FOI Request

Dave Schneider made this Freedom of Information request to London Borough of Barking and Dagenham Council

This request has been closed to new correspondence from the public body. Contact us if you think it ought be re-opened.

The request was partially successful.

Sir/Madam,

I wish to make a request under the Freedom of Information Act. The
following questions and information I wish to have sent to me are
as follows:

Provide, name, address and telephone number for the following
people:
• Senior Information Risk Owner
• Governance Manager
• Information Security Officer/Manager
• Information Technology Security Officer/Manager
• Caldecott Guardian

PCI-DSS
Does your organisation process electronic payment cards?
How much money is processed from electronic payment cards per
annum?
How many electronic payment card transactions are processed per
annum?
Are you PCI-DSS compliant?

ISO 27001
Are you or have you considered becoming ISO 27001 compliant or
certified?

Government Connect
Are you connected and operationally utilising the Government
Connect network? If not have you considered connecting to
Government Connect and why was the decision made not to connect?
Do you meet the Government Connect version three requirements?
Please supply your latest CLAS consultant annual Government Connect
assessment/audit report, blanking out any statements which could
contravene a security concern from a third party reading it.
Do you meet the Government Connect version four requirements?
Please supply the latest internal report for the Government Connect
version four Audit/Assessment, blanking out any statements which
could contravene a security concern from a third party reading it.

Criminal Justice Network
Are you connected to and operationally utilising the Criminal
Justice Network? If not have you considered connecting to the
Criminal Justice Network and why was the decision made not to
connect?
Please supply your latest annual assessment/audit report, blanking
out any statements which could contravene a security concern from a
third party reading it.

NHS N3 Network
Are you connected to and operationally utilising the NHS N3
Network? If not have you considered connecting to the NHS N3
network and why was the decision made not to connect?
Please supply your latest N3 Connection assessment/audit report,
blanking out any statements which could contravene a security
concern from a third party reading it.
Do both schools and the Council share the same physical network
responsible for voice and data communications?

Yours faithfully,

Dave Schneider

Freedom of Information, London Borough of Barking and Dagenham Council

Thank you for contacting the Freedom of Information (FOI) Team this is
confirmation that your email has been received.
An officer of the council will shortly be in touch with you.


Working together for a better borough that is safe, clean, fair and
respectful,
Prosperous and healthy, and where our young people are inspired and
successful.
Protect the environment and save trees; please only print if essential

E-mail confidentiality notice. This message is intended for the addressees only. It may be private, confidential and may be covered by legal professional privilege or other confidentiality requirements. If you are not one of the intended recipients, please notify the sender immediately on +44 0 20-8215-3000 and delete the message from all locations in your computer network. Do not copy this email or use it for any purpose or disclose its contents to any person:to do so maybe unlawful.

Clist Julie, London Borough of Barking and Dagenham Council

Dear Mr Schneider

Thank you for your e-mail received 17 August 2010 requesting information regarding .

Ann Gravestock in IT will arrange for the information to be provided to you no later than 15 September 2010.

Whilst it is the Council's policy to provide information wherever possible, I need to advise you that there are a number of exemptions under the Freedom of Information Act 2000. These may prevent me from releasing all or some of the information you have asked for. You will, however be informed if this is the case and why.

Yours sincerely

Julie Clist
Business Support Officer
Corporate Complaints & FOI Team
London Borough of Barking & Dagenham
Room 104 Town Hall
1 Town Square
Barking
IG11 7HE
020 8227 2875

E-mail confidentiality notice. This message is intended for the addressees only. It may be private, confidential and may be covered by legal professional privilege or other confidentiality requirements. If you are not one of the intended recipients, please notify the sender immediately on +44 0 20-8215-3000 and delete the message from all locations in your computer network. Do not copy this email or use it for any purpose or disclose its contents to any person:to do so maybe unlawful.

Gravestock Ann, London Borough of Barking and Dagenham Council

Dear Mr. Schneider,

Request for information ref: LBBD/48554

Thank you for your request dated the 18^th August 2010.

Your request for information regarding Security issues has now been
considered. Our responses are set out below.

Provide, name, address and telephone number for the following people:

o Senior Information Risk Owner - Tracie Evans - 0208 227 2108
o Governance Manager - Not Appointed
o Information Security Officer/Manager - Katherine Maddock-Lyon - 0208
227 5730
o Information Technology Security Officer/Manager - Richard Perry - 0208
227 2736, John Bagley - 0208 227 2091
o Caldecott Guardian - Mary Farinha - 0208 227 2080, Meena Kishnani -
0208 227 3507

The address is the London Borough of Barking & Dagenham

Town Hall, 1 Town Square, Barking IG11 7LU

PCI-DSS

Does your organisation process electronic payment cards? - Yes

How much money is processed from electronic payment cards per annum?
Approximately £18 million per annum

How many electronic payment card transactions are processed per annum?
Approximately  168500.

Are you PCI-DSS compliant? - We are working towards this.

ISO 27001

Are you or have you considered becoming ISO 27001 compliant or certified?
- We are working towards this.

Government Connect

Are you connected and operationally utilising the Government Connect
network? - Yes

If not have you considered connecting to Government Connect and why was
the decision made not to connect? - Not applicable

Do you meet the Government Connect version three requirements? - Yes

Please supply your latest CLAS consultant annual Government
Connect assessment/audit report, blanking out any statements which could
contravene a security concern from a third party reading it.

To confirm we are connected and operationally utilize the Government
connect Network.

We will not supply any assessment/audit report; however I can confirm that
this information exists. Publication of this information, would not only
compromise the security of the Council's information and systems, but
would expose the contents of the Code of Connection document and its
controls.  The primary authors of this document have not authorised its
publication.

I am unable to provide the information because if this was disclosed it
would prejudice the commercial interests of any person or the Council
itself. The Council and those that we hold information on may be
prejudiced by the risk to our ICT security should the information be
disclosed. I consider that the public interest in withholding the
information outweighs the public interest in disclosing it. As such, it
is exempt from release under Section 43 of the Freedom of Information Act
2000.

Do you meet the Government Connect version four requirements? - Partly

Please supply the latest internal report for the Government Connect
version four Audit/Assessment, blanking out any statements which could
contravene a security concern from a third party reading it.

To confirm we are connected and operationally utilize the Government
connect Network.  We will not supply any assessment/audit report; however
I can confirm that this information exists. Publication of this
information, would not only compromise the security of the Councils
information and systems, but would expose the contents of the Code of
Connection document and its controls.  The primary authors of this
document have not authorised its publication.

I am unable to provide the information because if this was disclosed it
would prejudice the commercial interests of any person or the Council
itself. The Council and those that we hold information on may be
prejudiced by the risk to our ICT security should the information be
disclosed. I consider that the public interest in withholding the
information outweighs the public interest in disclosing it. As such, it
is exempt from release under Section 43 of the Freedom of Information Act
2000.

Criminal Justice Network

Are you connected to and operationally utilising the Criminal Justice
Network? - Yes

If not have you considered connecting to the Criminal Justice Network and
why was the decision made not to connect? - Not Applicable

Please supply your latest annual assessment/audit report, blanking out any
statements which could contravene a security concern from a third party
reading it. - I can confirm that the council does not hold this
information.

NHS N3 Network

Are you connected to and operationally utilising the NHS N3 network? - Yes

If not have you considered connecting to the NHS N3 network and why was
the decision made not to connect? - Not applicable

Please supply your latest N3 Connection assessment/audit report, blanking
out any statements which could contravene a security concern from a third
party reading it. - I can confirm that the Council does not hold this
information

Do both schools and the Council share the same physical network
responsible for voice and data communications? - No

If you are not satisfied with the way that I have dealt with your request
you can make a complaint by writing to the Corporate Complaints & FOI
Team, Room 104, Town Hall, 1 Town Square, Barking IG11 7HE. Alternatively
you can make your complaint on-line at [1]www.barking-dagenham.gov.uk or
you can e-mail your complaint to [2][Barking & Dagenham Borough Council request email].

If you are still not satisfied, after following our Corporate Complaints
procedure, you can take your complaint to the Information Commissioner.
Full details of how to do this will be made available on request.

Yours sincerely

Ann Gravestock

Business Support Team Leader

ICT - Resources

Room 8 Civic Centre

Wood Lane

Dagenham

RM10 7BN

Tel: 020 8227 2057/Fax: 020 8227 2060

email: [3][email address]

[4]www.barking-dagenham.gov.uk

Working together for a better borough that is safe, clean, fair and
respectful,

prosperous and healthy, and where our young people are inspired and
successful.

P Protect the environment and save trees; please only print if essential

E-mail confidentiality notice. This message is intended for the addressees
only. It may be private, confidential and may be covered by legal
professional privilege or other confidentiality requirements.  All
communications sent to or from this organisation may be subject to
recording or monitoring in accordance with relevant legislation.  If you
are not one of the intended recipients, please notify the sender
immediately on +44 0 20-8215-3000 and delete the message from all
locations in your computer network. Do not copy this email or use it for
any purpose or disclose its contents to any person: to do so maybe
unlawful.

References

Visible links
1. http://www.barking-dagenham.gov.uk/
http://www.barking-dagenham.gov.uk/
2. mailto:[Barking & Dagenham Borough Council request email]
mailto:[Barking & Dagenham Borough Council request email]
3. mailto:[email address]
mailto:[email address]
4. http://www.barking-dagenham.gov.uk/
http://www.barking-dagenham.gov.uk/

Dear Clist Julie,

Please can you update me on the status of this FOI, as you're past the statutory 20 day deadline.

Yours sincerely,

Dave Schneider

Clist Julie, London Borough of Barking and Dagenham Council

Dear Mr Schneider

Please see below a copy of the response to your FOI request which was sent
on 15 September 2010.  I apologise that you did not receive this when it
was issued and for any inconvenience this may have caused you.

Kind regards
Julie Clist | Business Support Officer | Corporate Complaints & FOI
Team Phone: 020 8227 2875

P Protect the environment and save trees; please only print if essential

show quoted sections