TikTok’s CEO Interrogated Over Data Privacy

The CEO of TikTok Shou Zi Chew faced strong questioning about the social media app’s privacy from US legislators for more than five hours last week, about whether China has used the app to spy on American usersThe questions came from combative US lawmakers on both ends of the political spectrum over the video-sharing app's alleged ties to China and its potential danger to teenagers. 

TikTok has of millions of US users, and lawmakers have long held concerns over China’s control over the app. In particular, US Congress members expressed concerns about child safety on the app, asked for more parental controls and more comprehensive privacy legislation. 

The hearing marked the first ever appearance before US lawmakers by a TikTok chief executive, and a rare public outing for the 4o-year-old Chew, who has remained largely out of the limelight as the social network’s popularity soars. 

 When Rep. Neal Dunn asked Chew whether Bytedance, TikTok’s China-based parent company, “has spied on Americans at the direction of the Chinese Communist Party,” Chew said “no.” Mr Chew went on “Let me state this unequivocally: ByteDance is not an agent of China or any other country,” 

Dunn also mentioned a newspaper report published in October 2022, that focused on ByteDance’s plans to monitor the physical locations of some US TikTok users. “I don't think that ‘spying’ is the right way to describe it. This is ultimately an internal investigation,” Chew said.

The popular short-form video app has been in the lawmakers’ focus for years as it was possible that TikTok’s data could be accessed by ByteDance and then by the Chinese government

Chew was interrogators by included Rep. John Joyce, who asked about data security and TikTok’s plan to delete data rather than just move it from one server to another. “You have publicly stated that the nonpublic information of TikTok users in the United States is being transferred to an Oracle-based cloud infrastructure because of safety concerns…What’s the outline for dealing with that data that you’ve already amassed?” To which Mr Chew replied “All new data is already stored by default in this Oracle Cloud infrastructure" adding that the effort to move older data should be finished later this year. 

When pressed that TikTok only began planning to delete data after Congress asked about it earlier this month, Chew said TikTok hired a third-party auditor to help with the process and defended the company’s actions: “Congressman, respectfully, there are many companies that use a global workforce. We are not the only one.”
The CEO Chew said TikTok started deleting “historical protected U.S. user data stored in non-Oracle servers” in March and “we expect this process to be completed later this year.” 

These events may culminate in a long predicted and much delayed move by US legislators to regulate the social media platform and it is possible the TikTok’s days may be required to withdraw for the US market. 
 

US Congress:     DefenseOne:   Forbes:   Le Monde:   You Tube:   CNBC:   Guardian:     Platformer:  

You Might Also Read: 

TikTok Is Banned From British Government Phones:

___________________________________________________________________________________________

If you like this website and use the comprehensive 6,500-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible


 

« NCSC Launches Services For Small Firms To Be Safe Online
Russia's Disinformation Campaign Targets Ukraine's Supporters »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Cyber Security Supplier Directory

Cyber Security Supplier Directory

Our Supplier Directory lists 6,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

ZenGRC

ZenGRC

ZenGRC - the first, easy-to-use, enterprise-grade information security solution for compliance and risk management - offers businesses efficient control tracking, testing, and enforcement.

LockLizard

LockLizard

Locklizard provides PDF DRM software that protects PDF documents from unauthorized access and misuse. Share and sell documents securely - prevent document leakage, sharing and piracy.

DigitalStakeout

DigitalStakeout

DigitalStakeout enables cyber security professionals to reduce cyber risk to their organization with proactive security solutions, providing immediate improvement in security posture and ROI.

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

DKCERT

DKCERT

DKCERT (Danish Computer Security Incident Response Team) handles security incidents on forskningsnettet, the National Research and Education Network (NREN) in Denmark.

PeCERT

PeCERT

PeCERT is the national Computer Emergency Response Team for Peru.

Korea Information Security Industry Association (KISIA)

Korea Information Security Industry Association (KISIA)

KISIA is a non-profit organization for the information security industry in Korea.

Bugcrowd

Bugcrowd

As leaders in crowdsourced security testing, Bugcrowd connects companies and their applications to a crowd of tens of thousands of security researchers to identify critical software vulnerabilities.

Cyber Observer

Cyber Observer

Cyber Observer’s team specializes in providing corporate officers with comprehensive, visual, real-time performance overview, critical security control (CSC) analysis.

Nuspire

Nuspire

Nuspire provide services to protect your network with best-in-class managed detection and response, allowing you to stay focused on managing your business.

La Fosse Associates

La Fosse Associates

The InfoSec Recruitment team at La Fosse Associates specialises in placing Information Security & Risk professionals on a permanent and contract basis.

Garner Products

Garner Products

Garner design, manufacture, and sell equipment that delivers complete, permanent, and verifiable data elimination.

Red4Sec

Red4Sec

Red4Sec are experts in ethical hacking, audits of web and mobile applications, code audits, cryptocurrency audits, perimeter security and incident response.

Octane OC

Octane OC

OCTANe is building the SoCal of tomorrow. We drive innovation and growth by connecting people, resources and capital. Our Incubator focus is FinTech, Data Analytics and Cybersecurity.

SECURITI.ai

SECURITI.ai

SECURITI.ai's PrivacyOps platform is a full-stack solution that operationalizes and simplifies privacy compliance using robotic automation and a natural language interface.

Cyolo

Cyolo

Cyolo’s Secure Access Service Edge (SASE) platform securely connects onsite and remote users to authorized assets, in the organizational network, cloud or IoT environments and even offline networks.

Evina

Evina

Evina offers the most advanced cybersecurity and fraud protection for mobile payment.

Pionen

Pionen

Pionen are a specialist information security consultancy with excellent people and proven security delivery methodologies at its core.

The CyberWire

The CyberWire

The CyberWire gets people up to speed on cyber quickly and keeps them a step ahead in a continually changing industry.

Cyberplc

Cyberplc

Cyberplc is a global cybersecurity consulting firm providing services to government, the public sector and enterprises.