Private companies are rarely fined
Either it's mostly public bodies that leak data, or private companies are only fined when we are looking.
Take a look at:
http://www.ico.gov.uk/what_we_cover/taking_action/dp_pecr.aspx#monetarypenalties
Only 2 non-public entities have been fined in the last 18 months. One of those was ACS:Law, which they really could not ignore. The other was some poor solicitor who got his laptop burgled from his house.
Then look at:
http://www.ico.gov.uk/what_we_cover/taking_action/dp_pecr.aspx#undertakings
Oh look, lots of companies have to sign the meaningless bits of paper. I suspect that:
DSG: Credit card details in a skip.
Yorkshire Building Society: Stolen laptop
Healthcare Locums Plc: Laptop sold without being wiped
Rainforest Alliance Ltd: Theft of laptop
- -would have merited fines had they been councils.
Are brown envelopes involved, old school ties, or funny handshakes?