despite suggestions the European Union could look to the United Kingdom when considering future changes to the General Data Protection Regulation, legal experts question the impact planned U.K. reforms to the privacy law will have on multinational businesses.
2023-04-04T20:12:00Z By Adrianne Appel
Social media platform TikTok was fined £12.7 million (U.S. $15.9 million) by the U.K. Information Commissioner’s Office for using the personal data of children without parental consent and other violations of data protection mandates.
2024-11-15T19:28:00Z By Adrianne Appel
A pharmaceutical company and its chief executive have agreed to pay $47 million to settle allegations first brought by whistleblowers, that the company paid kickbacks and filed false claims, the Department of Justice said.
2024-11-14T21:07:00Z By Aaron Nicodemus
Meta, the parent company of Facebook, has been fined nearly 798 million euros (U.S. $841 million) by the European Commission to resolve the agency’s long-running investigation into alleged “abusive practices” by Facebook Marketplace.
2024-11-13T20:23:00Z By Adrianne Appel
“Unreasonably delayed reporting” cost one of two claimants whom will unevenly split a $4 million whistleblower award from the Commodity Futures Trading Commission for providing information that led to a successful enforcement action.
Site powered by Webvision Cloud