Australia’s Cybersecurity Adviser Calls For Privacy

The Australian government's national cybersecurity adviser has urged social media companies to improve the way they treat personal data and encouraged users of those platforms to be more aware of what information they are offering up to the Internet.

Amid the heightened debate around the use of personal data online, Alastair MacGibbon, who heads the Australian Cyber Security Centre, also suggested companies like Facebook were being hypocritical when governments seek their assistance with criminal investigations.

"These same companies that have allowed tens of millions of accounts to go at the back end out of their control will say to us often, 'look we’re not going to help you' or 'we can’t help you' or 'you’re overreaching as a government', even though you have court orders and a really strong, compelling case because we need to protect the privacy of their customers," Mr MacGibbon told Sky News.

"These companies that hold up privacy and the sanctity of the individual to us as governments, western, liberal, democratic governments, are the same ones that are then allowing data at the back end to go off out of their control."

He said the companies' treatment of personal data should become more mature to comply with community expectations. He also reminded people that, "we are their product, our data is their product" when these services are free.

"That’s what everyone needs to remember in this discussion. Is that our data, as we used those services, is used primarily to market but the events this week highlight that sometimes there can a darker side," Mr MacGibbon said.

Following revelations concerning data science firm Cambridge Analytica's inappropriate harvesting of Facebook users' data and involvement in political campaigns around the world, the companies are now facing inquiries in multiple countries and the prospect of tighter regulation.

The controversy has also triggered debate around the use of data in politics, with former federal privacy commissioner Malcolm Crompton criticising Australia's major political parties, who enjoy an exemption from the Privacy Act.

Fairfax Media revealed that Facebook approached the major parties with an advanced data-matching tool in the lead-up to the 2016 election, an offer the Liberal Party declined out of concern it could breach electoral laws.

Political parties are exempt from the Privacy Act that governs the data collection, use and disclosure for almost all other private organisations. The exemption is designed to "encourage freedom of political communication" and support the electoral process, according to Attorney-General Christian Porter.

Mr Crompton said the parties "don't have a leg to stand on" and should adhere to the same practices and principles that others face, which would make their data collection more accurate and transparent.

Labor is understood to have adopted Facebook's "Custom Audience" feature and has advanced digital campaigning capabilities while the South Australian and Victorian Liberal Party branches are using data-driven micro-targeting service i360.

Data long collected by political parties, from the electoral roll, direct contact and publicly available statements, is now being combined with social media, deployed in increasingly advanced ways online and refining the more traditional methods of door-knocking, phone calls and direct mail.

Cambridge Analytica, notorious for its involvement in the 2016 US election, has made attempts to expand into Australia but the major parties have declined to take up their services.

Sydney Morning Herald

You Might Also Read: 

Australia To Challenge Facebook & Google Over Media Disruption:

 
« The Pentagon Is Busy Integrating Cyber Into Its Battle Plans
Snowden: The Deep State’s Influence On The Presidency »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

ZenGRC

ZenGRC

ZenGRC (formerly Reciprocity) is a leader in the GRC SaaS landscape, offering robust and intuitive products designed to make compliance straightforward and efficient.

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

CYRIN

CYRIN

CYRIN® Cyber Range. Real Tools, Real Attacks, Real Scenarios. See why leading educational institutions and companies in the U.S. have begun to adopt the CYRIN® system.

Black Duck Software

Black Duck Software

Black Duck Hub allows organizations to manage open source code security as well as license compliance risks.

Integrity360

Integrity360

Integrity360 provide fully managed IT security services as well as security testing, integration, GRC and incident handling services.

Lynxspring

Lynxspring

Lynxspring provides edge-to-enterprise solutions and IoT technology for intelligent buildings, energy management, equipment control and specialty machine-to-machine applications.

Digital Security

Digital Security

Digital Security is an Ecuadorian company specialized in providing comprehensive information security solutions.

Fugue

Fugue

Fugue ensures cloud infrastructure stays in continuous compliance with enterprise security policies.

Zuratrust

Zuratrust

Zuratrust provide protection for all kinds of email related cyber attacks.

SafeHouse Technologies

SafeHouse Technologies

SafeHouse is a cloud-based, high-end cybersecurity platform that can secure and insure any device that is connected to it.

SecSign Technologies

SecSign Technologies

SecSign Technologies delivers user authentication, messaging, file sharing, and file storage with next generation security for company networks, websites, platforms, and devices.

Focal Point

Focal Point

We aspire to be the focal point for Medium and Small size companies providing 24/7 cyber security advice, services and solutions.

Trapp Technology

Trapp Technology

Trapp Technology combines the very best cloud, Internet, IT managed services, and IT consulting to provide a true all-in-one IT solution for small to mid-sized businesses.

Global Cybersecurity Institute - Rochester Institute of Technology (RIT)

Global Cybersecurity Institute - Rochester Institute of Technology (RIT)

At RIT’s Global Cybersecurity Institute, we educate and train cybersecurity professionals; develop new cybersecurity and AI-based knowledge for industry, academia, and government.

Arcturus Security

Arcturus Security

Arcturus is a CREST-approved cyber security consultancy created by experts in the field.

The Security Bulldog

The Security Bulldog

The Security Bulldog distills and assimilates open source cyber intelligence to enable security teams to understand threats more quickly, make better decisions, and accelerate detection and response.

Cyclops

Cyclops

Cyclops is the first Contextual Search Platform for cybersecurity.

Anch.AI

Anch.AI

Anch.AI is an Ethical AI Governance platform that helps you comply with EU regulations and avoid risks and penalties when developing and using AI as part of your business.

Arctera

Arctera

Arctera simplifies data management to keep you secure. Our company operates as three units - Data Compliance, Data Resilience, and Data Protection.