Capita given penalty £14m over cyberattack despite urging ICO to apply non-fining public-sector approach

Capita Fined £14m Over Cyberattack

Major government supplier Capita has been hit with a £14m fine over a 2023 cyberattack in which the personal information of 6.6 million people was stolen.

The penalty was imposed by the Information Commissioner’s Office (ICO) despite Capita's arguments that it should be treated similarly to its public-sector customers, which are often not financially penalized.

Capita cited its "very small margins" and claimed it was being "held to an alternative standard" compared to its peers, but the regulator did not accept these assertions.

Capita argued for a non-fining approach, similar to that applied to public-sector organizations.

The ICO imposed the fine, rejecting Capita's submissions for a reduced penalty.

Author's summary: Capita fined £14m for cyberattack.

more

PublicTechnology PublicTechnology — 2025-10-16