Data security

Data security refers to techniques for ensuring that data stored in a computer can't be read or compromised. There are a number of security solutions, or combinations of security solutions, that a company can employ.

Here are a just a few:

  • Data encryption and passwords.
  • Firewalls
  • Authentication

For more detailed information regarding these and other security solutions visit the Office of the Privacy Commisioner.

One of the greatest threats faced by business is the loss of computer data.

Preventative steps

  • Look at your physical security: keys, alarms and access control measures.
  • With computer security, make sure you have access control for authorised users.
  • Check a caller's identity before giving out personal information over the phone.
  • Look at personnel security, too - you need policies around who can access particular types of information.
  • Back-up is a defence against the likelihood and consequences of data loss, and a standard risk management practice within many businesses is the regular, scheduled back-up of computer system data to magnetic or optical media.

Once a business is connected to the Internet, its system (ie. website, connecting databases, transaction engine, other linked programs) is exposed and vulnerable.

A business must employ a security strategy to protect its personal records, financial information, customer records and credit card details.

The Federal Privacy Act sets out 10 National Privacy Principles (NPPs). Principle four deals with data security. It says, "... an organisation must take reasonable steps to protect the personal information it holds from misuse and loss, and from unauthorised access, modification or disclosure."

An organisation with an annual turnover of less then A$3 million does not have to comply with the National Privacy Principles. However, smaller organisations are very keen from a public and customer relations point of view to show that they take privacy seriously. More often than not they would prefer to say that they're compliant.

For more details visit the Office of the Privacy Commisioner.

Stay Smart Online: The Australian Government’s cybersecurity website provides information for Australian internet users on the simple steps they can take to protect their personal and financial information online.

Important

Data security refers to techniques for ensuring that data stored in a computer can't be read or compromised. There are a number of security solutions, or combinations of security solutions, that a company can employ.