<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The DOBlog &#187; IAIDQ</title>
	<atom:link href="http://obriend.info/tag/iaidq/feed/" rel="self" type="application/rss+xml" />
	<link>http://obriend.info</link>
	<description>Daragh O Brien on Information Quality Management &#38; other issues</description>
	<lastBuildDate>Tue, 22 May 2012 08:01:49 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Personal Data &#8211; an Asset we hold on Trust</title>
		<link>http://obriend.info/2010/01/13/personal-data-an-asset-we-hold-on-trust/</link>
		<comments>http://obriend.info/2010/01/13/personal-data-an-asset-we-hold-on-trust/#comments</comments>
		<pubDate>Wed, 13 Jan 2010 18:09:19 +0000</pubDate>
		<dc:creator>Daragh</dc:creator>
				<category><![CDATA[Business]]></category>
		<category><![CDATA[Ethics & Law of Information]]></category>
		<category><![CDATA[Information Quality]]></category>
		<category><![CDATA[Information/Data Quality Issues]]></category>
		<category><![CDATA[The Business of IQ]]></category>
		<category><![CDATA[conference]]></category>
		<category><![CDATA[IAIDQ]]></category>
		<category><![CDATA[idq2010 seminar]]></category>
		<category><![CDATA[information as an asset]]></category>
		<category><![CDATA[posmad]]></category>

		<guid isPermaLink="false">http://obriend.info/?p=507</guid>
		<description><![CDATA[There has been a bit of a scandal in Ireland with the discovery that Temple St Children&#8217;s Hospital has been retaining blood samples from children indefinitely without the consent of parents. The story broke in the Sunday Times just after Christmas and has been picked up as a discussion point on sites such as Boards.ie. [...]]]></description>
			<content:encoded><![CDATA[<p>There has been a bit of a scandal in Ireland with the discovery that Temple St Children&#8217;s Hospital has been retaining blood samples from children indefinitely without the consent of parents.</p>
<p>The story broke in the <a href="http://www.timesonline.co.uk/tol/news/world/ireland/article6982446.ece">Sunday Times just after Christmas</a> and has been picked up as a discussion point on sites such as <a href="http://www.boards.ie/vbulletin/showthread.php?t=2055792548">Boards.ie</a>.  <a href="http://www.tjmcintyre.com/2009/12/temple-street-hospital-holding-de-facto.html">TJ McIntyre</a> has also written about some of the legal issues raised by this.</p>
<p>Ultimately, at the heart of the issue is a fundamental issue of Data Protection Compliance and a failure to treat Personal Data (and Sensitive Personal Data at that) as <strong>an asset</strong> (something of value) that the Hospital held and holds <strong>on trust</strong> for the data subject. It is not the Hospital&#8217;s data. It is not the HSE&#8217;s data. It is my child&#8217;s data, and (as I&#8217;m of a certain age) probably my data and my wife&#8217;s data and my brothers&#8217; data and my sisters-in-laws&#8217; data&#8230;..</p>
<p>It&#8217;s of particular interest to me as I&#8217;m in the process of finishing off a tutorial course on Data Protection and Information Quality <a href="http://iaidq.org/main/idq-seminars-dublin2010.shtml">for a series of conferences at the end of February</a> (if you are interested in coming, use the discount code &#8220;EARLYBIRD&#8221; up to the end of January to get a whopper of a discount). So many of the issues that this raises are to the front of my mind.</p>
<p>Rather than simply write another post about Data Protection issues, I&#8217;m going to approach this from the perspective of Information as an Asset which has a readily definable Life Cycle at various points in which key decisions should be taken by responsible and accountable people to ensure that the asset continues to have value.</p>
<p>Another aspect of how I&#8217;m going to discuss this is that, after over a decade working in Information Quality and Governance, I am a firm believer in the mantra: &#8220;<strong>Just because you can doesn&#8217;t mean you should</strong>&#8220;. I&#8217;m going to show how an Asset Life Cycle perspective can help you develop some robust structures to ensure your data is of high quality and you are less likely to fall foul of Data Protection issues.</p>
<p>And for anyone who thinks that Data Protection and Data Quality are unrelated issues, I direct you to the specific wording in the heading of <a href="http://eur-lex.europa.eu/Notice.do?val=307229:cs&amp;lang=en&amp;list=307229:cs,&amp;pos=1&amp;page=1&amp;nbl=1&amp;pgs=10&amp;hwords=95/46/EC~&amp;checktexte=checkbox&amp;visu=#texte">Chapter 2, Section 1 of the Directive 95/46/EC</a>.<span id="more-507"></span></p>
<h2>The Information Asset Life Cycle</h2>
<p>Information, just like any other asset, has a life cycle through which it needs to be managed. Just because you can keep throwing files into a filing cabinet (or, in Data Protection terms, a &#8220;<a href="http://www.dataprotection.ie/docs/What_is_Manual_Data_and_what_is_a_Relevant_Filing_System/211.htm">relevant filing system</a>&#8220;) or hold it forever in electronic storage doesn&#8217;t mean you should.</p>
<div class="wp-caption alignright" style="width: 310px"><a href="http://obriend.info/wordpress/wp-content/uploads/2010/01/posmad_dp.png"><img class="    " style="margin: 1px; border: 1px solid black;" title="The Asset Life Cycle for Information (and some Key Questions)" src="http://obriend.info/wordpress/wp-content/uploads/2010/01/posmad_dp.png" alt="Diagram showing POSMAD model and some example questions which might be asked at each stage in life cycle" width="300" height="225" /></a><p class="wp-caption-text">POSMAD model (thanks to Danette McGilvray)</p></div>
<p>The key stages in the Information Asset Life Cycle are listed below, and are mapped to the 8 Data Protection Principles in the diagram opposite as well.</p>
<ul>
<li><strong>Plan</strong></li>
<li><strong>Obtain</strong></li>
<li><strong>Store and Share</strong></li>
<li><strong>Maintain</strong></li>
<li><strong>Apply</strong></li>
<li><strong>Dispose</strong></li>
</ul>
<p>The answers posed to the questions asked at each of these stages affect the ability of the organisation to meet its obligations under the Data Protection Act, as can be seen by the mapping of DP Principles to POSMAD Life Cycle stages.</p>
<p><strong>Just like any other asset, </strong>information needs to be <strong>managed</strong>.</p>
<p>When you are hiring new staff, you <strong>plan</strong> for what type of people you will need in your business. You&#8217;ll need to have <strong>strategies for obtaining</strong> those staff, planning in place for <strong>how to store them</strong> (offices, desks etc.). You will (ideally) want to<strong> maintain them</strong> (training, rewards and recognition, staff retention), and be sure you can <strong>Apply them to their job</strong> (right tools, adequate resources etc.). Inevitably, you are also going to have to have answers to the question of what you will do with your staff when you no longer need them and need to <strong>dispose </strong>of them (retirement, redundancy, etc.).</p>
<p>With Information, you need to Plan what type of data you will be capturing and why, and who you&#8217;ll share it with. You&#8217;ll need to define policies and methods for obtaining that data (e.g. standardised testing protocols such as the <a href="http://en.wikipedia.org/wiki/Dried_blood_spot_testing">Guthrie Card</a> and the structured information captured on hospital test request forms). You&#8217;ll need to plan how that data will be stored and shared so it can be found when needed, and can be readily linked to other data etc. You&#8217;ll need to have some  consideration to how you will maintain that data (e.g. keeping personal data up to date for as long as you are holding it), and you&#8217;ll need to have a clear plan and protocol for how to dispose of the data when it is no longer needed.</p>
<p>Note that in this context, disposal does not necessarily mean the destruction of the data. It could simply be a process or policy that defines when data has become <a href="http://www.dataprotection.ie/docs/1.5_What_is_excessive_information?/590.htm">&#8220;excessive</a>&#8221; and mandates the anonymising of all the data to a level suitable for statistical reporting and study but that is no longer &#8220;personal data&#8221; in the meaning of the Data Protection Acts.</p>
<p>Of course, just as you have measures that help you track and manage the effectiveness with which you are managing other assets (e.g. tracking equipment services and outage statistics for office equipment or purchase volumes for stationery and paper clips), you should ideally look to develop some metrics that help you know how well you are answering the various questions at each stage in the Information Asset Life Cycle.</p>
<p>Finally, you need to bear in mind that the Data Protection Acts now cover personal data held in formats other than electronic files. So paper based data (e.g. patient information associated with a Guthrie Card) is protected by the Data Protection Act when it is held in a &#8220;Relevant Filing System&#8221;. So your paper filing needs to bear up to the scrutiny of the Information Asset Life Cycle</p>
<p><strong>The Temple Street Situation</strong></p>
<p>What appears to have happened in the Temple St situation is that there was a failure to properly plan for the management of a key information asset.</p>
<ul>
<li>While there was a plan to provide a national scheme for testing, some key questions were not asked at the planning stage. As a result, the answers are not necessarily forthcoming to parents when faced with the test.
<div class="wp-caption alignright" style="width: 160px"><a href="http://obriend.info/wordpress/wp-content/uploads/2010/01/aldi_good_dp_notice.jpg"><img class="   " style="margin: 2px; border: 1px solid black;" title="Example of a good Data Protection Notice" src="http://obriend.info/wordpress/wp-content/uploads/2010/01/aldi_good_dp_notice.jpg" alt="A Data Protection notice from Aldi showing the reasons for which CCTV is being captured (its use), who it will be disclosed to, and who the Data Controller is and how to contact them." width="150" height="115" /></a><p class="wp-caption-text">Good Data Protection requires Planning</p></div>
<p>For example, parents do not always know that the test is being done in Temple St. Certainly, parents were not aware that the data was to be held indefinitely. Ultimately, if Aldi (see image) are able to tell me what my personal data (CCTV images) is to be used for and who I can contact if I have a query, then the HSE and its sub-division and constituent hospitals should have been able to do the same.</li>
<li>There appears to have been no thought given to the conditions or criteria for reasonable disposal (either outright disposal or anonymising) of the data. This gave rise to a situation where a Data Protection breach was inevitable.</li>
<li>Parents (acting as legal guardians of their children) were not given the opportunity to opt in or opt out of being part of further scientific research using the blood samples taken from children.</li>
<li>Likewise, children and adults (and the DPA does not require someone to be an adult to be protected) who have data on file in Temple St. do not appear to have a clear mechanism available whereby they can request that their data be blocked from use in processes other than that for which it was initially provided. (I&#8217;ve looked at the list of Data Controllers and Data Processors registered with the Data Protection Commissioner and Temple St. <span style="text-decoration: line-through;">doesn&#8217;t seem to be listed in its own right</span> is listed as the <a href="http://www.dataprotection.ie/ViewDoc.asp?fn=/documents/register/display.asp?ID=0743/A">&#8220;Children&#8217;s University Hospital</a>&#8221; and it&#8217;s not immediately clear from the register whether<a href="https://www.dataprotection.ie/ViewDoc.asp?fn=/documents/register/default.asp?KW=health_service_executive"> HSE Dublin North East or Dublin Mid-Leinster</a> covers Temple St.) <em>[Thanks to Hugh Jones, the lead trainer on the <a href="http://ics.ie/dp">Irish Computer Society's Data Protection</a> course for the correction]</em></li>
<li>The personal data attached to the blood samples will, in a large number of cases, be woefully out of date and inaccurate &#8211; in itself a breach of the Data Protection Act &#8211; as there is likely no process to keep that data up to date. If the data is not being maintained, it is not needed and is excessive to the stated purposes for which it is being used. If the personal data (e.g. name and address) on samples that are 26 years old is being used for specific purposes, then one would suggest that any action taken on foot of such analysis is likely to be wrong.</li>
</ul>
<p>A number of commenters on Boards.ie and elswhere have commented to the effect that the personal data could be excised out when the blood test data or samples were being used. That misses the fundamental point. There is a point in time beyond which having my daughter&#8217;s name and address cease to have an actionable value in any analysis of blood tests taken from her. If you don&#8217;t need it, then the data you are holding is excessive (in the meaning of the DPA and the EU Data Protection Directives) and should be <strong>permenantly removed. </strong>Aggregation of samples into clusters based on geographic region would likely allow for data sets suitable for scientific and statistical analysis.</p>
<p>But then we are right back to the <strong>Plan</strong> stage of the <strong>POSMAD </strong>model. What was intended to be done with this data? What are the stated purposes for which it is being captured? At what point does the data become excessive for those purposes? What is the plan to dispose of the excessive data (while retaining data appropriate to the stated purposes?</p>
<h2>Conclusion</h2>
<p>Information is an Asset. It needs to be managed and protected as such. Adopting an Asset Life Cycle approach to planning, with your Data Protection Duties forming the basis for your Key Questions can help your organisation properly plan to manage your Asset in a compliant manner. Furthermore, the Data Protection rules are enablers rather than restrictions as they provide a clear framework within which you can manage the expectations and worries of Data Subjects so that you get better up-take and happy and informed consent to you having the relevant data for as long as you plan to need it.</p>
<p>A key message coming from &#8220;DPA-Aware&#8221; bloggers affected by this issue is that if they had been asked if they minded anonymised data being held for research purposes they would not necessarily have objected. Investing time in planning and in valuing the Personal Data Asset which the HSE holds on Trust for the affected Data Subjects (they don&#8217;t own it) would have avoided the negative reaction and push back from rightly concerned parents and Civil Rights groups.</p>
<p><strong>Want to learn practical approaches to avoiding this type of boo boo in your organisation? Why not come along to my tutorial at the <a href="http://iaidq.org/main/idq-seminars-dublin2010.shtml">2010 IDQ Seminar Series event in Dublin on the 22nd and 23rd of February</a>. Use the code &#8220;EarlyBird&#8221; before Jan 31st to get big savings on the event. If you are interested in just my tutorial, use the code &#8220;DoBlog&#8221; when registering.</strong></p>
]]></content:encoded>
			<wfw:commentRss>http://obriend.info/2010/01/13/personal-data-an-asset-we-hold-on-trust/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Cripes, the blog has been name-checked by my publisher&#8230;</title>
		<link>http://obriend.info/2008/04/30/right-the-blog-has-been-name-checked-by-my-publisher/</link>
		<comments>http://obriend.info/2008/04/30/right-the-blog-has-been-name-checked-by-my-publisher/#comments</comments>
		<pubDate>Wed, 30 Apr 2008 17:02:20 +0000</pubDate>
		<dc:creator>Daragh</dc:creator>
				<category><![CDATA[IAIDQ]]></category>
		<category><![CDATA[Information Quality]]></category>
		<category><![CDATA[Learning by Teaching]]></category>
		<category><![CDATA[The Business of IQ]]></category>
		<category><![CDATA[ark group]]></category>
		<category><![CDATA[data quality]]></category>
		<category><![CDATA[industry report]]></category>

		<guid isPermaLink="false">http://obriend.info/?p=244</guid>
		<description><![CDATA[TwentyMajor isn&#8217;t the only blogger in the pay of a publisher (I&#8217;m conveniently ignoring Grandad and the others as Irish bloggers are too darned fond of publishing these days. If you want to know who all the Irish bloggers with publishers are then Damien Mulley probably has a list)! I recently wrote an industry report [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.twentymajor.net">TwentyMajor </a>isn&#8217;t the only blogger in the pay of a publisher (I&#8217;m conveniently ignoring <a href="http://www.headrambles.com">Grandad</a> and the others as Irish bloggers are too darned fond of publishing these days. If you want to know who all the Irish bloggers with publishers are then <a href="http://www.mulley.net">Damien Mulley probably has a list</a>)! </p>
<p>I recently wrote an industry report for a<a href="http://www.ark-group.com"> UK publisher</a> on <a href="http://www.iaidq.org">Information Quality </a>strategy. The publisher then swapped all my references to Information Quality to references to Data Quality as that was their &#8216;brand&#8217; on the publication. I prefer the term Information Quality for a variety of reasons. </p>
<p>As this runs to over 100 pages of A4 it has a lot of words in it. My fingers were tired after typing it. Unlike Twenty&#8217;s book, I&#8217;ve got pictures in mine (not those kind of pictures, unfortunately, but nice diagrams of concepts related to strategy and Information Quality. If you want the other kind of pictures, <a href="http://www.iqtrainwrecks.com/2008/02/06/what-a-nice-model-of-furniture/">you&#8217;ll need to go here</a>.)</p>
<p>In the marketing blurb and bumph that I put together for the publisher I mentioned this blog and the <a href="http://www.iqtrainwrecks.com">IQTrainwrecks.com</a> blog. Imagine my surprise when I opened a sales email from the publisher today (yes, they included me on the sales mailing list&#8230; the irony is not lost on me&#8230; information quality, author, not likely to buy my own report when I&#8217;ve got the four drafts of it on the lappytop here).</p>
<p>So, for the next few weeks I&#8217;ll have to look all serious and proper in a &#8216;knowing what I&#8217;m talking about&#8217; kind of way to encourage people to by my report. (I had toyed with some variation on booky-wook but it just doesn&#8217;t work &#8211; reporty-wort&#8230; no thanks, I don&#8217;t want warts).</p>
<p>So things I&#8217;ll have to refrain from doing include:</p>
<ol>
<li>Engaging in pointless satirical attacks on the government or businesses just for a laugh, unless I can find an Information Quality angle</li>
<li>Talking too loudly about politics</li>
<li>Giving out about rural/urban digital divides in Ireland</li>
<li>Parsing and reformatting the arguments of leading Irish opinion writers to expose the absence of logic or argument therein.</li>
<li>Engaging in socio-economic analysis of the fate of highstreet purveyors of dirty water parading as coffee.</li>
<li>Swearing</li>
</ol>
<p>That last one is a f***ing pain in the a**. </p>
<p>If any of you are interested in buying my &#8216;umble little report, it is available f<a href="http://maxemailode.emailcenteruk.net/action/?v=%2Fc%2Fs%2F4236409%2Ff%2F297579">or sale from Ark Group via this link.. </a>. This link will make them think you got the email they sent to me, and you can get a discount, getting the yoke for £202.50 including postage and packing (normally £345+£7.50p&#038;p. (Or click <a href="http://http://www.ark-group.com/home/Publications/Publication.asp?pubid={5A3BE198-A49B-4EA7-AF09-19B44EEF9AEA}">here</a> to avoid the email campaign software&#8230;)</p>
<p>And if any of you would like to see the content that I&#8217;d have preferred the link in the sales person&#8217;s to send you to (coz it highlights the need for good quality management of your information quality) then just click away here to go to<a href="http://www.iqtrainwrecks.com"> IQTrainwrecks.com </a></p>
<p>Thanks to <a href="http://www.infoimpact.com">Larry</a>, <a href="http://www.dataqualitysolutions.com">Tom</a>, <a href="http://gfalls.com">Danette</a>, the wifey for their support while I was writing the report and Stephanie and Vanessa at<a href="http://www.ark-group.co.uk"> Ark Group</a> for their encouragement to get it finished by the deadline.</p>
]]></content:encoded>
			<wfw:commentRss>http://obriend.info/2008/04/30/right-the-blog-has-been-name-checked-by-my-publisher/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Final post and update on IBTS issues</title>
		<link>http://obriend.info/2008/02/27/final-post-and-update-on-ibts-issues/</link>
		<comments>http://obriend.info/2008/02/27/final-post-and-update-on-ibts-issues/#comments</comments>
		<pubDate>Wed, 27 Feb 2008 15:32:08 +0000</pubDate>
		<dc:creator>Daragh</dc:creator>
				<category><![CDATA[Ethics & Law of Information]]></category>
		<category><![CDATA[Information Quality]]></category>
		<category><![CDATA[changing-models-of-business]]></category>
		<category><![CDATA[Customer Service]]></category>
		<category><![CDATA[digital_data]]></category>
		<category><![CDATA[Ethics-&-Law-of-Information]]></category>
		<category><![CDATA[IAIDQ]]></category>
		<category><![CDATA[Information/Data Quality Issues]]></category>
		<category><![CDATA[international-association-for-information-and-data-qual]]></category>

		<guid isPermaLink="false">http://obriend.info/2008/02/27/final-post-and-update-on-ibts-issues/</guid>
		<description><![CDATA[OK. This is (hopefully) my final post on the IBTS issues. I may post their response to my queries about why I received a letter and why my data was in New York. I may not. So here we go.. First off, courtesy of a source who enquired about the investigation, the Data Protection Commissioner [...]]]></description>
			<content:encoded><![CDATA[<p>OK. This is (hopefully) my final post on the IBTS issues. I may post their response to my queries about why I received a letter and why my data was in New York. I may not. So here we go..</p>
<p>First off, courtesy of a source who enquired about the investigation, the Data Protection Commissioner has finished their investigation and the IBTS seems to have done everything as correct as they could, in the eyes of the DPC with regard to managing risk and tending to the security of the data. The issue of why the data was not anonymised seems to be dealt with on the grounds that the fields with personal data could not be isolated in the log files. The DPC finding was that the data provided was not excessive in the circumstances. </p>
<p><strong>[Update: Here's a <a href="http://www.dataprotection.ie/viewdoc.asp?DocID=685&#038;m=f">link to the Data Protection Commissioner's report</a>. ]</strong></p>
<p>This suggests to me that the log files effectively amounted to long strings of text which would have needed to be parsed to extract given name/family name/telephone number/address details, or else the fields in the log tables are named strangely and unintuitively (not as uncommon as you might think) and the IBTS does not have a mapping of the fields to the data that they contain.</p>
<p>In either case, parsing software is not <em>that </em>expensive (in the grand scheme of things) and a wide array of data quality tools provide very powerful parsing capabilities at moderate costs. I think of <a href="http://www.informatica.com">Informatica&#8217;s</a> Data Quality Workbench (a product originally developed in Ireland), <a href="http://www.trilliumsoftware.com">Trillium Software&#8217;s </a>offerings or the nice tools from <a href="http://www.datanomic.com">Datanomic</a>. </p>
<p>Many of these tools (or others from similar vendors) can also help identify the type of data in fields so that organisations can identify what information they have where in their systems. <em>&#8220;Ah, field x_system_operator_label actually has names in it!&#8230; now what?&#8221;</em>. </p>
<p>If the log files effectively contained totally unintelligible data, one would need to ask what the value of it for testing would be, unless the project involved the parsing of this data in some way to make it &#8216;useable&#8217;? As such, one must assume that there was some inherent structure/pattern to the data that information quality tools would be able to interpret. </p>
<p>Given that according to the DPC the NYBC were selected after a public tender process to provide a <strong>data extraction tool</strong> this would suggest that there was some structure to the data that could be interpreted. It also (for me) raises the question as to whether any data had been extracted in a structured format from the log files?</p>
<p>Also the &#8220;<em>the data is secure because we couldn&#8217;t figure out where it was in the file so no-one else will</em>&#8221; defence is not the strongest plank to stand on. Using any of the tools described above (or similar ones that exist in the open source space, or can be assembled from tools such as Python or TCL/TK or put together in JAVA) it would be possible to parse out key data from a string of text without a lot of &#8216;technical&#8217; expertise (Ok, if you are &#8216;home rolling&#8217; a solution using TCL or Python you&#8217;d need to be up to speed on techie things, but not that much).  Some context data might be needed (such as a list of possible firstnames and a list of lastnames, but that type of data is relatively easy to put together. Of course, it would need to be considered worth the effort and the laptop itself was probably worth more than irish data would be to a NYC criminal.</p>
<p>The response from the DPC that I&#8217;ve seen doesn&#8217;t address the question of whether NYBC failed to act in a manner consistent with their duty of care by letting the data out of a controlled environment (it looks like there was a near blind reliance on the security of the encryption). However, that is more a fault of the NYBC than the IBTS&#8230; I suspect more attention will be paid to physical control of data issues in future. While the EU model contract arrangements regarding encryption are all well and good, sometimes it serves to exceed the minimum standards set.</p>
<p>The other part of this post relates to the letter template that Fitz kindly offered to put together for visitors here. Fitz lives over at http://tugofwar.spaces.live.com if anyone is interested. I&#8217;ve gussied up the text he posted elsewhere on this site into a word doc for download ==> <a href='http://obriend.info/wordpress/wp-content/uploads/2008/02/fitz_letter.doc' title='Template Letter'>Template Letter</a>. </p>
<p><a href="http://tugofwar.spaces.live.com">Fitz </a>invites people to take this letter as a starting point and edit it as they see fit. My suggestion is to edit it to reflect an accurate statement of your situation. For example&#8230; if you haven&#8217;t received a letter from the IBTS then just jump to the end and request a copy of your personal data from the IBTS (it will cost you a few quid to get it), if you haven&#8217;t phoned their help-line don&#8217;t mention it in the letter etc&#8230;. keep it real to you rather than looking like a totally formulaic letter.</p>
<p>On a lighter note, a friend of mine has received multiple letters from the Road Safety Authority telling him he&#8217;s missed his driving test and will now forfeit his fee. Thing is, he passed his test three years ago. Which begs the question (apart from the question of why they are sending him letters now)&#8230; why the RSA still has his application details given that data should only be retained for as long as it is required for the stated purpose for which it was collected? And why have the RSA failed to maintain the information accurately (it is wrong in at least one significant way).</p>
]]></content:encoded>
			<wfw:commentRss>http://obriend.info/2008/02/27/final-post-and-update-on-ibts-issues/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Information Quality in 2008&#8230;</title>
		<link>http://obriend.info/2007/12/16/information-quality-in-2008/</link>
		<comments>http://obriend.info/2007/12/16/information-quality-in-2008/#comments</comments>
		<pubDate>Sun, 16 Dec 2007 19:10:39 +0000</pubDate>
		<dc:creator>Daragh</dc:creator>
				<category><![CDATA[IAIDQ]]></category>
		<category><![CDATA[Information Quality]]></category>
		<category><![CDATA[Other Thoughts]]></category>

		<guid isPermaLink="false">http://obriend.info/2007/12/16/information-quality-in-2008/</guid>
		<description><![CDATA[So yet another year draws to a close. Usually around this time of year I try to take a few hours to review how things went, what worked and what still needs to be worked on in the coming year. In most cases that is very personal appraisal of whether I had a &#8216;quality&#8217; year [...]]]></description>
			<content:encoded><![CDATA[<p>So yet another year draws to a close. Usually around this time of year I try to take a few hours to review how things went, what worked and what still needs to be worked on in the coming year. In most cases that is very personal appraisal of whether I had a &#8216;quality&#8217; year &#8211; did I meet or exceed my own expectations of myself (and I&#8217;m a bugger for trying to achieve too much too quickly).</p>
<p>Vincent McBurney&#8217;s Blog Carnival of Data Quality has invited submissions on the theme &#8220;Happy New Year&#8221;, so I thought I&#8217;d take a look back over 2007 and see what emerging trends or movements might lead to a Happy New Year for Information Quality people in 2008.</p>
<p><strong>Hitting Mainstream</strong><br />
In 2007 Information Quality issues began to hit the mainstream. It isn&#8217;t quite there yet but 2007 saw the introduction of taught Master&#8217;s degree programmes in Information Quality in the University of Arkansas at Little Rock and there have been similar developments mooted in at least one European University. If educators think they can run viable courses that will make money then we are moving out of the niche towards being seen asa a mainstream discipline of importance to business.</p>
<p>The <a href="http://www.iaidq.org">IAIDQ&#8217;s</a> IDQ Conference in Las Vegas was a significant success, with numbers up on 2006 and a wider mix of attendees. I did an unofficial straw poll of people at that conference and the consensus from the delegates and other speakers was that there were more &#8216;Business&#8217; people at the conference than previous Information Quality conferences they&#8217;d attended, a trend that has been growing in recent years. The same was true at the European Data Management and Information Quality Conference(s) in London in November. Numbers were up on previous years. There were more &#8216;Business&#8217; people in the mix, up even on last year. &#8211; this of course is all based on my unofficial straw poll and could be wrong.</p>
<p>The fact that news stories abounded in 2007 about poor quality information and the initial short sharp shock of Compliance and SOx etc. has started to give rise to questions of how to make Compliance a value-adding function (hint &#8211; It&#8217;s the INFORMATION people) may help, but the influence of bloggers such as Vincent, and the adoption of blogs as communications tools by vendors and by Professional Associations such as the IAIDQ is probably as big if not more of an influence IMHO.</p>
<p>Also, and I&#8217;m not sure if this is a valid benchmark, I&#8217;ve started turning down offers to present at conferences and write articles for people on IQ issues. because a) I&#8217;m too busy with my day job and with the <a href="http://www.iaidq.org">IAIDQ</a> (oh yeah&#8230; and with my family) and b)there are more opportunities arising than I&#8217;d ever have time to take on.</p>
<p>Unfortunately, much of the &#8216;mainstream&#8217; coverage of Information Quality issues either views it either as a &#8216;technology issue&#8217; (most of my articles in Irish trade magazines are stuck in the &#8216;Technology&#8217; section) or fails to engage with the Information Quality aspects of the story fully. The objective of IQTrainwrecks.com is to try to highlight the Information Quality aspects of things that get into the media. </p>
<p>What would make 2008 a Happy Year for me would be to have more people contributing to <a href="http://www.iqtrainwrecks.com">IQ Trainwrecks</a> but also to have some happy path stories to tell and also for there to be better analysis of these issues in the media.</p>
<p><strong>Community Building</strong><br />
There is a strong sense of &#8216;community&#8217; building amongst many of the IQ practitioners I speak with. That has been one of the key goals of the IAIDQ in 2007 &#8211; to try and get that sense of Community triggered to link like-minded-people and help them learn from each other. This has started to come together. However it isn&#8217;t happening as quickly as I&#8217;d like, because I have a shopping list of things I want yesterday! </p>
<p>What would make 2008 a happy new year for me would be for us to maintain the momentum we&#8217;ve developed in connecting the Community of Information/Data Quality professionals and researchers. Within the IAIDQ I&#8217;d like us to get better at building those connections (we&#8217;ve become good&#8230; we need to keep improving).</p>
<p>I&#8217;d like to see more people making contact via blogs like Vincent&#8217;s or mine or through other social networking facilities so we can build the Community of Like Minded people all focussing on the importance of Information Quality and sharing skills, tips, tools, tricks and know how about how to make it better.  I&#8217;d be really happy at the end of 2008 a few more people make the transition from thinking they are the &#8216;lonely voice&#8217; in their organisation to realising they are part of a very large choir that is singing an important tune.</p>
<p><strong>Role Models for Success</strong><br />
2007 saw a few role models for success in Information Quality execution emerging. All of these had similar stories and similar elements that made up their winning plan. It made a change from previous years when people seemed afraid to share &#8211; perhaps because it is so sensitive a subject (for example admitting you have an IQ problem could amount to self-incrimination in some industries)? In the absence of these sort of &#8216;role models&#8217; it is difficult to sell the message of data quality as it can come across as theoretical.</p>
<p>I&#8217;d be very happy at the end of 2008 if we had a few more role models of successful application of principles and tools &#8211; not presented by vendors (no offence to vendors) but emerging from within the organisations themselves. I&#8217;d be very happy if we had some of these success stories analysed to highlight the common Key Success Factors that they share. </p>
<p><strong>Break down barriers</strong><br />
2007 saw a lot of bridges being built within the Information Quality Community. 2006 ended with a veritable bloodbath of mergers and acquisitions amongst software vendors. 2007 had a development of networks and mutual support between the IAIDQ (as the leading professional organisation for IQ/DQ professionals) and MIT&#8217;s IQ Programme. In many Businesses the barriers that have prevented the IQ agenda from being pursued are also being overcome for a variety of reasons. </p>
<p>2008 should be the year to capitalise on this as we near a signicificant tipping point. I&#8217;d like to see 2008 being the year were organisations realise that they need to push past the politics of Information Quality to actually tackle the root causes. Tom Redman is right &#8211; the politics of this stuff can be brutal because to solve the problems you need to change thinking and remould governance all of which is a dangerous threat to traditional power bases. The traditional divide between &#8220;Business&#8221; and &#8220;IT&#8221; is increasingly anachronistic, particularly when we are dealing with information/data within systems. If we can make that conceptual leap in 2008 to the point were everyone is inside the same tent peeing out&#8230; that would be a good year.</p>
<p><strong>Respect</strong><br />
For most of my professional life I&#8217;ve been the crazy man in the corner telling everyone there was an elephant in the room that no-one else seemed able to see. It was a challenge to get the issues taken seriously. Even now I have one or two managers I deal with who still don&#8217;t get it. However most others I deal with do get it. They just need to be told what they have. 2007 seems to be the year that the lights started to go on about the importance of the Information Asset. Up to now, people spoke about it but didn&#8217;t &#8216;feel&#8217; it&#8230; but now I don&#8217;t have trouble getting my Dept Head to think in terms of root causes, information flows etc. </p>
<p>2008 is the year of Respect for the IQ Practitioner&#8230;. A Happy New Year for me would be to finish 2008 with appropriate credibility and respect for the profession. Having role models to point to will help, but also having certification and accreditation so people can define their skillsets as &#8216;Information Quality&#8217; skill sets (and so chancers and snake-oil peddlers can be weeded out).</p>
<p><strong>Conclusion</strong><br />
2007 saw discussion of Information Quality start to hit the mainstream and the level of interest in the field is growing significantly. For 2008 to be a Happy New Year we need to build on this, develop our Community of practitioners and researchers and then work to break down barriers within our organisations that are preventing the resolution of problems with information quality. If, as a community of Information/Data Quality people we can achieve that (and the IAIDQ is dedicated to that mission) and in doing so raise our standards and achieve serious credibility as a key management function in organisations and as a professional discipline then 2008 will have been a very Happy New Year.</p>
<p><a href="http://www.iqtrainwrecks.com/2007/11/13/ahem-information-quality-problem-with-the-trains/">2008 already has its first Information Quality problem though</a>&#8230;. looks like we&#8217;ve got a bit of work to do to make it a Happy New Year.</p>
]]></content:encoded>
			<wfw:commentRss>http://obriend.info/2007/12/16/information-quality-in-2008/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>The evolution of Information Quality</title>
		<link>http://obriend.info/2007/08/16/the-evolution-of-information-quality/</link>
		<comments>http://obriend.info/2007/08/16/the-evolution-of-information-quality/#comments</comments>
		<pubDate>Thu, 16 Aug 2007 12:39:25 +0000</pubDate>
		<dc:creator>Daragh</dc:creator>
				<category><![CDATA[IAIDQ]]></category>
		<category><![CDATA[Information Quality]]></category>
		<category><![CDATA[The Business of IQ]]></category>
		<category><![CDATA[The-Business-of-IQ]]></category>

		<guid isPermaLink="false">http://obriend.info/2007/08/16/the-evolution-of-information-quality/</guid>
		<description><![CDATA[I was googling today (or doing some googlage) for blogs that deal with Information and Data Quality topics. Needless to say yours truly did appear reasonably highly the search results. One post that I came across that really made me think a bit was this one from Andrew Brooks, currently a Senior Consultant with Cap [...]]]></description>
			<content:encoded><![CDATA[<p>I was googling today (or doing some googlage) for blogs that deal with Information and Data Quality topics. Needless to say yours truly did appear reasonably highly the search results. One post that I came across that really made me think <a href="http://www.participo.com/cgi-bin/mt-tb.cgi/1007">a bit was this one</a> from Andrew Brooks, currently a Senior Consultant with Cap Gemini in the UK.</p>
<p>In his post he asks if we are at a &#8216;tipping point&#8217; for Information Quality where </p>
<blockquote><p>organisations are starting to move from ‘unconscious incompetence’ to ’conscious incompetence’ and see the need to spend money in this area (hence the growing number of vendors and consultancies) which are feeding off the back of this.</p></blockquote>
<p>He mentions that he gets calls from recruiters looking for Data Quality Management roles to be filled and wonders when we will reach the stage of &#8216;Concious Competence&#8217;.</p>
<p>My personal feeling is that we are at a very large tipping point. Those organisations that truly make the leap will gain significant advantage over those that don&#8217;t. Those that make the leap half-heartedly by putting a few job titles and tools in the mix with no commitment or plan will limp along, but the pressure of competing with lean and efficient opposition (those who jump in wholeheartedly) will squeeze on these organisations. Those that don&#8217;t leap at all will fall foul of Darwinian evolution in the business context.</p>
<p>The danger that we face at this juncture is that when the ship is sinking any bandwagon looks like a lifeboat. The risk that we face is that we will not have learned the lessons of the CRM adoption age when organisations bought &#8216;CRM&#8217; (ie software) but didn&#8217;t realise the nature of the process and culture changes that were required to successfully improve the management of Customer Relationships. Tools and job titles do not a success make.</p>
<p>The same was true of Quality management in manufacturing. As Joseph Juran said:</p>
<blockquote><p>&#8220;They thought they could make the right speeches, establish broad goals, and leave everything else to subordinates… They didn’t realize that fixing quality meant fixing whole companies, a task that cannot be delegated.”</p></blockquote>
<p>So, what can be done? </p>
<p>The <a href="http://www.iaidq.org">International Association for Information and Data Quality</a> was founded in 2004 by Tom Redman and Larry English (both referenced in Mr Brook&#8217;s article) to promote and develop best practices and professionalism in the field of Information and Data Quality. </p>
<p>As a vendor neutral organisation part of the Association&#8217;s mission is to cut through the hype and sales pitches to nail down, clarify and refine the core fundamental principles of Information Quality Management and to support Information/Data Quality professionals (I use the terms interchangeably, some people don&#8217;t&#8230;) in developing and certifying their skills so that (for example) the recruiter looking for a skilled Data Quality Manager has some form of indicator as to the quality of the resource being evaluated.</p>
<p>The emergence of such an organisations and the work that is being done to develop formal vendor independent certification and accreditation evidences the emergence of the &#8216;early adopters&#8217; of the &#8216;Concious committment&#8217; that Mr. Brooks writes about. As an Information Quality professional I am concious that there is a lot of snake-oil swilling around the market, but also a lot of gems of wisdom. I am committed to developing my profession and developing the professional standards of my profession (vocation might be another word!).</p>
<p>Having a rallying point where interested parties can share and develop sound practices and techniques will possibly accelerate the mainstreaming of the Concious Committment&#8230; IQ/DQ professionals (and researchers&#8230; must&#8217;t forget our colleagues in academia) need no longer be isolated or reinvent the wheel on their own.</p>
<p>Let me know what you think&#8230;.</p>
]]></content:encoded>
			<wfw:commentRss>http://obriend.info/2007/08/16/the-evolution-of-information-quality/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Conferences and me for the end of 2007&#8230;</title>
		<link>http://obriend.info/2007/07/27/conferences-and-me-for-the-end-of-2007/</link>
		<comments>http://obriend.info/2007/07/27/conferences-and-me-for-the-end-of-2007/#comments</comments>
		<pubDate>Fri, 27 Jul 2007 21:54:58 +0000</pubDate>
		<dc:creator>Daragh</dc:creator>
				<category><![CDATA[IAIDQ]]></category>
		<category><![CDATA[Information Quality]]></category>
		<category><![CDATA[Information/Data Quality Issues]]></category>
		<category><![CDATA[Learning by Teaching]]></category>
		<category><![CDATA[Other Thoughts]]></category>
		<category><![CDATA[The Business of IQ]]></category>
		<category><![CDATA[Learning-by-Teaching]]></category>
		<category><![CDATA[The-Business-of-IQ]]></category>

		<guid isPermaLink="false">http://obriend.info/2007/07/27/conferences-and-me-for-the-end-of-2007/</guid>
		<description><![CDATA[Conference season is upon us in the Information Quality Community&#8230; At the end of September I&#8217;m off to Las Vegas to deliver a presentation at the IAIDQ&#8217;s North American conference the IDQ 2007 Conference. At the end of October I&#8217;m off to sunny London for the IRMUK Data Management and Information Quality Conferences. This will [...]]]></description>
			<content:encoded><![CDATA[<p>Conference season is upon us in the Information Quality Community&#8230; </p>
<p>At the end of September I&#8217;m off to Las Vegas to deliver a presentation at the <a href="http://www.iaidq.org">IAIDQ&#8217;s</a> North American conference the <a href="http://www.idq-conference.com">IDQ 2007 Conference</a>. </p>
<p>At the end of October I&#8217;m off to sunny London for the <a href="http://www.irmuk.co.uk/dm2007/">IRMUK Data Management and Information Quality Conferences</a>. This will be my sixth year at this conference and my fourth as a presenter. This year I hit the &#8216;big leagues&#8217; with a 3 hour tutorial on some of the legal aspects of Information Quality, going head to head with <a href="http://www.infoimpact.com/">Larry English</a> (amongst others)on the time table.</p>
<p>Then in November the <a href="http://www.iqnetwork.org">Irish CoP of the IAIDQ, the IQ Network </a>will be hosting our IQ Forum&#8230; we&#8217;re planning it to co-incide with World Quality Day on the 8th of November to tie in with some <a href="http://www.iaidq.org">IAIDQ </a>events that will be taking place world wide.</p>
<p>Who knows, maybe I&#8217;ll meet somebody from Dell at one of those conferences who might be able to fix my <a href="http://obriend.info/category/dell-hell">laptop problem </a>before Christmas. <img src='http://obriend.info/wordpress/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /><br />
That would be nice.</p>
]]></content:encoded>
			<wfw:commentRss>http://obriend.info/2007/07/27/conferences-and-me-for-the-end-of-2007/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

