https://www.polity.org.za
Deepening Democracy through Access to Information
Home / Statements RSS ← Back
Africa|SECURITY
Africa|SECURITY
africa|security
Close

Email this article

separate emails by commas, maximum limit of 4 addresses

Sponsored by

Close

Article Enquiry

Information Regulator confirms receipt of notifications regarding IEC security compromise

Close

Embed Video

Information Regulator confirms receipt of notifications regarding IEC security compromise

Information Regulator confirms receipt of notifications regarding IEC security compromise

11th March 2024

ARTICLE ENQUIRY      SAVE THIS ARTICLE      EMAIL THIS ARTICLE

Font size: -+

/ MEDIA STATEMENT / The content on this page is not written by Polity.org.za, but is supplied by third parties. This content does not constitute news reporting by Polity.org.za.

The Information Regulator (Regulator) confirms that it has received two notifications from the Independent Electoral Commission (IEC) regarding a security compromise that saw the unlawful release of candidate lists for the African National Congress (ANC) and the Umkhonto we Sizwe Party (MK) for the 2024 elections. The Regulator will attend to the notifications from the IEC in accordance with the requirements of the Protection of Personal Information Act No. 4 of 2013 (POPIA). The Regulator has advised the IEC that the notifications sent to the Regulator do not provide sufficient details about the incidents to make them compliant with POPIA requirements. Accordingly, the Regulator has sent an information notice to the IEC requiring the IEC to furnish the Regulator with more details regarding the incidents.

The Regulator’s information notice requests, among others, the following information from the IEC:

Advertisement

Regarding the security compromise involving the ANC candidates - 

  • Proof that the IEC has published the security compromise notice on its website.

Regarding the security compromise involving the MK candidates -

Advertisement
  • proof of written notification to the MK party;
  • confirmation of the number of data subjects impacted by the security compromise.

Regarding both parties – 

  • provision of sufficient information to allow the data subjects to take protective measures against the potential consequences of the compromise. 
  • Details as to how the unauthorised person accessed the personal information of data subjects, and
  • Details as to the technical and organisational measures that the IEC has implemented to mitigate against the risk of the affected data subjects' personal information being unlawfully accessed and/or unlawfully processed. 

The requested information will assist the Regulator in determining whether the IEC has met its obligations as a responsible party under POPIA.

 

Issued by Information Regulator of South Africa

 

 

EMAIL THIS ARTICLE      SAVE THIS ARTICLE ARTICLE ENQUIRY

To subscribe email subscriptions@creamermedia.co.za or click here
To advertise email advertising@creamermedia.co.za or click here

Comment Guidelines

 

About

Polity.org.za is a product of Creamer Media.
www.creamermedia.co.za

Other Creamer Media Products include:
Engineering News
Mining Weekly
Research Channel Africa

Read more

Subscriptions

We offer a variety of subscriptions to our Magazine, Website, PDF Reports and our photo library.

Subscriptions are available via the Creamer Media Store.

View store

Advertise

Advertising on Polity.org.za is an effective way to build and consolidate a company's profile among clients and prospective clients. Email advertising@creamermedia.co.za

View options
Free daily email newsletter Register Now