• Newsletters
  • Webinars
  • Podcast
  • Reports
  • About
    • Advertising
    • Contact us
    • Team
    • Contributors
  • News
  • Frontline
    • Prevention
    • Resilience
    • Response
    • Recovery
    • Learning
  • Leadership
    • Strategy
    • Government
    • Culture
    • Communication
  • People and skills
    • People moves
    • Training
    • Apprenticeships
    • Diversity and inclusion
    • Mental health and wellbeing
    • Life stages
  • Products
    • PPE
    • Vehicles
    • Medical
    • Training
    • Operational
    • Technology
  • Sustainability
    • Infrastructure
    • Transport
    • Built environment
    • Net zero
    • Climate change
  • Technology
    • Command and control
    • Data
    • Hardware
    • Software and apps
    • Digital transformation
    • Mapping and navigation
X (Twitter) LinkedIn Instagram
  • Newsletters
  • Webinars
  • Podcast
  • Reports
  • About
    • Advertising
    • Contact us
    • Team
    • Contributors
LinkedIn Instagram
Emergency Services Times
  • News
  • Frontline
  • Leadership
  • People and skills
  • Products
  • Sustainability
  • Technology
Emergency Services Times
Home > Technology > Data > Northern Ireland Policing Board publishes review into ‘significant’ PSNI data breach
Data 12 December 2023

Northern Ireland Policing Board publishes review into ‘significant’ PSNI data breach

James Devonshire12 December 2023Updated:11 April 2024No Comments3 Mins Read
Cybersecurity stock image. Courtesy of Darwin Laganzon from Pixabay
Cybersecurity stock image. Courtesy of Darwin Laganzon from Pixabay

The Northern Ireland Policing Board (NIPB) has published a review into the Police Service of Northern Ireland (PSNI) data breach which occurred on 8 August 2023.

Following the significant breach, which saw the personal details of 9,483 PSNI police officers and staff accidentally published on a public website following a legitimate Freedom of Information (FOI) request, the PSNI and the NIPB requested an independent peer review of the matter.

A team led by NPCC Information Assurance lead, and City of London Police T/ Commissioner, Peter O’Doherty, was commissioned to conduct the review.

Yesterday, the Protecting From Within review was published.

In his report, Mr O’Doherty described the incident as “the most significant data breach that has ever occurred in the history of UK policing”, adding that it should serve as “a wake-up call for every force across the UK to take the security of data as seriously as possible”.

The surnames, first initials, rank, location and unit (among other details) of the PSNI officers and staff were visible for around two-and-a-half hours online before they were removed.

“The volume of data managed, processed, and stored by policing is vast and continues to increase, both in terms of volume and complexity. Furthermore, policing holds the most sensitive of data and information and so it is essential that all police forces foster a robust and highly committed approach to data and information management and security, and ensure we have the leadership, governance, structures, and systems in place to protect the institution of policing and everyone who is part of it and effected by it.”

National Police Chiefs’ Council Information Assurance lead, and City of London Police T/ Commissioner, Peter O’Doherty

“I have presented the findings of the report to both the PSNI and the NIPB. This report not only services to highlight how the breach occurred, but also provides 37 clear recommendations that will help the PSNI evolve in its leadership of all data protection, information management, and security.

“It is important to recognise that many of these recommendations will need to be considered by every police force in the UK, so that we collectively work to improve how our data is protected and safeguarded.”

‘Many factors’ involved

Mr O’Doherty’s report said the breach was not “a result of a single isolated decision, act, or incident by any one person, team, or department. It was a consequence of many factors, and fundamentally a result of PSNI as an organisation not seizing opportunities to better and more proactively secure and protect its data, to identify and prevent risk earlier on, or to do so in an agile and modern way”.

The report also noted that, “at the time of the incident, these factors had not been identified by audit, risk management or scrutiny mechanisms internal or external to PSNI”.

Significant impact

One officer resigned citing the impact of the breach, while 50 others have gone on sick leave. Furthermore, officer and staff mental health has worsened, with some saying they are too frightened to visit friends and family. Staff association membership has also increased significantly as a direct result of the data breach

The incident contributed to the resignation of the PSNI chief constable, Simon Byrne, in September. His successor, Jon Boutcher, said the report showed “organisational failing”.

Download the full review for more information.

For similar articles, check out our Leadership channel.

Cyber Data NPCC Police Police Service Northern Ireland
Share. LinkedIn Twitter Facebook Email
James Devonshire, News Editor of the Emergency Services Times

James Devonshire

  • View LinkedIn profile

James is the News Editor at Emergency Services Times. He is primarily responsible for looking after the Daily Digest and keeping the website fresh with the latest blue light sector stories.

All articles by James >

Stay informed

Sign up for our weekly newsletter with news, views and more.

Published by
Ninteen
Quick links
  • Privacy Policy
  • Cookie policy
  • About
  • Back issues
  • Contributors
  • Contact
In assocation with
The Emergency Services Show
The Emergency Tech Show
Certifications
The Emergency Tech Show
LinkedIn Instagram
  • Privacy Policy
  • Cookie policy
  • About
  • Back issues
  • Contributors
  • Contact
© 2026 Emergency Services Times.

Type above and press Enter to search. Press Esc to cancel.

Login