Request ID: FOI-0991-2223 Date published: 30 August 2022
You asked
Hi there
I am ____ conducting some research regarding GDPR and how organisations are managing the demand of FOI, DSARs and so on.
Under the Freedom of Information Act 2000. I request the following information:
1. How many requests come in per month for the following;
• FOI’s
• Employment Cases / furlough
• Right To Work Requests
• Court Disclosures
• Police / Criminal Cases
• Republished Meetings
• Any other documents that require redaction before publication
2. What tools do you use to undertake redaction?
3. What company do you use for redaction?
4. What file conversion tools do you use?
5. How many departments are involved in redacting information?
6. How many staff members are redacting documents in your organisation? (percentage)
7. How long does a one-page document take to redact in your organisation?
8. A list of issues your organisation has received with GDPR compliance
9. A list of issues your organisation has had with duplication of files and emails
10. How do you currently mitigate risk?
11. Does your organisation have a redaction policy?
12. How do you share the redacted materials with the subject?
- is this printed, emailed or downloaded?
13. Has your organisation received a penalty in breach of GDPR within the last 24 months?
14. A list of GDPR breaches that have taken place in your organisation
15. What cost has your organisation had to pay for breaching GDPR practice?
16. Do you use external agencies or shared services to support this process?
17. Do you see the size of your information governance or data protection department growing, as the number of FOI’s/ DSARs grow?
18. How much has your organisation spent on redaction in the last 12 months?
- this can include, the cost of staff / systems / tools / IT / Resources / External teams or agencies
Thank you again for helping me in my research. I appreciate your time.
Thank you
We answered
TfL Ref: 0991-2223
Thank you for your request received by us on 22 July and following clarification, 4 August 2022 asking for information about Human Resources, the handling of Freedom of Information and Subject Access Requests and General Data Protection Regulation (GDPR) compliance to assist with your research regarding these matters.
Your request has been considered in accordance with the requirements of the Freedom of Information Act and our information access policy. You asked:
1. How many requests come in per month for the following; · FOI’s · Employment Cases / furlough · Right To Work Requests · Court Disclosures · Police / Criminal Cases · Republished Meetings · Any other documents that require redaction before publication Please provide me with the information between April 2021 till April 2022 2. What tools do you use to undertake redaction? 3. What company do you use for redaction? 4. What file conversion tools do you use? 5. How many departments are involved in redacting information? 6. How many staff members are redacting documents in your organisation? (percentage) 7. How long does a one-page document take to redact in your organisation? 8. A list of issues your organisation has received with GDPR compliance 9. A list of issues your organisation has had with duplication of files and emails 10. How do you currently mitigate risk? 11. Does your organisation have a redaction policy? 12. How do you share the redacted materials with the subject? - is this printed, emailed or downloaded? 13. Has your organisation received a penalty in breach of GDPR within the last 24 months? 14. A list of GDPR breaches that have taken place in your organisation 15. What cost has your organisation had to pay for breaching GDPR practice? 16. Do you use external agencies or shared services to support this process? 17. Do you see the size of your information governance or data protection department growing, as the number of FOI’s/ DSARs grow? 18. How much has your organisation spent on redaction in the last 12 months? - this can include, the cost of staff / systems / tools / IT / Resources / External teams or agencies
Unfortunately, to provide the information in the granular detail you have requested would exceed the ‘appropriate limit’ of £450 set by the Freedom of Information (Appropriate Limit and Fees) Regulations 2004.
Under section 12 of the FOI Act, we are not obliged to comply with a request if we estimate that the cost of determining whether we hold the information, locating and retrieving it and extracting it from other information would exceed the appropriate limit. This is calculated at £25 per hour for every hour spent on the activities described.
To help bring the cost of responding to your request within the £450 limit, you may wish to consider narrowing its scope so that we can more easily locate, retrieve and extract the information you are seeking. If you want to refine your request or make a Freedom of Information Act request in future, please bear in mind that the Freedom of Information Act allows you to request recorded information held by us. You should identify the information that you want as clearly and concisely as you can, specifying the types of document that you are looking for. You might also consider limiting your request to a narrower period of time.
Although your request can take the form of a question, rather than a request for specific documents, we do not have to answer your question if it would require the creation of new information or the provision of a judgement, explanation, advice or opinion that was not already recorded at the time of your request.
Please note that we will not be taking further action until we receive your revised request.
In the meantime, if you have any queries or would like to discuss your request, please do not hesitate to contact me.
Please see the attached information sheet for details of your right to appeal as well as information on copyright and what to do if you would like to re-use any of the information we have disclosed.
Yours sincerely
Jasmine Howard FOI Case Officer FOI Case Management Team General Counsel Transport for London