Access to Information: Data Protection and Freedom of Information Records Management Section.

Slides:



Advertisements
Similar presentations
IMPS Information Management and Policy Services Information Services Directorate A briefing for all University staff November 2004 New Information Legislation.
Advertisements

Data Security Breach Code of Practice. Data Security Concerns Exponential growth in personal data holdings Increased outsourcing 3 rd countries cloud.
Ten things you should know about Data Protection Paul Simpkins Director, Act Now Training Ltd.
Data Protection Information Management / Jody McKenzie.
The Data Protection (Jersey) Law 2005.
I.D. Theft Alaska’s New Protection of Personal Information Act Ed Sniffen Senior Assistant Attorney General Alaska Department of Law.
Data Protection.
Freedom of Information What does it mean for us? Introductory Training Session.
The Australian Privacy Principles Protecting information rights –­ advancing information policy.
Freedom of Information 1 Freedom of Information - overview FOI Unit (December 2011)
Data Protection & Freedom of Information The Practical Implications of Data Protection and Freedom of Information Caroline Dominey Data Protection Officer.
Data Protection and Records Management
Introduction to the APPs and the OAIC’s regulatory approach Presented by: Este Darin-Cooper Director, Regulation and Strategy May 2015.
Role of the Information Commissioner’s Office 'Promoting public access to official information and protecting your personal information' Christine Johnson.
Towards a Freedom of Information Law in Qatar Fahad bin Mohammed Al Attiya Executive Chairman, Qatar National Food Security Programme.
Data Protection Act Description The Data Protection Act controls how your personal information can be used and protects from the misuse of your.
Data Protection Overview
The ICO and the DPA Ken Macdonald Assistant Commissioner Information Commissioner’s Office ScotStat Public Sector Analysts Network 30 th September 2010.
1 OVERVIEW PRESENTATION FREEDOM OF INFORMATION (SCOTLAND) ACT 2002.
Data Protection for Church of Scotland Congregations
CENTRAL SCOTLAND POLICE Data Protection & Information Security Stuart Macfarlane Information Governance Unit Police Service of Scotland.
The Information Commissioner’s Office David Evans.
Working together: Ensuring effective regulation Jonathan Bamford Head of Strategic Liaison.
Privacy Law for Network Administrators Steven Penney Faculty of Law University of New Brunswick.
1 Freedom of Information (Scotland) Act 2002 A strategic view.
Public rights of access to information Grisilda Ponniah, Corporate Information Governance Manager Mary Elliott, FOI Officer Legal & Democratic Services.
Data Protection, Freedom of Information and Information/Records Management.
NOT PROTECTIVELY MARKED Data Protection Information Management & Information Security.
Protecting information rights –­ advancing information policy The Australian Privacy Principles.
Managing Risks Associated With Privacy Alison Baker- Senior Associate Hall & Wilcox 24 November
Local Government Reform: Incorporating Planning Functions Ken Macdonald Assistant Commissioner (Scotland & Northern Ireland) Information Commissioner’s.
Sharing Pupil Data North Yorkshire County Council Schools Conference Robert Beane and Louise Jackson.
DATA PROTECTION ACT 1998 Became law on 1 March 2000 Only applies to the use of personal data, that is data which relates to an identifiable living individual,
Data Protection and Records Management. Key Responsibilities - Record Management Keep Information Accurate Disclose only if compatible with purpose for.
STUDENT JUDICIAL AFFAIRS Balancing the Principals of Natural Justice with Requirements of Privacy Legislation CCSJA March 23, 2006 Harry Davis Deborah.
Data Protection for Church of Scotland Congregations.
Data Practices in Minnesota December Outline for this presentation Minnesota data practices laws Classification of government data Government entity.
Data Protection - Rights & Responsibilities Information Commissioner’s Office Orkney Practice Forum 4 th July 2007.
Data protection and compliance in context 19 November 2007 Stewart Room Partner.
An Introduction to the Privacy Act Privacy Act 1993 Promotes and protects individual privacy Is concerned with the privacy of information about people.
1 Role of the Data Protection Officer Donald Henderson Information Compliance Manager 30 September 2010.
Sian Harvey Developing DP/FOI Strategy for SERC. Aim develop how SERC responds to its DP/FPO formalised approach to establishing a compliant Records Management.
Breakaway Session 2: Data Protection and The Role of the Data Protection Supervisor Michael Mingle Director, NTSS Solutions (UK) D ATA P ROTECTION C ONFERENCE.
The Freedom of Information Act and UCL Compliance Rosamund Cummings UCL FOI Officer
FREEDOM OF INFORMATION Getting to grips with the Act.
© University of Reading Lee Shailer 06 June 2016 Data Protection the basics.
Can you share? Yes you can!! Angus Council Adult Protection Maureen H Falconer, Senior Policy Officer Information Commissioner’s Office.
Information Security TechLink Seminar, 17 April 2013 James Knapton, Information Compliance Officer, Registrary’s Office.
Introduction to the Australian Privacy Principles & the OAIC’s regulatory approach Privacy Awareness Week 2016.
Collaborative Working & Best Practice A Seminar by the Public Services Ombudsman for Wales.
Workshop Understanding your responsibilities under the Data Protection Act 1998 and the Freedom of Information Act 2000 Adele Rhodes Girling.
Freedom of Information Act ‘What you need to know’ Corporate Information Governance Team Strategic Intelligence.
Information Compliance in Complaint Handling Ombudsman Association May 2013 Graham Smith – Deputy Information Commissioner and Director of Freedom of Information.
Data Protection and Freedom of Information. Objectives Describe the main points of the Data Protection Act 1998 and Freedom of Information Act 2000 Illustrate.
Data Protection & Freedom of Information- An Introduction
Notifiable data breaches Roundtable
Privacy Breach Response and Reporting
Collaborative Working & Best Practice
Getting Our Act Together Rosemary Agnew
Security measures Introducing Risk Assessment in GDPR
G.D.P.R General Data Protection Regulations
Data Protection and Running a Compliant Pub Watch SCHeme
Data Protection principles
Data Protection Impact Assessments How do we carry out a DPIA?
Data Protection in a Tutorial Context
Detecting, reporting & investigating data breaches under GDPR
Mandatory Breach Reporting (isn’t *that* bad)
Collaborative Working & Best Practice
Overview of the recommendations regarding approximation of the Law on personal data protection to the new EU General data protection regulation Valerija.
Upcoming PIPEDA Changes
Presentation transcript:

Access to Information: Data Protection and Freedom of Information Records Management Section

Data protection: key concepts Personal data Sensitive personal data Data subjects Data protection principles

What happens if we get it wrong? Fraud, identity theft, distress Damage to relationships and research access Reputational damage Investigated by the Information Commissioner The University can be fined up to £500,000 The University can be sued Personal criminal offences –Unauthorised disclosure –Destruction of information required for a request –Processing without notification

Data protection: what you must do 1.Respond to subject access requests within 40 calendar days 2.Tell individuals what you do with information about them 3.Keep personal data securely 4.If you pass data out with the University, follow the policies and procedures 5.Use University retention schedules and disposal guidance

Freedom of information: principal requirements Individual requests –Received 165 requests in 2009 –Second highest in HE sector –Popular topics: expenses, salaries, student population and conduct Publication scheme –Must keep up-to-date –Must publish in line with obligations – Records management –Helps to find information

What does freedom of information mean for you?

Enforcement Complain to the Scottish Information Commissioner Personal criminal offence –Destruction of information required for a request Contempt of court

Advice and assistance Your local practitioner – actitioners/PractitionersList.htmhttp:// actitioners/PractitionersList.htm The Records Management Section – –

Questions?