Agenda item

Information Management Policy Refresh - General Data Protection Regulation (GDPR)

Decision:

The Chair agreed that this report should be considered (notwithstanding that the item had not been available for inspection by the public for five clear days before the meeting) because of special circumstances, namely the need for the Council to consider proposed changes to its Information Management policies prior to the introduction of the General Data Protection Regulation on 25 May, 2018.

 

*RESOLVED –

 

1.   That the updated Information Management policies, as attached at Appendix A to the officer’s report, be approved; and that the Council’s existing ICT Policy be decommissioned.

 

2.   That the Council’s Information Assurance Manager, in consultation with the Cabinet Member for Governance, be authorised to make any amendments to the policies that might need to be implemented after 25 May, 2018 to reflect further guidance from the Information Commissioner’s Office, National Cyber Security Centre or other respected authorities.

 

REASON FOR RECOMMENDATIONS

 

The policies provide a framework for the Council to continue to ensure that the information assets it holds are adequately protected, thus allowing the Council to deliver its vision, priorities and values.

Minutes:

The Chair agreed that this report should be considered (notwithstanding that the item had not been available for inspection by the public for five clear days before the meeting) because of special circumstances, namely the need for the Council to consider proposed changes to its Information Management policies prior to the introduction of the General Data Protection Regulation on 25 May, 2018.

 

The Information Assurance Manager submitted a report to inform Members that the General Data Protection Regulation was to be implemented with effect from 25 May 2018; the Council had updated its Information Management policies in preparation for this.

 

The updated policies on Data Protection, Information Security and Acceptable Use of Information and ICT, were attached at Appendix 1 to the officer’s report.

 

*RESOLVED –

 

1.   That the updated Information Management policies, as attached at Appendix A to the officer’s report, be approved; and that the Council’s existing ICT Policy be decommissioned.

 

2.   That the Council’s Information Assurance Manager, in consultation with the Cabinet Member for Governance, be authorised to make any amendments to the policies that might need to be implemented after 25 May, 2018 to reflect further guidance from the Information Commissioner’s Office, National Cyber Security Centre or other respected authorities.

 

REASON FOR DECISIONS

 

The policies provide a framework for the Council to continue to ensure that the information assets it holds are adequately protected, thus allowing the Council to deliver its vision, priorities and values.

 

Supporting documents: