What is the ethical issue?

Many organisations now collect a large amount of data both in written and electronic format. Most of this will be held by individual operating companies.

This information includes data relating to customers and suppliers, which could be accessed by hackers if not secured appropriately. Organisations have a duty of care and a reponsibility to their stakeholders whose data they hold, to protect them from harm.

 

IBE Guidance

A summary of good practice
  • Organisations should take extreme care with respect to the proper use, storage and transmission of this information. Regulations like GDPR should not just be seen as a compliance exercise, but as an opportunity to improve cybersecurity, transparency and responsible use of personal data. There is a need to take extreme care with respect to the proper use, storage and transmission of data, adhering to both the law and the consent of individuals.
  • Appropriate technical and organisational measures need to be put in place to protect data from accidental or unlawful destruction or accidental loss, alteration, unauthorised disclosure or access. These measures should ensure a level of security appropriate to the risks represented by the processing and the nature of the data protected.

 

Further resources

Business ethics briefing

An Ethical Approach to Artificial Intelligence

13 March 2025

Webinar

IBE webinar recording: Human-centric AI

25 June 2024

Business ethics briefing

Artificial Intelligence (Al) - the ethical challenge

26 October 2023

Board briefing

Corporate Ethics in a Digital Age

This Board Briefing suggests questions for those in the boardroom to ask to help address the ethical challenges of AI in their businesses. It uses case studies to highlight the real-world dilemmas which boards are facing.

04 June 2019

Business ethics briefing

Beyond Law: Ethical culture and GDPR

What are the wider ethical implications of GDPR? How can an organisation’s values be embedded and monitored so that the new regulation becomes a measure of those, rather than simply a set of compliance rules that must be ticked off?

30 May 2018