Data Sharing – Back to Basics Ken Macdonald Assistant Commissioner Information Commissioner’s Office National Community Safety Convention 10 September.

Slides:



Advertisements
Similar presentations
IMPS Information Management and Policy Services Information Services Directorate A briefing for all University staff November 2004 New Information Legislation.
Advertisements

Data Protection Billy Hawkes Data Protection Commissioner Irish Human Rights Commission 20 November 2010.
Regulators’ Code July Regulators’ Code A statutory Code Came into effect in April 2014, replacing the Regulators’ Compliance Code All local authorities.
Introduction to basic principles of Regulation (EC) 45/2001 Sophie Louveaux María Verónica Pérez Asinari.
In confidence Chair: Storm Westmaas Principal Legal Adviser, the Standards Board for England Speakers: Bernadette Livesey Chief Law and Administration.
Data Protection Information Management / Jody McKenzie.
Getting data sharing right for every child
Privacy by Design Maureen H Falconer Sr Guidance & Promotions Manager Building a Successful Information Sharing Partnership: Privacy by Design 13 August.
Big Data and data protection
Hong Kong Privacy Code on Human Resource Management
Introduction to the APPs and the OAIC’s regulatory approach Presented by: Este Darin-Cooper Director, Regulation and Strategy May 2015.
1 Regulatory Challenges During and Following a Major Safety or Security Event Muhammad Iqbal Pakistan Nuclear Regulatory Authority Presentation at General.
Freedom of Information – a brief guide David Evans.
Information Commissioner’s Office: data protection Judith Jones Senior Policy Officer Strategic Liaison – public security 16 November 2011.
Audiences NI Data Protection Workshop
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
An overview of the Data Protection Act Legal framework The Data Protection Act 1998 came into force in March 2001, replacing the Data Protection.
The ICO and the DPA Ken Macdonald Assistant Commissioner Information Commissioner’s Office ScotStat Public Sector Analysts Network 30 th September 2010.
How the Information Commissioner’s office operates as a regulator David Smith Deputy Information Commissioner.
Who we are and what we do An introduction to the Information Commissioner’s Office.
Data Sharing and Good Practice Maureen H Falconer Sr Policy Officer Information Commissioner’s Office.
The Information Commissioner’s Office David Evans.
Bernadette Malone – Chief Executive Perth and Kinross Council and Chair of GIRFEC National Implementation Working Group Alan Small -Information Sharing.
Data Protection in Financial Services Are you Seeing the Bigger Picture? 17 September 2008.
13 July 2006Susan Joseph Health Privacy It’s My Business Health Records Act 2001 (Vic) eReferral Service Co-ordination System.
1 Freedom of Information (Scotland) Act 2002 A strategic view.
Data Protection Act obligations and pseudonymisation Dawn Monaghan Group Manager Information Commissioners Office.
Privacy Impact Assessment Workshop Maureen H Falconer Sr Guidance & Promotions Manager Scotstat Public Sector Analysts Network 30 September 2010.
Data Protection: An enabler? David Freeland, Senior Policy Officer 23 October 2014.
Good governance in cross-sectoral data sharing and data linkage for research and evaluation purposes 29 September 2011 Graeme Laurie Edinburgh Law School.
Data Protection Act & Freedom of Information Simon Mansell Corporate Governance and Information Team.
Local Government Reform: Incorporating Planning Functions Ken Macdonald Assistant Commissioner (Scotland & Northern Ireland) Information Commissioner’s.
Information Sharing Workshop Maureen H Falconer Sr Guidance & Promotions Manager MIS Event Glasgow 13 August 2009.
Local Government Reform and Compliance with the DPA Ken Macdonald Assistant Commissioner (Scotland & Northern Ireland) Information Commissioner’s Office.
Information sharing: the view from the ICO Vicky Cetinkaya, Senior Policy Officer, ICO One Staffordshire Information Sharing Protocol launch event Stafford,
Data Protection - Rights & Responsibilities Information Commissioner’s Office Orkney Practice Forum 4 th July 2007.
Data Protection Act The Data Protection Act (DPA) is a balance between rights of the DATA SUBJECT and obligations of the DATA CONTROLLER DATA CONTROLLER.
1 Role of the Data Protection Officer Donald Henderson Information Compliance Manager 30 September 2010.
Health and Disability Consumer Advocacy Service A Service provided under the Health and Disability Commissioner Act 1994.
© University of Reading Lee Shailer 06 June 2016 Data Protection the basics.
Can you share? Yes you can!! Angus Council Adult Protection Maureen H Falconer, Senior Policy Officer Information Commissioner’s Office.
Information Security TechLink Seminar, 17 April 2013 James Knapton, Information Compliance Officer, Registrary’s Office.
Introduction to the Australian Privacy Principles & the OAIC’s regulatory approach Privacy Awareness Week 2016.
Getting data sharing right for every child Maureen H Falconer Senior Policy Officer Information Commissioner’s Office.
Workshop Understanding your responsibilities under the Data Protection Act 1998 and the Freedom of Information Act 2000 Adele Rhodes Girling.
Data protection—training materials [Name and details of speaker]
Uses of brain imaging data: privacy and governance implications Dr. Hester Ward Medical Director, Information Services Division, (ISD) Consultant in Public.
Commissioning Services: with the DPA in mind South Yorkshire Information and Data Sharing Group Sheffield 14 th August 2014 Lynne Shackley Lead Policy.
The UK Information Commissioner’s Office (ICO)
Overview General Data Protection Regulation (GDPR)
Data Protection : A Practical Guide
Privacy Impact Assessments (PIAs)
General Data Protection Regulation
Museums + Heritage webinar, 30 November 2017
GDPR Overview Gydeline – October 2017
GDPR Overview Gydeline – October 2017
GENERAL DATA PROTECTION REGULATION (GDPR)
General Data Protection Regulation
GDPR and paper records Why it’s not all cyber and fines Gary Shipsey
Data protection reform – update from the ICO
Privacy: a work in progress
Information Governance
Identify the laws and guidelines that affect day-to-day use of IT.
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
General Data Protection Regulation (GDPR)
General Data Protection Regulations 2018
GDPR & Accountability ISACA Ireland Annual Conference 2018
Data Protection in Law Enforcement Area Chapter 9a of the draft law
Overview of the recommendations regarding approximation of the Law on personal data protection to the new EU General data protection regulation Valerija.
The ICO: New Powers and Penalties
Presentation transcript:

Data Sharing – Back to Basics Ken Macdonald Assistant Commissioner Information Commissioner’s Office National Community Safety Convention 10 September 2013

Content The Information Commissioner’s Office Group Work The Data Sharing Code of Practice

The Information Commissioner’s Office

The UK’s independent authority set up to uphold information rights in the public interest, promoting openness by public bodies and data privacy for individuals Regulator of: The Data Protection Act 1998 The Privacy and Electronic Communication Regs 2003 The Freedom of Information Act 2000 The Environmental Information Regs 2004

The Information Commissioner’s Office Information Commissioner: Christopher Graham Head Office – Wilmslow, Cheshire Regional Offices in Edinburgh, Belfast and Cardiff

Group Work

ICO Data Sharing Code of Practice

Data Sharing and the Law Deciding to Share Fairness, transparency & Consent Governance Security of shared information Individual Rights Notification Things to avoid Protocols

Data Sharing and the Law Check your vires Express Obligations – legal requirement to share Express Powers – a stated power to share, but not to the extent of an obligation Implied Powers – sharing is reasonably incidental to an activity within express obligations/powers Take legal advice before proceeding

Deciding to Share Why do you want to share ? What information do you need to share? Who will you share it with ? When should it be shared ? How should it be shared ? Can the objectives be achieved differently ?

Fairness, Transparency & Consent (1) Privacy notices Who you are Why you want to share Who you are sharing with Passive v Active Privacy Notices

Fairness, Transparency & Consent (2) Do NOT seek consent if statutory requirement Nevertheless, normally good practice to inform of sharing Consent most likely required where: – confidential information to be shared without clear legal basis – individuals may be expected to object – where there may be a significant and adverse impact on an individual/group

Governance Data Sharing Agreements / Protocols Privacy Impact Assessments Data Standards Staff Training

Security of Shared Information Organisational Security Physical Security Technical Security

Individual Rights Rights to Access Right to Object Queries and Complaints

Notification Legal requirement Keep your notification up-to-date Prosecutions are frequent

Things to avoid Failure to inform individuals about sharing Sharing excessively Sharing irrelevant information Sharing inaccurate information Sharing insecurely

Information Sharing Protocols Purpose of Sharing Partner Organisations Data to be shared Legal basis for sharing Meeting individuals’ rights Governance

Information Commissioner’s Office 45 Melville Street Edinburgh EH3 7HL