Presented by Ms. Teki Akuetteh LLM (IT and Telecom Law) 16/07/2013Data Protection Act, 2012: A call for Action1.

Slides:



Advertisements
Similar presentations
Data Protection & Privacy in the Information Age COMNET – Legal Frameworks for ICTs Malta 2013 Dr Antonio Ghio Dr Jeanine Rizzo.
Advertisements

DATA PROTECTION and Research University Research Ethics Committee – David Cauchi David Cauchi Office of the Commissioner for Data Protection.
Convention for the protection of individual with regard to automatic processing of personal data “The purpose of this convention is to secure in the territory.
MAKING SENSE OF IT:- WHAT IS DATA PROTECTION? Presented by the Data Protection Commissioner (Mrs D. Madhub) To the Truth and Justice Commission on
Data Protection Information Management / Jody McKenzie.
The Data Protection (Jersey) Law 2005.
Data Protection.
DATA PROTECTION and Research University Research Ethics Committee – David Cauchi Office of the Data Protection Commissioner.
What does the Data Protection Act do? It sets standards which must be satisfied when obtaining, recording, holding, using, disclosing or disposing of.
Data Protection and Records Management
ILONA GAVRONSKA GROUP IL-41 INTERNATIONAL LAW DEPARTMENT KYIV NATIONAL ACADEMY OF SCIENCES OF UKRAINE KYIV UNIVERSITY OF LAW.
Training at Ministry of Industry, Commerce and Consumer Protection Presented By: Mrs Dodah Pravina Mr Dookee Padaruth Date : 11 September 2014 Explaining.
Audiences NI Data Protection Workshop
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
Data Protection Overview
The Data Protection Act
 The Data Protection Act 1998 is an Act of Parliament which defines UK law on the processing of data on identifiable living people and it is the main.
Data Protection for Church of Scotland Congregations
CENTRAL SCOTLAND POLICE Data Protection & Information Security Stuart Macfarlane Information Governance Unit Police Service of Scotland.
LexisNexis Confidential EU Privacy Framework Michael Lamb LexisNexis Risk Solutions Vice President and Lead Counsel: Regulatory, Privacy & Policy May 19,
The Data Protection Act 1998 The Eight Principles.
Data Protection: An enabler? David Freeland, Senior Policy Officer 23 October 2014.
Data Protection Act AS Module Heathcote Ch. 12.
Data Protection Act & Freedom of Information Simon Mansell Corporate Governance and Information Team.
Data Protection Corporate training Data Protection Act 1998 Replaces DPA 1994 EC directive 94/46/EC The Information Commissioner The courts.
Processing personal health data: the regulator’s perspective Ken Macdonald Assistant Commissioner Information Commissioner’s Office.
The Data Protection Act - Confidentiality and Associated Problems.
DATA PROTECTION ACT 1998 Became law on 1 March 2000 Only applies to the use of personal data, that is data which relates to an identifiable living individual,
INTERNATIONAL E-DISCOVERY: WHEN CULTURES COLLIDE Alvin F. Lindsay Hogan & Hartson LLP.
The Data Protection Act What Data is Held on Individuals? By institutions: –Criminal information, –Educational information; –Medical Information;
The Data Protection Act What the Act covers The misuse of personal data by organisations and businesses.
Introduction Data protection is relevant to every individual, business or organisation today, not just Local Government. As well as protecting privacy,
Data Protection - Rights & Responsibilities Information Commissioner’s Office Orkney Practice Forum 4 th July 2007.
Data Protection Act The Data Protection Act (DPA) is a balance between rights of the DATA SUBJECT and obligations of the DATA CONTROLLER DATA CONTROLLER.
An Introduction to the Privacy Act Privacy Act 1993 Promotes and protects individual privacy Is concerned with the privacy of information about people.
DATA PROTECTION ACT 2002 The Basics Balance the rights of an individual with an organisation’s legitimate need to process personal data Promote openness.
DATA PROTECTION ACT (DPA). WHAT IS THE DATA PROTECTION ACT?  The Data Protection Act The Data Protection Act (DPA) gives individuals the right.
DATA PROTECTION ACT INTRODUCTION The Data Protection Act 1998 came into force on the 1 st March It is more far reaching than its predecessor,
GCSE ICT Data and you: The Data Protection Act. Loyalty cards Many companies use loyalty cards to encourage consumers to use their shops and services.
© University of Reading Lee Shailer 06 June 2016 Data Protection the basics.
The EU General Data Protection Regulation Frank Rankin.
Practical implications of the Data Protection Bill By John Robinson Data Protection Co-Ordinator South Bucks NHS Trust.
Protection of Personal Information Act An Analysis on the impact.
Clark Holt Limited (Co. No ), Hardwick House, Prospect Place, Swindon, SN1 3LJ Authorised and regulated by the Solicitors Regulation.
Data Protection and Freedom of Information. Objectives Describe the main points of the Data Protection Act 1998 and Freedom of Information Act 2000 Illustrate.
Introduction to Data Protection Plan »Brief Introduction to Data Protection  Example  Principles  P3, 4, 7  Sensitive Data  Conditions for Processing.
Data Protection Laws in the European Union John Armstrong CMS Cameron McKenna.
Students’ Unions 2011 Data Protection and Students’ Unions Mairead O’Reilly 19 July 2011.
Trevor Ellis Trainee Programmer (1981 – 28 years ago)
Issues of personal data protection in scientific research
Data Protection The Current Regime
General Data Protection Regulation
Data Protection Legislation
GDPR Overview GDPR - General Data Protection Regulations
PERSONAL DATA PROTECTION ACT 2010
EU Directive 95/46/EC (Paragraph 2) “Whereas data-processing systems are designed to serve man; whereas they must Respect their fundamental rights.
GDPR Road map to Compliance.
Data Protection & Freedom of Information- An Introduction
GENERAL DATA PROTECTION REGULATION (GDPR)
The General Data Protection Regulation (GDPR)
G.D.P.R General Data Protection Regulations
Data Protection principles
Relocation CARNIVAL come one…come all
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
GDPR Workshop MEU Symposium Prague 2018
Information Handling Research Student Induction Day
PERSONAL INFORMATION BILL
Welcome IITA Inbound Insider Webinar: An Introduction to GDPR
Dr Elizabeth Lomas The General Data Protection Regulation (GDPR): Changing the data protection landscape Dr Elizabeth Lomas
Data protection & FOIA considerations
Presentation transcript:

Presented by Ms. Teki Akuetteh LLM (IT and Telecom Law) 16/07/2013Data Protection Act, 2012: A call for Action1

 Overview  Why Data Protection Law?  Key Features of Data Protection  Processing of Personal Data  Data Protection Principles  Lawful Processing  Data Security  Individual Rights and Remedies  Access Procedures  Data Protection Supervisors  Exceptions  Questions/Comments, etc. 16/07/2013Data Protection Act, 2012: A call for Action2

 Establishes a Data Protection Commission, to protect the privacy of the individual and personal data by regulating the processing of personal information, to provide the process to obtain, hold, use or disclose personal information and for related matters.  Establishes the standards to be upheld by all who process personal data and these include governmental agencies. 16/07/2013Data Protection Act, 2012: A call for Action3

The premise underlying data protection legislation is that the processing of data relating to an individual constitutes a threat to the person’s rights and freedoms, especially the his or her right to privacy. The principle is therefore that if any individual cannot be recognised or identified from the manner in which data is collected, processed and or used, there can not be any significant threat to privacy and there is therefore no justification for legislative controls. 16/07/2013 Data Protection Act, 2012: A call for Action 4

 Data Controllers – The one who determines the purposes for which and the manner in which personal data, etc are to be processed.  Data Processor – The one who processes the data (it could be on behalf of the controller)  Data Subject – The one who is subject of personal data. 16/07/2013 Data Protection Act, 2012: A call for Action 5

 Relates to Obtaining Recording Holding or Carry out any operation(s) including ○ Organisation ○ Adaptation ○ Alteration 16/07/2013 Data Protection Act, 2012: A call for Action 6

○ Retrieval consultation or use of the data ○ Disclosure of the data by transmission, dissemination or otherwise making available. ○ Alignment, combination, blocking or erasure.  Means of processing Automatic in response to instructions Recording with an intention that it should be processed by such equipment Recording as part of a relevant filing system or with an intention that it should form part of a relevant filing system. 16/07/2013 Data Protection Act, 2012: A call for Action 7

 Personal Data – data that relates to a living person who can be identified from the existing data.  Special Personal Data (Sec. 37) – This normally relates to more sensitive information and must be subject to special protection. Eg. Racial or ethnic origin, political opinions, religious beliefs, physical or mental health or condition, sexual life, etc. 16/07/2013 Data Protection Act, 2012: A call for Action 8

 Fair and Lawful processing.  Obtained for specified lawful purposes.  The Personal Data must be accurate and updated.  The personal data must be adequate, relevant and not excessive for the purpose for which it is being obtained.  Time for keeping such data is limited to the necessary to keep for the purpose for which it has been obtained.  It must be processed in accordance with the rights of the data subjects. 16/07/2013 Data Protection Act, 2012: A call for Action 9

 There’s the need to undertake appropriate technical and organisational measures against unauthorised or unlawful processing.  Also the need to undertake measures against accidental loss or destruction of or damage to the data.  It must not be transferred unless the country or location is being transferred to ensures adequate level of protection for the rights and freedoms of data subjects in relation to the processing of personal data.  Where sensitive data is concerned it must be with the explicit consent of the data subject. 16/07/2013 Data Protection Act, 2012: A call for Action 10

 For concluding a contract with the data subject  For the controller to comply with a legal obligation  To protect the vital interests of the data subject  For the administration of justice  Necessary in the legitimate interests of the controller. 16/07/2013 Data Protection Act, 2012: A call for Action 11

Data users and operators must ensure the appropriate technical and organisational measures are taken against unauthorised or unlawful processing of data and against accidental loss or destruction of or damage to, personal data. They are also to ensure that data is not unlawfully obtained. 16/07/2013 Data Protection Act, 2012: A call for Action 12

 The right to obtain a copy of information held and concomitant rights to correct and obtain compensation.  Where personal data is being processed the subject must be given a description of the nature of the data held, the purposes for which it is being processed and the persons or categories of persons to whom it may be disclosed.  An enquiring subject must also be supplied with any information available as to the source of that information or data. 16/07/2013 Data Protection Act, 2012: A call for Action 13

 Written Requests  Appropriate Fee  Time for satisfying requests 16/07/2013 Data Protection Act, 2012: A call for Action 14

 A data controller may appoint a certified and qualified supervisor.  The supervisor is responsible for the day to day compliance issues. 16/07/2013Data Protection Act, 2012: A call for Action15

 National Security  Third party data  Data for policing  Data for revenue gathering purposes  Health  Social Work Data  Regulatory activity  Corporate finance  Negotiations  Examination Marks & Scripts  Research History & Statistics  Information required to be made public  Confidential References  Armed Forces  Judicial appointments & Honours  Management forecasts  Human embryos  Legal professional privilege  Self-incrimination 16/07/2013 Data Protection Act, 2012: A call for Action 16

16/07/2013Data Protection Act, 2012: A call for Action17

16/07/2013Data Protection Act, 2012: A call for Action18