1 Office of the Privacy Commissioner for Personal Data Hong Kong SAR Tony LAM Deputy Privacy Commissioner for Personal Data Asian Personal Data Privacy.

Slides:



Advertisements
Similar presentations
VOLUNTARY PRINCIPLES ON SECURITY & HUMAN RIGHTS. What are the Voluntary Principles? Tripartite, multi-stakeholder initiative Initiated in 2000 by UK Foreign.
Advertisements

1 Enforcement Powers of National Data Protection Authorities and Experience gained of the Data Protection Directive Safe Harbour Conference Washington.
Data privacy law in Asia-pacific -introduction to the privacy law in China (mainland China and Hong Kong) Yue Liu
What is GARP®? GARP® is an Acronym for Generally Accepted Recordkeeping Principles ARMA understands that records must be.
SEMINAR NAIC/ASSAL/SVS REGULATION & SUPERVISION OF MARKET CONDUCT © 2014 National Association of Insurance Commissioners Overview and Purpose of Market.
Cyber Security and Data Protection Presented by Mrs Drudeisha Madhub (Data Protection Commissioner ) Tel: Helpdesk:+230.
Health Insurance Portability and Accountability Act HIPAA Education for Volunteers and Students.
AMSRO Leaders Forum 2014 Presentation by Timothy Pilgrim to AMSRO Sydney, Thursday 20 March 2014.
Presentation to OAS officials/ representatives 2 nd October, 2012.
VIU Workshop: Creating a Culture of Privacy Awareness June 12, 2013 By Justin Hodkinson OIPC Policy Analyst/Investigator Office of the Information & Privacy.
Data-Sharing and Governance Consultation ANALYSIS OF RESPONSES.
1 PRIVACY ISSUES IN THE U.S. – CANADA CROSS BORDER BUSINESS CONTEXT Presented by: Anneli LeGault ACC Greater New York Chapter Compliance Seminar May 19,
The Australian Privacy Principles Protecting information rights –­ advancing information policy.
The Good Practice Guide – what we look for during an Audit of a Credit Union Billy Hawkes Data Protection Commissioner Credit Unions.
Chief Information Officer Branch Gestion du dirigeant principal de l’information “We will have a world class public key infrastructure in place” Prime.
6/1/2015MINISTRY OF ENERGY, COMMUNICATIONS AND MULTIMEDIA 1 PRESENTATION OF PERSONAL DATA PROTECTION BILL PRESENTATION OF PERSONAL DATA PROTECTION BILL.
Hong Kong Privacy Code on Human Resource Management
Information Security Policies and Standards
Introduction to the APPs and the OAIC’s regulatory approach Presented by: Este Darin-Cooper Director, Regulation and Strategy May 2015.
The role of the Office of the Privacy Commissioner in telecommunications Andrew Solomon Director, Policy.
© 2003, EDUCAUSE Information Privacy: Public Policy and Institutional Policies Rodney J. Petersen Policy Analyst, EDUCAUSE EDUCAUSE/Internet2 Security.
A European View of Privacy Protection John Woulds Director of Operations UK Data Protection Commissioner National Conference on Privacy, Technology & Criminal.
Minnesota Law and Health Information Exchange Oversight Activities James I. Golden, PhD State Government Health IT Coordinator Director, Health Policy.
Personal Data Privacy and The Internet by Stephen Lau Privacy Commissioner for Personal Data, Hong Kong SAR at the Joint Conference of the OECD, HCOPIL,
Anglican Province of Canada Privacy Policy. Commitment to Privacy The Privacy Policy, including the Web Privacy Statement, is the Anglican Province of.
Information Commissioner’s Office: data protection Judith Jones Senior Policy Officer Strategic Liaison – public security 16 November 2011.
Personal Data (Privacy) Ordinance Hong Kong Personal Data (Privacy) Ordinance Hong Kong by Stephen Lau Privacy Commissioner for Personal Data Hong Kong.
Keeping on top of the Cloud - Compliance from a Regulator’s Perspective Henry Chang, IT Advisor Office of the Privacy Commissioner for Personal Data, Hong.
How the Information Commissioner’s office operates as a regulator David Smith Deputy Information Commissioner.
Non-immigration Applications for Incorporation into the Smart ID Card Information Technology and Broadcasting Bureau 20 December 2001.
1 Introduction to the Personal Data (Privacy) Ordinance.
13 July 2006Susan Joseph Health Privacy It’s My Business Health Records Act 2001 (Vic) eReferral Service Co-ordination System.
Privacy Codes of Conduct as a self- regulatory approach to cope with restrictions on transborder data flow Dr. Anja Miedbrodt Exemplified with the help.
Student ID:MA3N0202 Name: Li-Wen Chang(Jenny) 1.  What’s the “Financial supervision mechanism”  The Financial Supervisory Commission (FSC)  Case ─
Designing Smart Cities Conference University of Strathclyde, Glasgow 31 st March 2015 “Regulating Smart Cities: Policing & Privacy” Paul Mackie Chief Executive.
7-Oct-15 Threat on personal data Let the user be aware Privacy and protection.
Protecting information rights –­ advancing information policy The Australian Privacy Principles.
Surveillance & Special Measures Care & Support West Spring Conference 30 April 2015.
GLOBAL ASSESSMENT OF STATISTICAL SYSTEM OF KAZAKHSTAN ZHASLAN OMAROV DEPUTY CHAIRMAN, STATISTICS AGENCY OF REPUBLIC OF KAZAKHSTAN. 4.3.
Outcomes from service inspection Is the quality of care in Scotland improving? October 2007.
The right item, right place, right time. DLA Privacy Act Code of Fair Information Principles.
Regulatory Transparency and Efficiency in the Communications Industry in Australia Jennifer Bryant Office of Regulation Review Australia.
PIPEDA and Receivables Management Robin Gould-Soil Receivables Management Association of Canada November 16, 2011.
BC Public Libraries November, 2008 Privacy Principles.
Malcolm Crompton APEC Information Privacy Framework: review, impact, & progress APEC Symposium on Information Privacy Protection in E Government & E Commerce.
1 Office of the Privacy Commissioner for Personal Data Hong Kong SAR Tony LAM Deputy Privacy Commissioner for Personal Data Briefing to Asian Data Privacy.
1 PARCC Data Privacy & Security Policy December 2013.
An Introduction to the Privacy Act Privacy Act 1993 Promotes and protects individual privacy Is concerned with the privacy of information about people.
Fred Carter Senior Policy & Technology Advisor Information and Privacy Commissioner Ontario, Canada MISA Ontario Cloud Computing Transformation Workshop.
Breakaway Session 2: Data Protection and The Role of the Data Protection Supervisor Michael Mingle Director, NTSS Solutions (UK) D ATA P ROTECTION C ONFERENCE.
Personal data protection in research projects
Introduction to the Australian Privacy Principles & the OAIC’s regulatory approach Privacy Awareness Week 2016.
Sharing Personal Information Programme Wales Accord on the Sharing of Personal Information (WASPI) for organisations involved in the protection, safety,
Quality Assurance Lincolnshire County Council Provider Forum Handout 2010.
Incorporating Privacy Into Systems Development Methodology Phil Moleski Director Corporate Information Technology Branch Saskatchewan Health
SUNY Maritime Internal Control Program. New York State Internal Control Act of 1987 Establish and maintain guidelines for a system of internal controls.
Supervision of Insurance Market Conduct in Canada
Regulatory Transparency and Efficiency in the Communications Industry in Australia Jennifer Bryant Office of Regulation Review Australia.
Security Awareness Training: System Owners
Law on Family Registration (Amended 2017)
The activity of Art. 29. Working Party György Halmos
Overview of the Office of Health Standards Compliance
Overview of the Office of Health Standards Compliance
Purpose & Overview of the Office of Health Standards Compliance
Overview of the Office of Health Standards Compliance
Overview of the Office of Health Standards Compliance
Overview of the Office of Health Standards Compliance
Overview of the Office of Health Standards Compliance
Overview of the Office of Health Standards Compliance
Overview of the Office of Health Standards Compliance
Presentation transcript:

1 Office of the Privacy Commissioner for Personal Data Hong Kong SAR Tony LAM Deputy Privacy Commissioner for Personal Data Asian Personal Data Privacy Forum March Privacy Commissioner’s Office, Hong Kong SAR

2 Functions of the Privacy Commissioner Independent authority established to monitor & supervise compliance with the provisions of the Personal Data (Privacy) Ordinance Approve & issue codes of practice Promote awareness and understanding of, and compliance with, the provisions of the Ordinance Investigate, upon receipt of complaints, or on his own initiative, suspected breaches of requirements of the Ordinance

3 The Personal Data (Privacy) Ordinance Enacted 3 August 1995 Commenced operation 20 December 1996 Based on internationally accepted data protection principles Apply to personal data of living individuals Govern private sector and public sector

4 The Personal Data (Privacy) Ordinance Protecting the privacy interests of living individuals in relation to personal data Contributing to Hong Kong’s continued economic well being by safeguarding the free flow of personal data to Hong Kong by countries that already have data protection laws

5 Data Protection Principles DPP1 - Purpose and Manner of collection DPP2 - Accuracy & Retention of data DPP3 - Use Limitation DPP4 - Security safeguards DPP5 - Openness of Privacy Policy DPP6 - Data Access & Correction Requests

6 Privacy Commissioner’s Office Mission Statement To ensure the protection of privacy of the individual with respect to personal data through promotion, monitoring and supervision of compliance with the Personal Data (Privacy) Ordinance in a cost effective and efficient manner

7 Strategic Guidance Annual Survey Contemporary practices Enquiries and complaints Privacy issues in other jurisdictions Technology trends Privacy solutions (private and public sector initiatives)

8 Hong Kong 2000 Community Opinion Survey Importance of social policy issues in Hong Kong

9 The PCO has increased the community awareness of personal data privacy issues

10 Enquiry Statistics 27%

11 Complaint Statistics 28%38%

12 Compliance Enforcement Inspection methodology Compliance checks –proactive approach –recommendations to promote compliance Compliance self-assessment –voluntary self-checking by data users –compliance assessment kit - checklists, guidance & training materials

13 Promoting Compliance - Code of Practice Hong Kong Identity Card1998 Consumer Credit Data1999 Human Resource Management2000 Workplace Surveillance2001

14 Privacy & Technology solutions Smart card technology –Electronic ID card, Hospital health card, Personalised Octopus card Internet and e-commerce –Digital certificate, Electronic Services Delivery Surveillance monitoring technology –Fingerscan system, use of CCTV, DNA databases –Electronic Road Pricing

15 Hong Kong 2000 Community Opinion Survey Long term benefits of the Ordinance: Strongly agree / agree