Information Governance Policies. Business Support and Corporate Information Resources Team… Working to create a knowledge led organisation Information.

Slides:



Advertisements
Similar presentations
Auditing, Assurance and Governance in Local Government
Advertisements

Confidentiality & Records Management. What is Information Governance? What is Records Management?
PIPA PRESENTATION PERSONAL INFORMATION PROTECTION ACT.
Data Protection webinar: Data Protection & Volunteers 19 th June 2014 Welcome. We’re just making the last few preparations for the webinar to start at.
1 Pertemuan 7 Points of Exposure Matakuliah:A0334/Pengendalian Lingkungan Online Tahun: 2005 Versi: 1/1.
The role of the Office of the Privacy Commissioner in telecommunications Andrew Solomon Director, Policy.
Property of Common Sense Privacy - all rights reserved THE DATA PROTECTION ACT 1998 A QUESTION OF PRINCIPLES Sheelagh F M.
Implications of SAS 112 NCURA Regional Meeting Park City, Utah April 22-27, 2006.
Audiences NI Data Protection Workshop
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
An overview of the Data Protection Act Legal framework The Data Protection Act 1998 came into force in March 2001, replacing the Data Protection.
Data Protection for Church of Scotland Congregations
CENTRAL SCOTLAND POLICE Data Protection & Information Security Stuart Macfarlane Information Governance Unit Police Service of Scotland.
Practical Information Management
Handling information 14 Standard.
An Educational Computer Based Training Program CBTCBT.
Audit Commission Presentation Salford City Council Consideration of the financial statements.
Open Data Platform Supplier Forum 13 January 2012.
Topic 4 How organisations promote quality care Codes of Practice
Designing Smart Cities Conference University of Strathclyde, Glasgow 31 st March 2015 “Regulating Smart Cities: Policing & Privacy” Paul Mackie Chief Executive.
1 Freedom of Information (Scotland) Act 2002 A strategic view.
Data Protection STFC Presentation to PPD Senior Staff 26/11/2009 FoI/DP team.
The Rail Safety Summit  2015 RAIL SAFETY SUMMIT 2015.
Data Protection Act & Freedom of Information Simon Mansell Corporate Governance and Information Team.
Data Protection and Records Management. Key Responsibilities - Record Management Keep Information Accurate Disclose only if compatible with purpose for.
Local Government Reform and Compliance with the DPA Ken Macdonald Assistant Commissioner (Scotland & Northern Ireland) Information Commissioner’s Office.
Data Protection Property Management Conference. What’s it got to do with me ? As a member of a management committee responsible for Guiding property you.
Safeguarding - LINK GOVERNOR. Safeguarding – Why Section 175 requires school governing bodies, local education authorities and further education institutions.
ISO/IEC 27001:2013 Annex A.8 Asset management
International Security Management Standards. BS ISO/IEC 17799:2005 BS ISO/IEC 27001:2005 First edition – ISO/IEC 17799:2000 Second edition ISO/IEC 17799:2005.
An Introduction to the Privacy Act Privacy Act 1993 Promotes and protects individual privacy Is concerned with the privacy of information about people.
Human Rights Act, Privacy in the context of auditing Phil Huggins Chief Technologist, IRM PLC
A New Standard for Disposal Mark Crookston Senior Advisor Appraisal Government Recordkeeping Group.
? Moral principles of right and wrong Used by individuals/organisations To guide behaviour.
Personal data protection in research projects
Information Security TechLink Seminar, 17 April 2013 James Knapton, Information Compliance Officer, Registrary’s Office.
Introduction to the Australian Privacy Principles & the OAIC’s regulatory approach Privacy Awareness Week 2016.
1 Information Governance (For Dental Practices) Norman Pottinger Information Governance Manager NHS Suffolk.
BTEC NAT Unit 15 - Organisational Systems Security ORGANISATIONAL SYSTEMS SECURITY Unit 15 Lecture 7 EMPLOYMENT CONTRACTS & CODES OF CONDUCT.
Section 4 Policies and legislation AQA ICT A2 Level © Nelson Thornes Section 4: Policies and Legislation Legislation – practical implications.
7/7/20161 The Public Sector Equality Duty for Schools in England Jonathan Timbers – Policy Manager, PSED Team, Equality and Human Rights Commission.
Child safe guarding Child protection in your organisation.
General Data Protection Regulation (EU 2016/679)
Data Protection Session
GDPR Awareness and Training Workshop
General Data Protection Regulations: what you really need to know
General Data Protection Regulations Preparing for the upcoming changes in data protection law David Jones & Angharad Williams.
Data Protection & Freedom of Information- An Introduction
GDPR - Individual’s Rights
GENERAL DATA PROTECTION REGULATION (GDPR)
Sue Cawthray, CEO/ Gill Thrush, Catering Manager
G.D.P.R General Data Protection Regulations
The Public Sector Equality Duty
Employee Privacy and Privacy of Employee Information
General Data Protection Regulation
Data Protection principles
SURVEILLANCE IN THE WORKPLACE: WHAT YOU SHOULD KNOW
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
A whistle stop tour of GDPR
How we’ll prepare for the General Data Protection Regulation (GDPR)
Information management and communication
General Data Protection Regulations 2018
 How does GDPR impact your business? Pro Tip: Pro Tip: Pro Tip:
Quick Facts Health & Safety Management
The Public Sector Equality Duty
New employee induction for new staff and managers
Data Protection What can I do? GDPR Principles General Data Protection
Handling information 14 Standard.
Is your medico-legal practice GDPR compliant?
Operational Risk Management
Presentation transcript:

Information Governance Policies

Business Support and Corporate Information Resources Team… Working to create a knowledge led organisation Information Governance Policies Data Encryption & Transportation Policy Information Access Policy Monitoring of Communications Policy

Business Support and Corporate Information Resources Team… Working to create a knowledge led organisation Data Encryption & Transportation Policy This policy has been developed to provide clear statements to all users on the do's and don'ts in respect of the transportation of personal data Is designed to support and improve our handling of personal data, at a time when losses of personal data are being widely reported in the media and the Information Commissioners Office (ICO) is extending its powers to take action against organisations losses such data. Provides clear guidance and tools to support better management of personal information Is designed to ensure that clear standards are in place to protect personal data and reassure citizens that we are actively taking steps to ensure the security of there data Will demonstrate to external bodies / assessors e.g. partners, ICO, Audit Commission that we are taking our responsibilities in respect of personal data seriously

Business Support and Corporate Information Resources Team… Working to create a knowledge led organisation Information Access Policy This policy is intended to provide a framework that will support improved access to information, both across and outside (e.g. partners and members of the public) the council whilst at the same time ensuring that information is appropriately protected. In doing so it will set out: –The different categories of information that the council holds –How information can be grouped into these categories. The principles by which different categories of information need to be managed throughout their life-cycle, (e.g. how they should be stored, accessed, used, shared, protected and disposed of)

Business Support and Corporate Information Resources Team… Working to create a knowledge led organisation Monitoring of Communications Policy The Telecommunications (Lawful Business Practice) (Interception of Communications) Regulations 2000 came into force on 24th October Their purpose is to give businesses a lawful basis for the interception of business communications without the users' consent for a range of purposes. The regulations cover all types of communications including those that are Internet based, by fax, by telephone and by and allow businesses, government department, and any public authority to monitor or record communications. Salford City Council will monitor communications in accordance with the above regulations. employees will be made aware when any monitoring is taking place and might not necessarily be asked for consent. Managers must ensure that they adopt this policy whenever monitoring is being undertaken. Employees must be made aware when any monitoring is taking place Proportionality, justification and transparency will need to be considered in all cases in order to comply with The Data Protection Act and The Human Rights Act. (See Appendix 1) This policy is intended to promote awareness of the council's intention to monitor communications, undertaken by employees. This policy is intended to inform managers of the correct procedures which are to be adopted, whenever monitoring is undertaken. It acts as an overarching policy, underneath which, bespoke monitoring policies must sit. NB this policy does NOT cover covert monitoring.