Privacy Laws & Regulation

FILTER BY:
Data quality -- the forgotten privacy principle (2007) resource Articles OCEG Reviewed
Nearly every major privacy law requires "data quality," but it’s become the most forgotten of all of the internationally recognized privacy principles. Why? Three reasons: The laws provide few details on what "data quality" means; companies violating this principle don’t make the headlines; and it’s not exactly clear what data quality has to do with privacy, anyhow.
Read more
Information Lifecycle Management for Business Data (2007, Oracle) resource White Papers OCEG Reviewed
Although most organizations have long regarded their stores of data as one of their most valuable corporate assets, how this data was managed and maintained varies enormously. Originally, data was used to help achieve operational goals, run the business and help identify the future direction and success of the company. However, new government regulations and guidelines are a key driving force in how and why data is being retained, as they are now requiring organizations to retain and control information for very long periods of time.
Read more
Solving the Compliance vs. Mobile Dilemma (2006) resource Articles Member contributionOCEG Reviewed
How to comply with regulations when users walk out the door carrying high-risk data on mobile devices.   Devices such as laptops, handhelds, smart phones and thumb drives are easily lost or stolen. If that happens, and if the device carries regulated data, your organization likely will be out of compliance with regulations.   ComputerWorld, September 14, 2006
Read more
Meeting Compliance and Privacy Requirements - The Case for Electronic Distribution (2007) resource White Papers Member contributionOCEG Reviewed
Posted by Knowledge Storm - Free Registration Required   Distributed document imaging has empowered the knowledge worker to convert paper documents into electronic files and move them through the organization and beyond at the speed of the Internet. While many organizations realize that document imaging provides great benefits to an organization in terms of cost savings, productivity improvements and increased business effectiveness, it is less obvious that it can help you meet privacy and compliance regulations.
Read more
Transferring Personal Data From Europe: Corporations Take Charge (2007) resource Articles Member contributionOCEG Reviewed
EUROPEAN data privacy laws prohibit the transfer of personal data to jurisdictions whose laws do not provide protection for personal data equivalent to that provided in Europe (the "adequacy requirement"). At present, only a limited number of jurisdictions have laws - and the U.S. is not among them - that satisfy this requirement. They are Argentina, Canada and Switzerland, and two British Crown dependencies, the Bailiwick of Guernsey and the Isle of Man.
Read more
ALRC Discussion Paper 72: Review of Australian Privacy Law resource International Materials Member contributionOCEG Reviewed
On 30 January 2006, the Attorney-General, the Hon Philip Ruddock MP, asked the Australian Law Reform Commission (ALRC) to conduct an inquiry into the extent to which the Privacy Act 1988 (Cth) and related laws continue to provide an effective framework for the protection of privacy in Australia.   Key Proposals for Reform: The current Inquiry is the one of the largest projects ever undertaken by the ALRC. In the three volumes of this Discussion Paper, approximately 300 proposals for reform are put forward for consideration.
Read more
California, Recommended Practices on Notice of Security Breach Involving Personal Information (2007) resource Agency Guidances Member contributionOCEG Reviewed
California Office of Privacy Protection, February 2007   California law obligates the California Office of Privacy Protection to protect the privacy of individuals’ personal information by “identifying consumer problems in the privacy area and facilitating [the] development of fair information practices.” One of the ways that the Office is directed to do this is by making “recommendations to organizations for privacy policies and practices that promote and protect the interests of California consumers.”    <
Read more
DoED, Family Educational Rights and Privacy Act (FERPA) resource Agency Guidances Member contributionOCEG Reviewed
The Family Educational Rights and Privacy Act (FERPA) (20 U.S.C. § 1232g; 34 CFR Part 99) is a Federal law that protects the privacy of student education records. The law applies to all schools that receive funds under an applicable program of the U.S. Department of Education.
Read more
UK, Data Protection Technical Guidance Determining What is Personal Data (2007) resource Agency Guidances Member contributionOCEG Reviewed
The Information Commissioner’s Office (ICO) has published guidance on "Determining what is personal data". The technical guidance note explains and illustrates the ICO’s view of what is personal data for the purposes of the Data Protection Act. It is designed to help data practitioners decide whether data falls within the definition where this is not obvious.
Read more
Australia, Federal Privacy Act Page resource International Materials Member contributionOCEG Reviewed
This page consolidates the legislation, regulations, codes, determinations and guidelines which affect private sector business, health service providers and Commonwealth and ACT government agencies.
Read more