Data protection.

Slides:



Advertisements
Similar presentations
1 st Training Seminar on Planning and Preparing for EHES at the National Level Legal and ethical issues Susanna Conti Istituto Superiore di Sanità (ISS)
Advertisements

© 1998 CSC. All rights reserved. 1 CSC Danmark International Operations Computer Sciences Corporation IOPNTS IOPNTS Overview of Telematic Systems October.
Data Protection & Privacy in the Information Age COMNET – Legal Frameworks for ICTs Malta 2013 Dr Antonio Ghio Dr Jeanine Rizzo.
DATA PROTECTION and Research University Research Ethics Committee – David Cauchi David Cauchi Office of the Commissioner for Data Protection.
Implementation of the CoP in SLOVENIA Cooperation with data users Genovefa RUŽIĆ Deputy Director-General.
Complying with Privacy to Enable Innovation & Research
DATA PROTECTION and Research University Research Ethics Committee – David Cauchi Office of the Data Protection Commissioner.
C MU U sable P rivacy and S ecurity Laboratory 1 Privacy Policy, Law and Technology Identity October 9, 2008.
Legal and ethical issues EHES Training Material. Definition of “legislation” and “ethics” and their relationship Legislation A law or legal regulation.
P O L I C E D E P A R T M E N T  Biometric passport – Passport Act – Issuing a biometric passport – Development project  Biometric Passport To Biometric.
 The Data Protection Act 1998 is an Act of Parliament which defines UK law on the processing of data on identifiable living people and it is the main.
Workshop on Health Examination Surveys (HES) Legal and ethical issues Susanna Conti, M. Kanieff, G. Rago Istituto Superiore di Sanità (ISS) (National Public.
Data management in the field Ari Haukijärvi 2nd EHES training seminar.
Europe's work in progress: quality of mHealth Pēteris Zilgalvis, J.D., Head of Unit, Health and Well-Being, DG CONNECT Voka Health Community 29 September.
Privacy and Confidentiality. Definitions n Privacy - having control over the extent, timing, and circumstances of sharing oneself (physically, behaviorally,
Copyright © 2009 by The McGraw-Hill Companies, Inc. All Rights Reserved. McGraw-Hill Chapter 6 The Privacy and Security of Electronic Health Information.
INTERNATIONAL E-DISCOVERY: WHEN CULTURES COLLIDE Alvin F. Lindsay Hogan & Hartson LLP.
The Culture of Healthcare Privacy, Confidentiality, and Security Lecture d This material (Comp2_Unit9d) was developed by Oregon Health and Science University,
Research & Economic Development Office of Grants and Contracts Administration Data Security Presented by Debbie Bolick September 24, 2015.
Human Subjects Update E. Wethington, Chair, UCHS.
TRANSBORDER DATA FLOWS INA MEIRING. THE PROTECTION OF PERSONAL INFORMATION ACT (“POPI”) > 'personal information' means information relating to an identifiable,
FERPA Family Educational Rights and Privacy Act
World Health Organization
Amandine Jambert - IT Experts Department
Data Protection: EU & International
Based on EHES Manual, Part B. Fieldwork Procedures, 2nd edition (2016)
Measuring weight using beam balance scale
Measuring height.
Hand grip strength test
Blood pressure measurement Automated devices
Legal and ethical issues
Budgeting and fund raising
Blood sample processing for serum total cholesterol, HDL cholesterol and plasma glucose, HbA1c and DNA extraction.
Timed chair stand test.
Blood pressure measurement by mercury sphygmomanometer and other auscultation based devices Background information.
Blood pressure measurement by automated devices Background information
Drawing blood samples for serum total cholesterol, HDL cholesterol and plasma glucose, HbA1c and DNA extraction.
Blood pressure Automated measurement device quality control
Planning efficient recruitment
Obtaining informed consent
Questionnaire administration
How to motivate participation in HES?
24-hour urine samples.
Quality assurance for the handgrip strength and chair stand tests
Organizing national surveys
Measuring weight using electronic scale
Overnight urine samples
Spot urine sample.
EU Directive 95/46/EC (Paragraph 2) “Whereas data-processing systems are designed to serve man; whereas they must Respect their fundamental rights.
Data Protection & Freedom of Information- An Introduction
European Citizens’ Initiative, Commission regulation proposal Focus on IT aspects Jérôme Stefanini DIGIT.B.2 05/06/2018.
Blood pressure Mercury sphygmomanometer quality control
Measuring waist circumference
G.D.P.R General Data Protection Regulations
Measuring hip circumference
Relocation CARNIVAL come one…come all
Measuring height using a portable device Quality assurance
Selection of participants
GDPR Workshop MEU Symposium Prague 2018
Measuring waist and hip circumference Quality assurance
Measuring weight Quality assurance
Information Handling Research Student Induction Day
Laboratory site quality control
The EDPS: competences and processing of personal data in EU funds
Possible solutions at the EU level within the Animal Health Law
General Data Protection Regulation Q & A Session
General Data Protection Regulation (GDPR)
TRACE INITIATIVE: Confidentiality, Data Security, and Procedures for Protocol Violation or Adverse Event.
EU Data Protection Legislation
Should we also regulate non-personal data?
Presentation transcript:

Data protection

Available at: http://urn.fi/URN:ISBN:978-952-302-700-8 Based on EHES Manual, Part A. Planning and preparation of the survey, 2nd edition (2016) Available at: http://urn.fi/URN:ISBN:978-952-302-700-8 These slides can be used freely, translated and adapted to national use (e.g. concerning national sampling frames and sample selection criteria).

Aspects of safeguarding of privacy (1) Data access: who is allowed to see all of the data a limited number of persons are allowed to access a database that includes identification data, such as names and dates of birth Data exchange: with whom the data can be shared Record linkage: how the linkage is done and registers covered (for example existing health registers)

Aspects of safeguarding of privacy (2) Anonymization: ensuring that the individual cannot be identified Duration of storage of data: how long data can be kept in a database Identification, use, and storage of biological samples

Anonymization The person cannot be identified, whether by the data controller or by any other person Taking into account of all the means likely reasonable to be used either by the controller or any other person to identify that individual (Working Partly of the protection of individuals with regard to the processing of personal data, Article 29)

Safeguarding of privacy Data protection (1) Personal Data Direct: everything that identifies an individual Indirect: information that can be combined with other information to identify specific individuals Reference to an identification number or to one or more factors specific to his/her physical, physiological, mental, economic, cultural or social identity (Regulation (EU) 2016/679 of the European Parliament and of the Council)

Safeguarding of privacy Data protection (2) Data collected for HES are “personal” and thus must be safeguarded, e.g. by Using survey specific subject ID or barcode in questionnaires and samples No personal identification included in the questionnaire documents and samples Computers and servers locked from others than authorized persons No survey data kept or archived in personal user directories Encrypted transfer for electronic data The survey protocol should comply with national legislation (“Data Protection Act” or “Personal Data Act”)

Acknowledgements Slides prepared by: Laura Paalanen and Päivikki Koponen Experiences and feedback from the EHES network have been utilized in the preparation of these slides Cover picture: http://ec.europa.eu/justice/data-protection/individuals/index_en.htm Funding: Preparation of the slides is part of the activities of the EHES Coordinating Centre which has received funding from the EC/DG SANTÉ in 2009-2012 through SANCO/2008/C2/02-SI2.538318 EHES and Grand Agreement number 2009-23-01, and in 2015-2017 through Grand Agreement number 664691/BRIDGE Health

Disclaimer The views expressed here are those of the authors and they do not represent the Commission’s official position.