Australian Federal Police Request Audit of Telecommunications Data Requests
An audit was requested to investigate requests made by the Australian Federal Police (AFP) to telecommunications operators.
AFP said it had mandated PwC to perform the audit after "identifying compliance issues, some dating back to 2007".
The issues identified relate to record keeping, authorizations and the communication of requests under subsection 180 (2) of the Telecommunications (Interception and Access) Act 1979.
AFP said it has undertaken a review of historical records and documents to assess the extent of compliance issues, and has self-declared to the Commonwealth Ombudsman January 24, 2020.
In a statement, AFP confirmed that the requests originated from ACT Policing and were linked to the potential identification of a mobile device location during an investigation .
Location requests cover the general location of the device, such as multiple streets or a suburb, but do not provide metadata or private communication from the mobile device.
Location requests can only be made for the investigation of serious offenses or offenses punishable by imprisonment for at least three years.
The offenses that meet these definitions include murder, kidnapping, drug trafficking, terrorism, aggravated robbery and firearms offenses.
Due to these "compliance issues", some requests were not reported to the Minister of the Interior, as they were not included in AFP's submissions for the Annual Report.
"This has led AFP not to fulfill its obligations in relation to the communication of these requests, or to submit requests for the Ombudsman's inspection", according to a press release from the Ombudsman. AFP.
"AFP has identified and taken corrective measures to ensure legislative compliance, including proper registration, authorization and future reports."
ACT Policing had confessed separately in July that it had found 3,249 more times to access metadata without proper authorization in 2015, in addition to the 116 requests disclosed earlier that year.
"Once the problem was discovered, ACT Policing informed the Office of the Ombudsman to seek advice on how to remedy this administrative review," he said at the time.
Additional requests, 240 were made to case managers, who landed ACT Policing in legal hot water.
"ACT Policing has requested legal advice regarding the handling of two cases relating to a missing persons case and a criminal case where the data in question may have been used in the context of a prosecution," said the report.
"The Office of the Ombudsman was kept informed throughout the review and quarantine process. It is not appropriate to identify specific cases."
The Commonwealth Ombudsman is expected to initiate an ex-officio investigation into the issue of compliance issues, and the audit of PwC is expected to be completed by June 2020.
