opensky Data Systems UK, Ireland, France, Middle-East Formed: 2004

Slides:



Advertisements
Similar presentations
The Data Protection (Jersey) Law 2005.
Advertisements

Data Protection.
1 Pertemuan 7 Points of Exposure Matakuliah:A0334/Pengendalian Lingkungan Online Tahun: 2005 Versi: 1/1.
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
Data Protection Overview
 The Data Protection Act 1998 is an Act of Parliament which defines UK law on the processing of data on identifiable living people and it is the main.
LeToia Crozier, Esq., CHC Vice President, Compliance & Regulatory Affairs Corey Wilson Director of Technical Services & Security Officer Interactive Think.
The Data Protection Act What Data is Held on Individuals? By institutions: –Criminal information, –Educational information; –Medical Information;
DATA PROTECTION ACT INTRODUCTION The Data Protection Act 1998 came into force on the 1 st March It is more far reaching than its predecessor,
GCSE ICT Data and you: The Data Protection Act. Loyalty cards Many companies use loyalty cards to encourage consumers to use their shops and services.
Business Challenges in the evolution of HOME AUTOMATION (IoT)
Clark Holt Limited (Co. No ), Hardwick House, Prospect Place, Swindon, SN1 3LJ Authorised and regulated by the Solicitors Regulation.
Understanding Privacy An Overview of our Responsibilities.
GDPR 12 POINTS 679/2016 DATA LEX 2016.
Accountability & Structured Privacy Management
Judicial Training on Data Protection and Privacy Rights
The future of data protection: General Data Protection Regulation
Issues of personal data protection in scientific research
Microsoft 365 Get help with regulatory compliance
Information Destruction; 2017 and beyond!
GDPR – Legal Aspects Desislava Krusteva, Attorney-at-Law, CIPP/E
General Data Protection Regulation
General Data Protection Regulations Preparing for the upcoming changes in data protection law David Jones & Angharad Williams.
KEY CHANGES TO THE DATA PROTECTION LANDSCAPE
GDPR Overview Gydeline – October 2017
Data Protection Update – GDPR or bust
General Data Protection Regulation: Turning the black into white
GDPR Overview GDPR - General Data Protection Regulations
GDPR Overview Gydeline – October 2017
PERSONAL DATA PROTECTION ACT 2010
GDPR Road map to Compliance.
Introducing GDPR: How the General Data Protection Regulation transforms the world Laura Mudd November 2016.
Bob Siegel President Privacy Ref, Inc.
GENERAL DATA PROTECTION REGULATION (GDPR)
6 Principles of the GDPR and SQL Provision
GDPR - New Data Protection Regulation
General Data Protection Regulation
Introduction to GDPR 09/11/2018.
The General Data Protection Regulation (GDPR)
Software for ambitious enterprises
State of the privacy union
G.D.P.R General Data Protection Regulations

General Data Protection Regulation
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
A whistle stop tour of GDPR
Project Start-up This project has received funding from the European Union’s Horizon 2020 research and innovation programme under grant agreement No
IMPLICATIONS OF GDPR ROBERT BELL.
GDPR Workshop MEU Symposium Prague 2018
GDPR enforcement begins
Governing the risk of GDPR compliance
GDPR & Accountability ISACA Ireland Annual Conference 2018
Information Handling Research Student Induction Day
 GDPR Readiness Quiz Quick Insight: Quick Insight: Quick Insight:
The General Data Protection Regulation: Are You Ready?
Welcome IITA Inbound Insider Webinar: An Introduction to GDPR
Project Start-up This project has received funding from the European Union’s Horizon 2020 research and innovation programme under grant agreement No
General Data Protection regulation (GDPR)
Fines, Sanctions and Compensation The teeth in the GDPR & Data Protection Act 2018 by Simon McGarr, CIPP/E Data Compliance Europe.
Overview of the recommendations regarding approximation of the Law on personal data protection to the new EU General data protection regulation Valerija.
General Data Protection Regulation Q & A Session
Dr Elizabeth Lomas The General Data Protection Regulation (GDPR): Changing the data protection landscape Dr Elizabeth Lomas
Data Protection What can I do? GDPR Principles General Data Protection
General Data Protection Regulation (GDPR)
GDPR Session
General Data Protection Regulation “11 months in”
General Data Protection Regulation
Information Governance
GDPR is here – are you ready?
A. Šidlauskas Mykolas Romeris University (LITHUANIA)
Presentation transcript:

opensky Data Systems UK, Ireland, France, Middle-East Formed: 2004 Headquartered: Kildare, Ireland Offices: Ireland, Poland Business market: UK, Ireland, France, Middle-East opensky Data Systems is a Data, Information and Digital Partner to some of the most innovative government teams in Ireland and the UK . With special focus and experience in Health, Transport, Environment and Retail system development, the company is equipped to solve the most complex of data and technology challenges. opensky have worked with Irelands National Health Service for several years and developed a suite of unique e-Health applications. We have worked with universities who are involved in medical research. You need to click to move to next slide

Designed and Developed : Health Designed and Developed : Irelands Single Assessment Tool for Elder Care Planning and Assessments within Acute Care, Home Care and Community Settings Structured Patient Educations System Fair Deals Private Care Homes Health Funding System for Irish Government Cervical Screening System Immunisation System Trainee Consultant Employment Portal Opensky Workpackages T2.4 Privacy and Security Research on Privacy and security requirements and ensuring the overall design and user interface is built in compliance with best practices for data protection T3.2 Front End GUI Implementation Building front-end integration with the Sensor platform to surface the control and visualisation of the built in algorithms and overall platform management to the end-user

Opensky Team Health Project Manager Alan Fitzpatrick   Alan Fitzpatrick Manage Project Requirements 1st Escalation Point Manage Project Deliverables Development Manage Rollout Coordination with partners Data Protection & Security Analysis Rosarie Lucey Privacy & Data Protection Review Security Testing Integration Test Technical Specialist Aleh Holub Usability Development Secure design development Unit Test

Benefits of CARELINK to opensky Health Enhancing a core skill in security and data protection: with the imminent compliance with the new EU General Data Protection Regulation on 25th of May 2018, many businesses are investing in resources to achieve compliance to avoid heavy penalties, which come with breaches of this new regulation (4% of global turnover). Many of opensky’s Government customers in the UK and Ireland are showing increased concern that their IT systems will not comply. While working on CARELINK, opensky is looking instead to build on the data protection & security advisory service within its software development process. Experience in working with IoT architectures: CARELINK is provisioning an Internet of Things platform to provide the monitoring and reporting on a Dementia sufferers through wearable devices. opensky’s current services and products currently employ enterprise web and mobile architectures, however building experience and skills in utilising connected devices will enrich the capabilities of our team and enhance the potential for future opportunities. Innovation in Health Education Platforms: opensky is currently working on a health application to host structured training for those suffering chronic diseases (initially diabetes) and tools to measure the clinical markers which identify the effectiveness of structured training for better health outcomes for those suffering from Chronic disease. CARELIINK gives opensky the opportunity both to work with UNINOVA to understand the health education possibilities for those suffering from dementia.

Health T2.4 Privacy and Security Taking the requirements defined in WP2, as well as the ethical issues pertaining to each component with regards to privacy and security matters, as outlined in WP1, the user and testing scenarios will be enhanced by specific privacy and security requirements with the end user protection at the forefront of the process. Research on Privacy and security requirements and ensuring the overall design and user interface is built in compliance with best practices for data protection Opensky are ISO 27001 Information Security accredited Appropriate technical and organisational measures shall be taken against unauthorised or unlawful processing of personal data and against accidental loss or destruction of, or damage to, personal data.

T2.4 Privacy and Security Data Protection by Design and Default: Health T2.4 Privacy and Security Data Protection by Design and Default: Methods to ensure privacy by design: Use of DPIA, Data Minimisation, Data deletion & Retention and Anonymization, Consent Management A Data Privacy Impact assessment is a process which assists organisations in identifying and minimising the privacy risks of new projects or policies. Subject Access Request Management Implementing Security measures such as incorporating SSL certs, strong password and brute force prevention, database security employing encryption, auditing, role based access and permissions. Privacy by Default: When a system includes choices for the individual on how much personal data to provide, the default is set to most privacy friendly.

Definitions Personal Data: any data that identifies a living person Health Definitions Personal Data: any data that identifies a living person Sensitive Personal Data: ethnicity, religious belief, sex life, philosophical beliefs, trade union membership, physical or mental health, criminal convicions (or allegations thereof) DPIA: Data Privacy Impact Assessment Data Subject: user or person Data Controller: defines the data collected and reasons Data Processor: processes data on behalf of the data controller Supervisory Authority: Data Regulator Profiling: use of personal data to evaluate certain personal aspects relating to a natural person i.e. to analyse or predict aspects concerning work performance, economic situation , health, personal preferences, behaviour etc.

T2.4 Privacy and Security Rights of Data Subject under GDPR: Health T2.4 Privacy and Security Rights of Data Subject under GDPR: Right to be Informed (transparency) Right of Access Right to Rectification Right to Erasure (‘right to be forgotten’) Right to restriction of processing Right to portability Right to object Right to object to automated individual decision making