As discussed here previously, the revision of the European Telecommunications Directives in late 2009 introduced a requirement for telecoms providers to report breaches affecting personal data to their national regulators. Although the revised European Directive has not yet been transposed into national laws, ENISA has been surveying both regulators and telcos on their practice and plans.