ICO blasts sluggish speed of EU data law reforms
Information Commissioner calls for sensible laws when it comes to personal data

Progress towards updating European data protection laws is moving at a "snail's pace", according to the Information Commissioner's Office (ICO).
The EU's current data protection measures are decades out-of-date, while lawmakers risk falling further behind with each new technological innovation around data, the watchdog warned yesterday.
In a speech at Liverpool John Moores University, Information Commissioner Christopher Graham pointed out that bodies like the ICO are forced to protect people's data armed with ancient legislation like the 1995 Data Protection Directive.
"Today that 20-year-old Directive is scarcely fit for purpose as the technology and the uses of data have raced further ahead of anything the law makers envisaged," he said.
"The institutions of the European Union are moving, but at a snail's pace, to reform the data protection regime with a new regulation which would apply uniformly across the single market."
That EU Data Regulation will replace the 1995 directive, aiming to give citizens more control over who uses their personal data, a right to be forgotten, and will also require companies to get people's explicit consent to use their data.
The regulation was due to be adopted into law this year, but EU countries keep hitting sticking points.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
One objection raised was by the British Government last month, which called the explicit consent requirement "unjustified".
Graham said that while the regulation is debated, citizens' data is becoming increasingly at risk the more people use the internet.
"Whatever we do online, we are leaving a trail of personal data which can be analysed, linked, mashed, and crunched. And our privacy is more and more compromised," he said.
The commissioner said it was vital that citizens can trust those who wish to use their information.
He pointed to the example of the NHS's controversial care.data scheme, under which patient data will be shared between GP surgeries and hospitals, as a beneficial move undermined by a lack of trust.
The project was postponed after the public was inadequately consulted, and the director of patient information at the NHS, Tim Kelsey, said yesterday that the initiative was starting anew this year.
Graham said the project "depends crucially on citizen confidence which, following last year's botched communications exercise, is in short supply."
However, he said a balance could be achieved with "proportionate, risk-based enforcement".
"The laws have to be practical and realistic and not tie data protection authorities like mine up in knots attempting to enforce over-spec'd procedural obligations when the emphasis should be on promotion of good practice for data controllers and consumers," he added.
"Sensible laws and sensible citizens can protect privacy and still enable good things to happen online."
-
Asus ZenScreen Fold OLED MQ17QH review
Reviews A stunning foldable 17.3in OLED display – but it's too expensive to be anything more than a thrilling tech demo
By Sasha Muller
-
How the UK MoJ achieved secure networks for prisons and offices with Palo Alto Networks
Case study Adopting zero trust is a necessity when your own users are trying to launch cyber attacks
By Rory Bathgate
-
Elizabeth Denham appointed ICO boss
News Denham will be tasked with helping the UK leave the EU without any knock-on effects on privacy
By Clare Hopping
-
Information Commissioner signs off with overview of year
News Christopher Graham has issued a report outlining past achievements and recommendations for the future
By Clare Hopping
-
Digital marketing firm hit with £50k nuisance calls fine from ICO
News Reactiv Media apologises for making marketing calls to TPS members, and claims they were made in error
By Caroline Donnelly
-
UK TPS users still receive nuisance calls, research shows
News Ofcom nuisance calls research shows TPS sign-ups leads to users receiving a third fewer calls
By Caroline Donnelly
-
Cabinet Office rapped for slow FOI request response times
News Government department blames uptick in requests caused by Jimmy Saville and Margaret Thatcher for delays
By Caroline Donnelly
-
Home Office under scrutiny over FOI response times
News Sussex Police and Tyneside Council also subject to monitoring by ICO
By Jane McCallion
-
UPDATED: Government departments rapped for slow response to FOI requests
News The Information Commissioner's Office places four public authorities under surveillance for three months next year.
By Caroline Donnelly
-
ICO issues data protection guide for cloud users
News Watchdog tries to clear up some of the confusion around data protection and processing in the cloud.
By Caroline Donnelly