Australia’s Cybersecurity Adviser Calls For Privacy

The Australian government's national cybersecurity adviser has urged social media companies to improve the way they treat personal data and encouraged users of those platforms to be more aware of what information they are offering up to the Internet.

Amid the heightened debate around the use of personal data online, Alastair MacGibbon, who heads the Australian Cyber Security Centre, also suggested companies like Facebook were being hypocritical when governments seek their assistance with criminal investigations.

"These same companies that have allowed tens of millions of accounts to go at the back end out of their control will say to us often, 'look we’re not going to help you' or 'we can’t help you' or 'you’re overreaching as a government', even though you have court orders and a really strong, compelling case because we need to protect the privacy of their customers," Mr MacGibbon told Sky News.

"These companies that hold up privacy and the sanctity of the individual to us as governments, western, liberal, democratic governments, are the same ones that are then allowing data at the back end to go off out of their control."

He said the companies' treatment of personal data should become more mature to comply with community expectations. He also reminded people that, "we are their product, our data is their product" when these services are free.

"That’s what everyone needs to remember in this discussion. Is that our data, as we used those services, is used primarily to market but the events this week highlight that sometimes there can a darker side," Mr MacGibbon said.

Following revelations concerning data science firm Cambridge Analytica's inappropriate harvesting of Facebook users' data and involvement in political campaigns around the world, the companies are now facing inquiries in multiple countries and the prospect of tighter regulation.

The controversy has also triggered debate around the use of data in politics, with former federal privacy commissioner Malcolm Crompton criticising Australia's major political parties, who enjoy an exemption from the Privacy Act.

Fairfax Media revealed that Facebook approached the major parties with an advanced data-matching tool in the lead-up to the 2016 election, an offer the Liberal Party declined out of concern it could breach electoral laws.

Political parties are exempt from the Privacy Act that governs the data collection, use and disclosure for almost all other private organisations. The exemption is designed to "encourage freedom of political communication" and support the electoral process, according to Attorney-General Christian Porter.

Mr Crompton said the parties "don't have a leg to stand on" and should adhere to the same practices and principles that others face, which would make their data collection more accurate and transparent.

Labor is understood to have adopted Facebook's "Custom Audience" feature and has advanced digital campaigning capabilities while the South Australian and Victorian Liberal Party branches are using data-driven micro-targeting service i360.

Data long collected by political parties, from the electoral roll, direct contact and publicly available statements, is now being combined with social media, deployed in increasingly advanced ways online and refining the more traditional methods of door-knocking, phone calls and direct mail.

Cambridge Analytica, notorious for its involvement in the 2016 US election, has made attempts to expand into Australia but the major parties have declined to take up their services.

Sydney Morning Herald

You Might Also Read: 

Australia To Challenge Facebook & Google Over Media Disruption:

 
« The Pentagon Is Busy Integrating Cyber Into Its Battle Plans
Snowden: The Deep State’s Influence On The Presidency »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

ZenGRC

ZenGRC

ZenGRC - the first, easy-to-use, enterprise-grade information security solution for compliance and risk management - offers businesses efficient control tracking, testing, and enforcement.

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

CYRIN

CYRIN

CYRIN® Cyber Range. Real Tools, Real Attacks, Real Scenarios. See why leading educational institutions and companies in the U.S. have begun to adopt the CYRIN® system.

Clayden Law

Clayden Law

Clayden Law advise global businesses that buy and sell technology products and services. We are experts in information technology, data privacy and cybersecurity law.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

Security Innovation

Security Innovation

Security Innovation is a leader in software security assessments and application security training to top organizations worldwide.

ActiveCyber

ActiveCyber

ActiveCyber is a source for news, reviews, learning, and technological innovation in the active cyber defense industry.

Fornetix

Fornetix

Fornetix is a cybersecurity platform enabling Zero Trust while delivering critical encryption automation, access controls, authorization services, machine identity, and ICAM solutions,

Preempt Security

Preempt Security

The Preempt Platform delivers adaptive threat prevention that continuously preempts threats based on identity, behavior and risk.

RevenueStream

RevenueStream

RevenueStream uses an innovative algorithmic approach to intercept and prevent payment fraud before it even happens.

Kingsley Napley

Kingsley Napley

Cyber crime is an area of growing legal complexity. Our team of cyber crime lawyers have vast experience of the law in this area.

Stage2Data

Stage2Data

Stage2Data is one of Canada’s most trusted cloud solution providers offering hosted Backup and Disaster Recovery Services.

ZecOps

ZecOps

ZecOps is a cybersecurity automation company offering solutions for servers, endpoints, mobile devices, and custom devices.

Keysight Technologies

Keysight Technologies

Keysight is dedicated to providing tomorrow’s test technologies today, enabling our customers to connect and secure the world with their innovations.

Data Protection Commission (DPC)

Data Protection Commission (DPC)

The Data Protection Commission (DPC) is the national independent authority responsible for upholding the fundamental right of individuals in the EU to have their personal data protected.

Regtank Technology

Regtank Technology

Regtank is a one-stop compliance solution for fintechs, navigating compliance, security and risk management.

Splashtop

Splashtop

Splashtop’s cloud-based, secure, and easily managed remote access solution is increasingly replacing legacy approaches such as virtual private networks.

Radiance Technologies

Radiance Technologies

Radiance solutions provide technological advantage and operational superiority for our nation in the areas of intelligence, cyber and advanced weapon systems.

Cybervergent

Cybervergent

Cybervergent (formerly Infoprive) are a leading cybersecurity technology company in Africa. We provide cybersecurity guidance and solutions that help protect your business.

Logiq Consulting

Logiq Consulting

Logiq Consulting provide a full range of Cyber Security, Information Assurance and System Engineering services.

CSIRT-Gnd

CSIRT-Gnd

CSIRT-Gnd provides 24x7 Computer Security Incident Response Services to citizens, companies and government agencies in Grenada.