Should software companies be liable for data breaches?
A security breach notification law could be a step in the right direction, according to a public policy expert.
Holding software companies, ISPs and financial institutions liable for public and private sector data breaches could help prevent them, according to an internet public policy expert.
Speaking at ENISA's annual security conference in Greece, Ian Brown, a senior research fellow at the Oxford Internet Institute, said that holding them liable could help prevent data breaches better than direct spending on government intervention.
But Brown admitted such a rule would be politically difficult to enforce. Last year, the immediate response by the UK government to a House of Lords report recommending a new data-breach law on liability was a firm no'.
Brown said: "They didn't give a reason why. I imagine part of the reason - and I'm not being super-cynical here - was that behind the scenes there were software companies, ISPs and banks that are influential within government."
He said that security breach notification laws were a step in the right direction, at least forcing firms to be transparent when things went wrong.
"I think there are some government MPs who would still like to move in that direction, and I think that would be a positive thing," he added.
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
-
Enterprise AI adoption is about to get the Big Brother treatmentOpinion Worried your staff aren’t using those shiny AI tools you petitioned for? Big tech has you covered
-
Dreamforce 2025: What's an agentic OS?ITPro Podcast NPUs, e-ink, and immersive headsets are the latest hardware innovations for business devices
-
Pirate Bay goes mobileNews The mobile version of Pirate Bay will include separate TV, music and movie sites
-
Piracy warnings to be emailed to perpetratorsNews Those who repeatedly download pirated material will receive up to four warnings advising them of the law
-
UK ISPs block 1/5 websites on child protection groundsNews ISPs are blocking perfectly legal web pages in an attempt to protect children from the internet, a study suggests
-
GCHQ taken to court by ISPs over network spyingNews GCHQ under threat of lawsuit from ISP companies angered over Snowden spying revelations
-
ISPs criticised for lenient stance on illegal downloadsNews New proposals will see ISPs write to illegal downloaders, but they won't be threatened with legal action
-
Online porn filter "blocks" League of Legends game patchNews ISP security settings blamed for botched downloads.
-
Online porn block proposals by Government pannedNews Updated: Prime Minister's anti-porn measures picked over by industry watchers.
-
Google invests $7m in eradicating child abuse from the webNews Search giant ploughs investment into organisations and technologies that will curtail online access to offensive content.