Council strengthens response to potential cyber attacks
Lockyer Valley Regional Council has added another layer to its cyber security risk management, recently implementing a Data Breach Policy.
Adopted at the June Ordinary Meeting of Council, the Policy was developed to meet new legislative requirements and outlines the steps Council would take in the event of a data breach.
Council’s Information, Communication and Technology Portfolio Councillor and Deputy Mayor, Cr Chris Wilson said the Policy was all about bolstering Council’s broader commitment to cyber and information security governance.
“The Data Breach Policy outlines how Council would respond to a data breach, including suspected or confirmed data breaches.
“The Policy outlines four clear steps that must be followed in the case of a suspected breach, and include detecting and containing the breach, assessing the breach, notifying impacted individuals and, finally, reviewing and improving.
“This new document complements our existing Information Security Incident Response Plan and data security playbooks, which we continuously improve and update through regular exercising and reviews.
“Having a Policy like this in place means, as a Council, we can actively limit any damage that could be caused if a breach were to occur.
“It also means we’re further protecting our community and workforce from long-term data loss,” Cr Wilson said.
The Policy can be found on Council’s website, www.lockyervalley.qld.gov.au