European Data Protection Supervisor EC Data Protection Conference, Brussels, 20 May 2009 Transparency and Notification in the Age of Internet: more Effective.

Slides:



Advertisements
Similar presentations
European Data Protection Supervisor Security of e-Government, Brussels, 19 February 2013 Privacy and e-Government: the role of Data Protection legislation.
Advertisements

1 Enforcement Powers of National Data Protection Authorities and Experience gained of the Data Protection Directive Safe Harbour Conference Washington.
Balancing Access and Confidentiality Jenny Telford Australian Bureau of Statistics September 2008.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
Data Protection Billy Hawkes Data Protection Commissioner Irish Human Rights Commission 20 November 2010.
The data retention directive: data protection aspects Frank Robben General manager Crossroads Bank for Social Security Sint-Pieterssteenweg 375 B-1040.
HITECH ACT Privacy & Security Requirements Cathleen Casagrande Privacy Officer July 23, 2009.
1 The Data Protection Officer at work Experience, good practices and lessons learnt Pierre Vernhes – former DPO at the Council of the EU Workshop on Data.
Introduction to basic principles of Regulation (EC) 45/2001 Sophie Louveaux María Verónica Pérez Asinari.
The Gathering Cloud computing - Legal considerations David Goodbrand, Partner 28 February 2013 Aberdeen Edinburgh Glasgow.
The Data Protection (Jersey) Law 2005.
Paola Lucantoni Financial Market Law and Regulation.
Data Protection and Records Management
Europol’s tailor-made data protection framework
Lecture to Carleton University, Center for European Studies, December 1, 2010.
Per Anders Eriksson
From European to international standards on data protection (1/2)
Consumer Protection Working Party Meeting Sponsor.
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
Acceptable Means of Compliance & Alternative Means of Compliance Margit Markus Moossen Legal department 31 January 2013.
European Data Protection Supervisor Freedom of Information Day, Budapest, 28 September 2010 Data Protection and Freedom of Information at EU level Peter.
Information Sharing Sheila Logan Information Commissioner’s Office Employability Partnership Event Glasgow 13 August 2009.
Ten Principles of Fair Trading Practice 3 General Principles 1.Consumer Interests and sustainability 2.Freedom of Contract 3.Fair Dealing 3 General Principles.
MiFID and Derivative Markets Burçak Inel Head of Regulatory Affairs Federation of European Securities Exchanges (FESE) 9 th Annual Conference of the Association.
Data Protection Privacy in the Digital Age: the UN General Assembly Resolution Sophie Kwasny, 16 October th International Conference, Mauritius.
Proposal for a Directive on Alternative Investment funds managers (AIFM) CEPS Conference on the AIFM Directive Bruxelles, 29 June 2009.
Finding a PPP Partner Essential EU Law Considerations Bernard Wilson Maribor, 18 January 2005 Bernard Wilson Maribor, 18 January 2005.
Socially Responsible Public Procurement Ethical Procurement Christine Storry 25 March 2011.
European Data Protection Supervisor Pharmaceutical Regulatory & Compliance Congress, Brussels, 7 June 2007 European Privacy and Data Protection Policy.
The Data Protection Act - Confidentiality and Associated Problems.
The right item, right place, right time. DLA Privacy Act Code of Fair Information Principles.
WHOIS data The EU legal principles ICANN - GNSO meeting 2 March 2004 George Papapavlou, European Commission ICANN - GNSO meeting 2 March 2004 George Papapavlou,
Christoph Klug GDD © GDD e.V. gdd German Association for Data Protection and Data Security Christoph Klug ATTORNEY AT LAW Phone: / Fax: /
Defining and applying mitigating and aggravating circumstances. Relevant changes to the amount of fine. Defining and applying mitigating and aggravating.
European Data Protection Supervisor Inhye Lee. What is EDPS?  Located in Brussels, Belgium  Established in January 2004  Peter Hustinx, Joaquin Bayo.
Data protection and European citizens’ initiatives
An Introduction to the Privacy Act Privacy Act 1993 Promotes and protects individual privacy Is concerned with the privacy of information about people.
Issues Related to Global Information Systems A business can’t just worry about its home- country laws, rules and regulations. If a business has global.
APEC Engineers Workshop Legal Considerations - Central Register Sept 2015 Angela Frawley, General Counsel.
European Data Protection Supervisor CRIM, EP, 17 September 12 Cybercrime and Data protection Hielke HIJMANS Head of Unit Policy & Consultations.
FOIA Processing and Privacy Awareness at NOAA Prepared by Mark H. Graff NOAA FOIA Officer OCIO/GPD (301)
DON Code of Privacy Act Fair Information Principles DON has devised a list of principles to be applied when handling Protected Personal Information (PPI).
© University of Reading Lee Shailer 06 June 2016 Data Protection the basics.
The EU General Data Protection Regulation Frank Rankin.
Data protection—training materials [Name and details of speaker]
FIRST CONTRACTUAL SAVINGS CONFERENCE : SUPERVISORY AND REGULATORY ISSUES IN PRIVATE PENSIONS AND LIFE INSURANCE SUPERVISORY AND REGULATORY PRACTICES IN.
Data Protection Laws in the European Union John Armstrong CMS Cameron McKenna.
Data Protection Officer’s Overview of the GDPR
GDPR (General Data Protection Regulation)
Data protection headaches: GDPR, brexit AND perimeter risk
Microsoft 365 Get help with regulatory compliance
Overview of public participation in strategic decision-making in the UNECE area David Aspinwall.
General Data Protection Regulation
General Data Protection Regulations Preparing for the upcoming changes in data protection law David Jones & Angharad Williams.
Information Governance and Data Privacy: A World of Risk
EU Directive 95/46/EC (Paragraph 2) “Whereas data-processing systems are designed to serve man; whereas they must Respect their fundamental rights.
GDPR Road map to Compliance.
Bob Siegel President Privacy Ref, Inc.
Cyberforum 2018 March 8, 2018 Los Angeles GDPR & SECURITY
GDPR - New Data Protection Regulation
Transatlantic Privacy Issues: Scope for Co-operation or Conflict?
State of the privacy union
G.D.P.R General Data Protection Regulations
Preparing for the GDPR - What do we need to do if we process children’s personal data? Data Protection Practitioners’ Conference 2018 #DPPC2018.
Identify the laws and guidelines that affect day-to-day use of IT.
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
General Data Protection Regulation (GDPR)
The EDPS: competences and processing of personal data in EU funds
EU Data Protection Legislation
THE IMPACT OF DATA PROTECTION RULES ON CORPORATE INFO SECURITY AND INCIDENT RESPONSE MANAGEMENT – The Energy sector CEER Cybersecurity Workshop Massimo.
Presentation transcript:

European Data Protection Supervisor EC Data Protection Conference, Brussels, 20 May 2009 Transparency and Notification in the Age of Internet: more Effective Protection in Practice Peter Hustinx 20 May 2009

European Data Protection Supervisor EC Data Protection Conference, Brussels, 20 May 2009 Transparency Key principle of data protection Fair and lawful processing –Awareness of data subjects –Scrutiny by general public Notification to supervisory authority Ensuring effective compliance –Focus on four dimensions

European Data Protection Supervisor EC Data Protection Conference, Brussels, 20 May 2009 Controllers Responsibility is legally implied Data governance and accountability –More transparency and internal control Relevant options for improvement –Mandatory security breach notification –Scope of security measures »Against unlawful forms of processing

European Data Protection Supervisor EC Data Protection Conference, Brussels, 20 May 2009 Data subjects Information on collection –Fairness in specific circumstances –Exception if already informed Provide earlier when appropriate Layered information notices –Useful guidance of WP29

European Data Protection Supervisor EC Data Protection Conference, Brussels, 20 May 2009 Supervision Obligation to notify –Prior checking, notification, exemptions, etc. –Significant diversity at national level Search for alternatives –Simplified registration of controllers –Additional requirements for risks –Data governance and accountability –Third party verification and transparency –Strong powers and effective sanctions

European Data Protection Supervisor EC Data Protection Conference, Brussels, 20 May 2009 General public Registers of limited use Enhance public accountability –Assurance in public reports –Competition in data protection Scalable requirements for SMO Effective checks and balances

European Data Protection Supervisor EC Data Protection Conference, Brussels, 20 May 2009 More information: Postal address: Rue Wiertz 60 - MO 63 B-1047 Brussels