7-Oct-15 Threat on personal data Let the user be aware Privacy and protection
What is privacy Privacy is the interest that individuals have in sustaining a 'personal space', free from interference by other people and organizations The ability to control access to personal information
Dimensions of privacy privacy of the person privacy of personal behaviour privacy of personal communications privacy of personal data
You can decide What information you share Whom you share information with How you share the information
You cannot decide Criminal attempts at obtaining private information Conclusions that are drawn from observations of you or your actions A third party, trusted or not, passing the information on to another Key information imposed on you that is ultimately controlled by some other organization, such as a government ID number or a credit card
How we can keep privacy Keeping secrets Use discretion Establishing trust Law
How we can keep data privacy Use encryption in digital communication Use anonymizer services
What is personal data Data concerning you Personal information Financial data Patient records Your interests and hobbies Your buying behaviour Your political inclination
Personal Information collected (eCommerce purpose) Name Age address Identity reference Credit card number and expiry date Address Telephone or fax or pager number
Other Information IP address Cookies ……..
Breach of privacy Junk mail Spyware Identity theft Phishing
Privacy Protection Privacy Protection is a process of finding appropriate balances between privacy and multiple competing interests. It is expected by the public that organizations, both public and private should be subjected to privacy regulations
Privacy Protection Management of an organization is responsible to adhere and comply with privacy in accordance with its privacy policy or applicable privacy laws and regulations For some countries, laws and guidelines are set up specifically for government, business and health organizations
Personal Data (Privacy) Ordinance of HK Purpose and manner of collection Accuracy and duration of retention Use of personal data Security of personal data Information to be generally available Access to personal data
Right under the Personal Data (Privacy) Ordinance of HK To check whether a company hold data about you and to access such data; To require the company to correct any inaccurate data relating to you; and To be told the company’s policies and practices in relation to personal data and the kind of personal data held by the company.
What organizations should do To promote consumer protection in the cyberspace To establish a privacy policy and make it easy to access and understand
Privacy Policy What kind of personal data are collected How are the information used How long are the information retained How would the data be destroyed Would the information be shared with third party? Under what circumstances would the information be disclosed?
Privacy Policy In what form are the information kept in the computer What is the policy on employee access
What you can do Disclose your personal information with care Keep your identity from getting trashed Control your personal financial information Beware of phishing Be careful in downloading free programs Click with caution Stop pre-approved credit offers
What you can do Buy from refuted company Buy from company with stated privacy policy Check whether security device/procedure is being used