Did you know that January 28 is the International Data Privacy Day? Since 2007, fifty countries, including the US, Canada, Israel and forty seven European nations, have been observing this day and organizing events to raise awareness about data privacy and security.
Privacy concerns: real or myth?
A study conducted by IBM’s Institute for Business Value discovered that 81% of respondents said they have become increasingly concerned about privacy online. This concern stems mostly from the stories breaking with alarming frequency about data leakages. But just how concerned are people about their privacy when it comes to practical matters? According to this Fortune article, very little.
In many countries, opening someone else’s mail is considered a felony. But having your own data be monitored doesn’t seem to bother a lot of people. For instance, hardly anyone is alarmed when they are tagged in a photo they didn’t know was taken and it is shared on someone else’s social media profile.
So it is no surprise that the same IBM study discovered that only 16% of respondents chose to walk away from a company because of suspected privacy issues. More interestingly, 71% said they would give up their privacy in order to experience what new technology has to offer. We give up email addresses and phone numbers for free WiFi or special offers. We share addresses, preferences, and other personal information for convenience (like home deliveries). In essence, we treat our privacy as a commodity to be traded for certain benefits, and organizations everywhere are after that.
What does Big Tech think about privacy?
The moguls of the tech world have all publicly said that they support federal laws related to privacy. But the devil is really in the details. Apple CEO Tim Cook has long been vocal about their staunch stance on transparency. Additionally, Apple advocates data minimization: “companies should be challenged to strip identifying information from consumer data or stop collecting it at all”.
On the other hand, Google and the Internet Association (which represents Facebook, Amazon, Twitter,
Thinking about data privacy: a model approach
Like any ethical conundrum, the lines between right and wrong are blurred here. Hardline advocates call for nothing less than a way for technology to continue to deliver services without compromising privacy and security. Most of the internet user base is only vaguely wary or plain unconcerned, while another set has resigned itself to viewing the loss of privacy as a price to pay for convenience or benefits.
As an organization that values your customers’ privacy rights, how can you approach the making of your governance policy? On the 11th anniversary of the Data Privacy Day, Forbes magazine reached out to 11 experts for their views on the matter. And David Francis, information security consultant at UK-based communications and IT services provider KCOM had an interesting take on how companies can evaluate their own data security and privacy strategy. He suggests asking four questions and introspecting on these:
- Does your data security and privacy plan put the customer first? (Simple answer, it should.)
- Is your organization GDPR (or other applicable law) compliant?
- Does your organization have security systems in place to track and prevent insider threats? (Again, it should.
- Is your organization aware of who has access to what data? (A good data governance policy is an absolute essential to ensure data security and integrity).
As Colibra partners, we have long been helping our clients frame their data governance policy and implement it through our 3-phase model. Talk to one of our seasoned consultants today to understand how we can help.