Common IT security weaknesses lead ICO to reprimand recruitment firm

ICO provides further guidance on what it expects from data controllers in the context of cyber incidents.

The UK Information Commissioner’s Office (ICO), the UK’s data protection regulator, has issued a reprimand following infringements of the UK General Data Protection Regulation (GDPR) to recruitment company Gap Personnel Holdings Limited (Gap). This followed threat actors gaining access to personal data on two separate occasions within a

Free Trial

Register for free to keep reading.

To continue reading this article and unlock full access to GRIP, register now. You’ll enjoy free access to all content until our subscription service launches in early 2026.

  • Unlimited access to industry insights
  • Stay on top of key rules and regulatory changes with our Rules Navigator
  • Ad-free experience with no distractions
  • Regular podcasts from trusted external experts
  • Fresh compliance and regulatory content every day
Register for free Already a member? Sign in