IT Applications Theory Slideshows

Slides:



Advertisements
Similar presentations
Part 2. QUEENSLAND INTERNATINOAL BUSINESS ACADAMY.
Advertisements

CHARTERED SECRETARIES AUSTRALIA New Privacy Laws 6 June 2013.
Privacy An Overview for Staff Prepared by MSM Compliance Services Pty Ltd.
The Data Protection (Jersey) Law 2005.
Data Protection.
The Australian Privacy Principles Protecting information rights –­ advancing information policy.
What does the Data Protection Act do? It sets standards which must be satisfied when obtaining, recording, holding, using, disclosing or disposing of.
Introduction to the APPs and the OAIC’s regulatory approach Presented by: Este Darin-Cooper Director, Regulation and Strategy May 2015.
Data Protection Act.
Data Protection: The Law. EU & Irish Legislation Data Protection Directive 95/46/EC Electronic Privacy Directive 2002/58/EC EUROPOL etc Data Protection.
Volunteers and the Law Riverland Community Legal Service Inc.
The Data Protection Act
Protecting information rights –­ advancing information policy Privacy law reform for APP entities (organisations)
 The Data Protection Act 1998 is an Act of Parliament which defines UK law on the processing of data on identifiable living people and it is the main.
Data Protection for Church of Scotland Congregations
CENTRAL SCOTLAND POLICE Data Protection & Information Security Stuart Macfarlane Information Governance Unit Police Service of Scotland.
13 July 2006Susan Joseph Health Privacy It’s My Business Health Records Act 2001 (Vic) eReferral Service Co-ordination System.
Data Protection and You Your Rights & The Law Registration Basics Other Activities Disclaimer: This presentation only provides an introductory info. Please.
Elma Graham. To understand what data protection is To reflect on how data protection affects you To consider how you would safeguard the data of others.
Protecting information rights –­ advancing information policy The Australian Privacy Principles.
Managing Risks Associated With Privacy Alison Baker- Senior Associate Hall & Wilcox 24 November
OCR Nationals Level 3 Unit 3.  To understand how the Data Protection Act 1998 relates to the data you will be collecting, storing and processing  To.
Data Protection Corporate training Data Protection Act 1998 Replaces DPA 1994 EC directive 94/46/EC The Information Commissioner The courts.
The Data Protection Act What Data is Held on Individuals? By institutions: –Criminal information, –Educational information; –Medical Information;
IT Applications Theory Slideshows By Mark Kelly Vceit.com Privacy Laws.
IM NETWORK MEETING 20 TH JULY, 2010 CONSULTATION WITH 3 RD PARTIES.
12/12/2015 Data Protection Act /12/2015 The DP Act A law that protects personal privacy and upholds individual’s rights Anyone who handles personal.
ANONYMISATION Research Data Management. c Research Data Management Sensitive Data Sensitive Data is information covering: The racial or ethnic origin.
An Introduction to the Privacy Act Privacy Act 1993 Promotes and protects individual privacy Is concerned with the privacy of information about people.
DATA PROTECTION ACT (DPA). WHAT IS THE DATA PROTECTION ACT?  The Data Protection Act The Data Protection Act (DPA) gives individuals the right.
Privacy Compliance in Schools Darrebin A/P’s Network 7 May 2009.
DATA PROTECTION ACT INTRODUCTION The Data Protection Act 1998 came into force on the 1 st March It is more far reaching than its predecessor,
GCSE ICT Data and you: The Data Protection Act. Loyalty cards Many companies use loyalty cards to encourage consumers to use their shops and services.
Session 11 Data protection. 1 Contents Part 1: Introduction Part 2: Applicability and responsibility Part 3: Our procedures on data protection Part 4:
Business Ethics and Social Responsibility GCSE Business and Communication Systems Business and Communication Systems.
Introduction to the Australian Privacy Principles & the OAIC’s regulatory approach Privacy Awareness Week 2016.
Presented by Ms. Teki Akuetteh LLM (IT and Telecom Law) 16/07/2013Data Protection Act, 2012: A call for Action1.
Clark Holt Limited (Co. No ), Hardwick House, Prospect Place, Swindon, SN1 3LJ Authorised and regulated by the Solicitors Regulation.
Understanding Privacy An Overview of our Responsibilities.
TRANSBORDER DATA FLOWS INA MEIRING. THE PROTECTION OF PERSONAL INFORMATION ACT (“POPI”) > 'personal information' means information relating to an identifiable,
Data protection act. During the second half of the 20th century, businesses, organisations and the government began using computers to store information.
2011 Annual May Workshop The Australian Privacy Law Reform Project: a snapshot Karin Clark 4 May 2011.
Understanding Privacy An Overview of our Responsibilities.
Students’ Unions 2011 Data Protection and Students’ Unions Mairead O’Reilly 19 July 2011.
VCE IT Theory Slideshows
Data Protection GCSE ICT Mrs N Steventon-2005.
An Overview for Staff Prepared by MSM Compliance Services Pty Ltd
Data Protection: The Law
Data Protection and Confidentiality
Privacy principles Individual written policies
Issues of personal data protection in scientific research
Surveying the privacy landscape
Data Protection Act.
Data Protection The Current Regime
APP entities (organisations)
IT Applications Theory Slideshows
PERSONAL DATA PROTECTION ACT 2010
GENERAL DATA PROTECTION REGULATION (GDPR)
Data Protection principles
Data Protection and You
Unit 1 Effective Communication in Health and Social Care
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
Mathew Norman, Policy & Public Affairs Officer, RLA Wales
D3 Confidentiality.
VCE IT Theory Slideshows
IMPLICATIONS OF GDPR ROBERT BELL.
Information Handling Research Student Induction Day
Understanding Data Protection
General Data Protection Regulation Q & A Session
Dr Elizabeth Lomas The General Data Protection Regulation (GDPR): Changing the data protection landscape Dr Elizabeth Lomas
Presentation transcript:

IT Applications Theory Slideshows Privacy Laws Updated 2016 By Mark Kelly mark@vceit.com Vceit.com

Contents The Privacy Act 1988 Privacy and Data Protection Act 2014 (replaces the previous Information Privacy Act, Victoria 2000) The Health Records Act 2001, Victoria

Privacy Laws Safeguard personal or sensitive information stored by organisations about people.

What’s personal information? Name, address, age, sex Shopping habits, Personal opinions Living arrangements, partners, children Etc Does not include records held by an employer about an employee, including health information. So an employer who stores employees’ health info is not necessarily subject to the privacy laws.

What’s sensitive information? racial or ethnic origin political opinions membership of a political association religious beliefs or affiliations philosophical beliefs membership of a trade union sexual preferences or practices criminal record.

What’s medical information? medical history current medical condition and treatments dental records genetic information notes and opinions of health service provider (e.g. doctor, psychiatrist)

Who’s subject to the Federal Privacy Act? Any federal government department Any private organisation which: Turns over $3 million or more annually, or Profits from trading in personal information, or Holds health information about people* In 2001 98.9% of businesses turned over less than $3 million. * Not including employees

The spirit of the Privacy Act The basis of the Privacy Act’s rules is the Information Privacy Principles (IPPs) Same principles underlie most other Australian states’ privacy legislation.

Privacy Principles 1. Collection Organisations should only collect personal information that is necessary for one or more of its functions and activities.

Privacy Principles 2. Use and Disclosure An organisation must not use or disclose information about an individual for any other purpose (a secondary purpose) other than the purpose for which the information was collected, except in a number of exceptions specified in the Act.

Privacy Principles 3. Data Quality An organisation must take reasonable steps to ensure that the personal information it collects, uses or discloses is accurate, complete and up to date.

Privacy Principles 4. Data Security An organisation must take reasonable steps to ensure that the personal information that it collects is protected from misuse such as unauthorised access, modification or disclosure, or loss. Laptop privacy >>

Privacy Principles 5. Openness An organisation must set out in a document a clearly expressed policy on its management of personal information and make this document available to anyone who asks for it.

Privacy Principles 6. Access and Correction If an organisation holds personal information about an individual, it must provide the individual with access to the information on request by the individual.

Privacy Principles 7. Identifiers Identifiers, an organisation cannot use the same identifier that another organisation uses to identify an individual (e.g. Tax File Number, Medicare number.) Must create their own idenifier (e.g. account number, user ID,) Why? Look up data mining – collating info on an individual from several different databases

Privacy Principles 8. Anonymity Where it is lawful and practicable, individuals must have the option of not identifying themselves when entering transactions with an organisation.

Privacy Principles 9. Transborder data flow An organisation in Australia or an external Territory may not transfer personal information about an individual to someone (other than the organisation or the individual) who is in a foreign country without the consent of the individual.

Privacy Principles 10. Sensitive Information An organisation must not collect sensitive information about an individual unless the individual has consented, or law requires the collection.

Victorian Laws Privacy and Data Protection Act 2014 Establishes a regime for the responsible collection and handling of personal information in the Victorian public service sector (i.e. government departments). Also applies to organisations providing services funded by government departments. Does not apply to non-gov’t orgs!

Privacy and Data Protection Act 2014 The Act covers all personal information that identifies or could be used to identify an individual other than health information. Aligns closely with the principles in the Federal Privacy Act; * Replaces the last study design’s Information Privacy Act 2000 (Vic)

Health Records Act 2001 (Vic) Establishes privacy standards for the handling of all health information and the operation of all health services: health, mental health, disability, aged care or palliative care services. Gives individuals a conditional right of access to their own health information held in the private sector.

Health Records Act 2001 (Vic) Applies to all Victorian businesses (profit and non-profit, public and private sector) and everyone handling health information. Allows de-identified* health information to be used for planning and research.   * Information that cannot be linked to a particular individual

Because you’ve been good…

IT APPLICATIONS SLIDESHOWS © Mark Kelly mark@vceit.com vceit.com These slideshows may be freely used, modified or distributed by teachers and students anywhere on the planet (but not elsewhere). They may NOT be sold. They must NOT be redistributed if you modify them.