29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.

Slides:



Advertisements
Similar presentations
Terra Incognita Auditing for Privacy Workshop: Chairman’s Remarks
Advertisements

GEO-5 in Ottawa 1 29 November 2004 Draft GEOSS 10-Year Implementation Plan and Status Report on Reference Document Ivan B. DeLoatch, Toshio Koike, Robert.
ENQA’S CONSULTATIVE MEMBERSHIP IN THE BFUG - WHAT DOES IT ENTAIL
1 FPEG Identity theft & payment fraud point December 2007.
4 th Meeting of the EC International Dialogue on Bioethics Copenhagen, June 19 th, 2012 Large research and medical databases in clinical and research multi-centred.
1 Enforcement Powers of National Data Protection Authorities and Experience gained of the Data Protection Directive Safe Harbour Conference Washington.
Yukiko Ko Binding Corporate Rules – Global Implications Conference on Cross Border Data Flows and Privacy October 16, 2007.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
From e-Government to e-Governance: The OECD Experience Elizabeth Muller E-Government Project OECD SitExpo February 1004, Casablanca - Morocco.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL DATA PROTECTION AND PRIVACY COMMISSIONERS.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL DATA PROTECTION AND PRIVACY COMMISSIONERS.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL DATA PROTECTION AND PRIVACY COMMISSIONERS.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL DATA PROTECTION AND PRIVACY COMMISSIONERS.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL DATA PROTECTION AND PRIVACY COMMISSIONERS.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL DATA PROTECTION AND PRIVACY COMMISSIONERS.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL DATA PROTECTION AND PRIVACY COMMISSIONERS.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
1 Trade facilitation: Benefits and Capacity Building for Customs UNECE International Forum on Trade Facilitation, May 2003 Kunio Mikuriya Deputy.
Seventh Public Procurement Forum Revisions to the UNCITRAL Model Law
How to build a sustainable framework for endogenous-led capacity development in the trade-related sector Phnom Penh, 5 February 2008 Fabio Artuso (
1 The Data Protection Officer at work Experience, good practices and lessons learnt Pierre Vernhes – former DPO at the Council of the EU Workshop on Data.
1 The Challenges of Creating an Identity Management Infrastructure for the University of California David Walker Karl Heins Office of the President University.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL DATA PROTECTION AND PRIVACY COMMISSIONERS.
The Geopolitics of Personal Data and the Governance of Privacy Colin J. Bennett Department of Political Science University of Victoria BC, Canada
Data-Sharing and Governance Consultation ANALYSIS OF RESPONSES.
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
Introduction to the APPs and the OAIC’s regulatory approach Presented by: Este Darin-Cooper Director, Regulation and Strategy May 2015.
Europol’s tailor-made data protection framework
1 Office of theCommissariat Privacy Commissionerà la protection de of Canadala vie privée du Canada Personal Information Protection and Electronic Documents.
ZHRC/HTI Financial Management Training
Protecting information rights –­ advancing information policy Privacy law reform for APP entities (organisations)
1 May 2006 … Identity management - Internet - Data controller - PKI - Vulnerabilities - Fingerprint - Critical Information Infrastructure - Privacy and.
The Sixth Annual African Consumer Protection Dialogue Conference
A Common Immigration Policy for Europe Principles, actions and tools June 2008.
CLOUD AND SECURITY: A LEGISLATOR'S PERSPECTIVE 6/7/2013.
Building User Trust Online Sarah Andrews International Conference on the Legal Aspects of an E-Commerce Transaction The Hague October 2004.
State Alliance for e-Health Conference Meeting January 26, 2007.
Towards a European network for digital preservation Ideas for a proposal Mariella Guercio, University of Urbino.
A Perspective: Data Flow Governance in Asia Pacific & APEC Framework Martin Abrams October 21, 2008.
Moving Forward With the African Dialogue Cross-Border Principles By Mary Gurure Manager, Legal Services and Compliance COMESA Competition Commission Lilongwe,
TROISIEME CONFERENCE SUR “LA PROTECTION DE L’OPTIMISATION DES FONDS PUBLICS: COOPERATION ENTRE LES AUTORITES NATIONALES ET INTERNATIONALES” 9 au 12 mars.
Mediation in the application of the 1980 Convention Regional Conference on the 1980 Hague Convention on the Civil Aspects of International Child Abduction.
June 1, st Asia Pacific Privacy Authorities (APPA) Forum – PHAEDRA Workshop Nr. 3: The EU Data Protection Regulation and regional perspectives.
Data Governance 101. Agenda  Purpose  Presentation (Elijah J. Bell) Data Governance Data Policy Security Privacy Contracts  FERPA—The Law  Q & A.
Malcolm Crompton APEC Information Privacy Framework: review, impact, & progress APEC Symposium on Information Privacy Protection in E Government & E Commerce.
An Introduction to the Privacy Act Privacy Act 1993 Promotes and protects individual privacy Is concerned with the privacy of information about people.
© World Customs Organization Customs Cooperation - Overview of Article 12 of the WTO TFA.
APEC Privacy Framework “The lack of consumer trust and confidence in the privacy and security of online transactions and information networks is one element.
Paris, Accra, Busan. Paris Declaration of 2005 Provides foundation for aid effectiveness agenda. Introduces aid effectiveness principles which remain.
Tripartite Declaration of Principles concerning Multinational Enterprises and Social Policy (MNE Declaration) Multinational enterprises and social policy.
Introduction to the Australian Privacy Principles & the OAIC’s regulatory approach Privacy Awareness Week 2016.
A network of European National Platforms and Focal Points for Natural Disaster Reduction Common Goals To facilitate and improve the exchange of information.
Harmonised use of accreditation for assessing the competence of various Conformity Assessment Bodies Dr Andreas Steinhorst, EA ERA workshop 13 April 2016,
Data Protection: EU & International
APP entities (organisations)
Protection of Personal Information Bill: An International Perspective
Benefits of the 2019 HCCH Judgments Convention
Presentation transcript:

29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY COMMISSIONERS 29e Confrence internationale des commissaires à la protection de la vie prive

29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY COMMISSIONERS 29e Confrence internationale des commissaires à la protection de la vie prive OECD Work on Cross-border Privacy Law Enforcement Co-operation Michael Donohue

29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY COMMISSIONERS 29e Confrence internationale des commissaires à la protection de la vie prive Overview Working Party on Information Security and Privacy –created expert group: privacy officials, EC, CoE –chaired by the Privacy Commissioner of Canada –consulted with business, civil society, other intl groups Report on Privacy Law Enforcement (Oct. 2006) –describes existing enforcement authorities and systems –identifies cross-border challenges New OECD Instrument (June 2007) –OECD Recommendation on Cross-border Co-operation in the Enforcement of Laws Protecting Privacy –now into the implementation stage

29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY COMMISSIONERS 29e Confrence internationale des commissaires à la protection de la vie prive 4 Why work on improved enforcement co-op? the need for this work is a recurring theme for OECD... OECD Privacy Guidelines (1980) –facilitate mutual assistance in procedural & investigative matters. Ottawa Ministerial Declaration (1998) –ensure effective enforcement mechanisms for non-compliance and redress Report on Privacy Online (2003) –establish mechanisms for cross-border co-operation between public agencies in procedural and investigative matters and consistent with a broader trend... Intl Commissioners Conference (Montreux Declaration) APEC Data Privacy Subgroup Council of Europe, EU Art. 29 Working Party

29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY COMMISSIONERS 29e Confrence internationale des commissaires à la protection de la vie prive The evolving climate for data flows and privacy risks Technology and Data flows fast, cheap connections efficient storage and processing data and voice converge via IP data flows with a mouse click Changing Business Processes global distribution of tasks international data transfers are increasingly integral to the economy human resources, financial services, customer service, education, e-commerce

29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY COMMISSIONERS 29e Confrence internationale des commissaires à la protection de la vie prive The evolving climate for data flows and privacy risks Privacy risk environment Data breach Secondary usage Identity theft Changing user perceptions Data breach reports consumers may go elsewhere Increasing fears of data misuse threaten online banking interest Online users mobilise fast

29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY COMMISSIONERS 29e Confrence internationale des commissaires à la protection de la vie prive The New Recommendation Adopted by the OECD Council on 12 June 2007 –approval at level of ambassadors sends an important signal –non-binding, but represents a serious political commitment –co-operation occurs within existing legal frameworks –leaves the implementation details to MCs and their authorities What does it do? –recites high-level policy objectives –identifies key elements for successful co-operation –invites non-OECD economies to collaborate with OECD members Builds on OECD precedents on enforcement co-operation –consumer protection, spam, competition law Grounded in the 1980 OECD Privacy Guidelines

29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY COMMISSIONERS 29e Confrence internationale des commissaires à la protection de la vie prive Scope and Related Issues Covers the enforcement of Laws Protecting Privacy –national laws, the enforcement of which, has the effect of protecting personal data consistent with the OECD Privacy Guidelines Focus of the Recommendation –violations most serious in nature –primarily aimed at laws governing the private sector (but can include public sector) –and is not intended to interfere with government activities related to sovereignty, security, public policy Recognises the role of discretion –authorities may decline or limit assistance, where the request is outside the scope or otherwise inconsistent with national laws, important interests or priorities

29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY COMMISSIONERS 29e Confrence internationale des commissaires à la protection de la vie prive Key Actors Privacy Enforcement Authorities –Public bodies –Enforcement responsibility for Laws Protecting Privacy –Power to investigate or pursue enforcement proceedings Other stakeholders –Criminal law enforcement bodies –Privacy officers in organisations –Private sector oversight groups Dont forget governments

29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY COMMISSIONERS 29e Confrence internationale des commissaires à la protection de la vie prive Domestic Measures Recognises that you need to have the right domestic arrangements to co-operation internationally Calls for a review of laws, procedures -- and adjustments if needed Authorities need effective powers –sanctions and deterrence –investigations –corrective action Authorities need the ability to co-operate –to share information –to provide assistance (e.g., obtain documents or statements)

29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY COMMISSIONERS 29e Confrence internationale des commissaires à la protection de la vie prive International Co-operation Mutual Assistance –requests for assistance –preserve the confidentiality of non-public information –respect the purpose specified when information exchanged –co-ordinate investigations to (at a minimum) avoid interference –referral of complaints, notifications Collective initiatives in support of mutual assistance –contact points, information about laws –sharing information about outcomes –foster the establishment of an informal network of authorities Co-operation with other stakeholders –criminal authorities, privacy officers, civil society, business

29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY COMMISSIONERS 29e Confrence internationale des commissaires à la protection de la vie prive Implementation Developing a Contact List –single national point of contact –internal list (with complete contact information) –public list (without personal contact information) –co-ordination with other lists (e.g. APEC) Request for Assistance Form –identifies key categories of information –ensures careful pre-request preparation –flexible: can be adopted to fit the situation –non-duplicative: doesnt ask for what is readily available elsewhere Review implementation and report back to Council: June 2010