The Information Commissioner’s Office (ICO) and National Cyber Security Centre (NCSC) have recently updated their guidance on data protection and cyber security. With many of us now working from home we thought this would be a useful reminder of what to consider.
The ICO recognises the unprecedented challenges we are all facing during the Coronavirus (COVID-19) pandemic.
They know firms might need to share information quickly or adapt the way they work. Data protection need not stop firms doing that. It’s about being proportionate and making reasonable judgements. Think about how you, as a member of the public, would feel about any judgements made. If something feels excessive from the public’s point of view, then it probably is.
The ICO has provided some revised guidance and answers to the questions they’re being asked at this time.
The National Cyber Security Centre has also issued some guidance – ‘Home working: preparing your organisation and staff’.
This guidance is intended to helps firms ensure their organisation is prepared for any increase in home working, and advice on spotting coronavirus (COVID-19) scam emails.
Finally, we would suggest that you refer to ATEB’s previous article on Cyber Resilience.



The ongoing advice charge conundrum
Paul Jay Compliance 2018, Conduct, FCA, MiFID
A high proportion of advice firms operate a largely recurring income model and with this comes the obligation to conduct client reviews. This is a subject that raises its head frequently with firms, especially with Consumer Duty considerations. Reviews are nothing new but when MiFID II came into effect on 3rd January 2018 it introduced […]