Data security - external info

  • Not sure if this is really the best place to ask this question but am struggling to get the info I need.

    My company runs a 'Bureau' service where we provide payroll services to multiple different companies. Currently we have a dedicated database for each external client. It is being considered that we move to a single database. Does anyone have any idea where I can find information about the legal implications involved in this. For example the need to keep company data seperate, the controls that would need to be in place etc.

    Any help would be great.

  • really, really, really bad idea.

    [font="Comic Sans MS"]The GrumpyOldDBA[/font]
    www.grumpyolddba.co.uk
    http://sqlblogcasts.com/blogs/grumpyolddba/

  • I know. I can think of several reasons why it gives me the shivers.

    1. Contamination of data.

    2. Hard to DR, backup individual data sets.

    3. Users updating the wrong data.

    4. Security open to mistakes.

    But are there any laws I can use to stop this happening before my job becomes untenable !

Viewing 3 posts - 1 through 2 (of 2 total)

You must be logged in to reply to this topic. Login to reply