Cyber Security International Security Expo 2018 evening reception, Terrace Pavilion, House of Commons, Westminster, London, UK. Photo Credit: International Security Expo 2018
Everything has relevance but not everyone sees it A Cyber Week in London PART I
By Jane Lo ASM Correspondent
“Data drives all we do”, the British data analytics firm Cambridge Analytica at the center of controversy in the United States and United Kingdom announced on its website
B
ut just weeks ahead of the new European
the opening Chapter of GDPR states that the rules
Data Protection law set to come into effect
relate to “the protection of natural persons with
on 25th May 2018, its parent SCL Elections
regard to the processing of personal data and rules
How did EU and UK Data Privacy and Protection
relating to the free movement of personal data.”
laws come about?
What is Personal Data?
“When we speak about social media, apps and the
Ltd. and Cambridge Analytica filed applications to
extent such information is communicated to others.
commence insolvency proceedings, following wide spread media reports that it harvested personal data about Facebook users as far back as in 2014.
digital economy, it’s easy to forget the world that the
“The siege of media coverage has driven
“Personal data means any information relating to
UK’s current Data Protection Act was forged in. No
away virtually all of the Company's customers and
an identified or identifiable natural person (‘data
Google. No Facebook. Clunky desktop computers
suppliers," the firm said in the statement. "As a
subject’); an identifiable natural person is one who
with less processing power than we all have now in
result, it has been determined that it is no longer
can be identified, directly or indirectly, in particular
our pockets and purses.”
viable to continue operating the business, which left
by reference to an identifier such as a name, an
Cambridge Analytica with no realistic alternative to
identification number, location data, an online
placing the Company into administration."
identifier or to one or more factors specific to the
at the National Association of Data Protection
physical, physiological, genetic, mental, economic,
and Freedom of Information Officers (NADPO)
Heavily embroiled in the scandal and determined to win back trust, Facebook said in full-page ads in European newspapers, "New EU
cultural or social identity of that natural person.” - GDPR Article 4, Para 1 – Definitions.
– UK ICO (Information Commissioner’s Office) Elizabeth Denham's keynote speech
Annual Conference on 21 November 2016, ‘127 days in the job and preparing for GDPR’
legislation means more data protection for you." The new EU legislation is the General Data Protection Regulation, or GDPR in short. What is GDPR, why does Data Protection
Common personal data such as Race, Age, Gender
With the appearance of mainframe computers
come immediately to mind.
which facilitated data banks in the 1960s, the
Under this definition, data that are increasingly
collection and processing of personal data became
matter, and what are the implications for Singapore?
part of our daily digital lives such as biometrics,
widespread. Concerns were raised: who had the
To answer these questions, we spent a week in
personal location, digital images, personal device
right to access the information; how was it kept
London, speaking with Security professionals with
ID’s, posts on social media sites, user login
accurately and being disseminated; could it be used
extensive experience in the European private and
credentials are also considered personal data. Data
to discriminate?
public sectors, and Cyber specialists from the OSP
that had been anonymized or pseudonymized are
Cyber Academy.
considered personal data if the techniques allow
these concerns, prompting need for consistent
identification of the individuals to whom it relates.
standards to allow individuals to exercise control
Day 1 - 30th April – An introduction to GDPR Comprising of 99 articles codifying data protection,
52 | Asia Pacific Security Magazine
Different jurisdictional treatment exacerbated
Data protection of personal data refers to the
over their personal information, while allowing
ability of a person to control, edit, manage and delete
information flow to support international trade.
these information, and to decide how and to what