Léim ar aghaidh chuig an bpríomhábhar
Gnáthamharc

Data Protection

Dáil Éireann Debate, Wednesday - 16 October 2024

Wednesday, 16 October 2024

Ceisteanna (101)

Peadar Tóibín

Ceist:

101. Deputy Peadar Tóibín asked the Minister for Public Expenditure, National Development Plan Delivery and Reform the number of data breaches experienced by his Department in each of the past ten years and to date in 2024; if a breakdown will be provided on the nature of the breaches; and if he will make a statement on the matter. [41739/24]

Amharc ar fhreagra

Freagraí scríofa

As the Deputy will be aware the General Data Protection Regulation (GDPR) came into effect on 25 May, 2018. To prepare for this critical date, my Department agreed a range of new internal data protection policies including a formal data breach management policy, the objective of which was to ensure that any data breaches are dealt with as required under Articles 33-34 of the GDPR.

Since the introduction of the data breach management policy in 2018, the Department has identified and recorded 50 data breaches as set out in the table below. Of the breaches identified in the Department, the majority of the breaches were determined to be minor in nature and were handled in accordance with the Department's data breach management policy. Only a small proportion warranted formal notification to the Data Protection Commissioner (DPC) under the GDPR. The minor breaches were followed up with appropriate remedial actions considered necessary by my Department’s DPO.

Year

Number of Data Breaches

2018*

9

2019

7

2020

10

2021

6

2022

4

2023

7

2024**

7

* 25 May, 2018 onwards

** to-date in 2024

Roinn