Data Protection: The Law. EU & Irish Legislation Data Protection Directive 95/46/EC Electronic Privacy Directive 2002/58/EC EUROPOL etc Data Protection.

Slides:



Advertisements
Similar presentations
Re-use of PSI Data Protection Issues Cécile de Terwangne Professor at the Law Faculty, Research Director at CRIDS University of Namur (Belgium) 2 nd LAPSI.
Advertisements

Data Protection Billy Hawkes Data Protection Commissioner Irish Human Rights Commission 20 November 2010.
Data Protection: Your Duties as a Data Controller
Introduction to basic principles of Regulation (EC) 45/2001 Sophie Louveaux María Verónica Pérez Asinari.
Data Protection: Health. Data Protection & Health Data Data on physical or mental health or condition or sexual life are ‘sensitive personal data’ with.
Convention for the protection of individual with regard to automatic processing of personal data “The purpose of this convention is to secure in the territory.
Data Protection Information Management / Jody McKenzie.
The Data Protection (Jersey) Law 2005.
Data Protection.
What does the Data Protection Act do? It sets standards which must be satisfied when obtaining, recording, holding, using, disclosing or disposing of.
Data Protection and Records Management
The European Union legal framework for clinical data access: The European Union legal framework for clinical data access: potential challenges and opportunities.
Data Protection and Ethics Committees in Social Science Research
A European View of Privacy Protection John Woulds Director of Operations UK Data Protection Commissioner National Conference on Privacy, Technology & Criminal.
Data Protection: International. Data Protection: a Human Right Part of Right to Personal Privacy Personal Privacy : necessary in a Democratic Society.
Class 13 Internet Privacy Law European Privacy.
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
Attorney at the Bars of Paris and Brussels Database exploitation & Data protection Thibault Verbiest Amsterdam 1 April 2005
Data Protection Overview
 The Data Protection Act 1998 is an Act of Parliament which defines UK law on the processing of data on identifiable living people and it is the main.
1 When hate speech tangles privacy... When hate speech tangles privacy...
Respecting the Consumer – the Data Protection Perspective Billy Hawkes Data Protection Commissioner Association of Advertisers in Ireland 3 June 2009.
LexisNexis Confidential EU Privacy Framework Michael Lamb LexisNexis Risk Solutions Vice President and Lead Counsel: Regulatory, Privacy & Policy May 19,
The Freedom of Information and Data Protection Legislation An Overview Ann McKeon November 2014.
Data Protection: An enabler? David Freeland, Senior Policy Officer 23 October 2014.
Data Protection and the Voluntary Sector: Respecting the Rights of the Individual Billy Hawkes Data Protection Commissioner Carmichael Centre Dublin, 2.
Data Protection & FOI Data Protection: Background Human Right to Privacy Unenumerated right under Irish Constitution Explicit right under European Convention.
Data Protection STFC Presentation to PPD Senior Staff 26/11/2009 FoI/DP team.
Data Protection Act & Freedom of Information Simon Mansell Corporate Governance and Information Team.
Data Protection Corporate training Data Protection Act 1998 Replaces DPA 1994 EC directive 94/46/EC The Information Commissioner The courts.
Processing personal health data: the regulator’s perspective Ken Macdonald Assistant Commissioner Information Commissioner’s Office.
Data Protection and Records Management. Key Responsibilities - Record Management Keep Information Accurate Disclose only if compatible with purpose for.
IT Applications Theory Slideshows By Mark Kelly Vceit.com Privacy Laws.
Introduction Data protection is relevant to every individual, business or organisation today, not just Local Government. As well as protecting privacy,
Data Protection Act The Data Protection Act (DPA) is a balance between rights of the DATA SUBJECT and obligations of the DATA CONTROLLER DATA CONTROLLER.
Data Protection: Workplace, Health and Safety. Employers’ responsibilities Employer obliged to provide safe place of work. Health and Safety Act 2004.
Data Protection in a Workplace Context. Layout of Presentation Background to Data Protection Role of Data Protection Commissioner Principles of Data Protection.
DATA PROTECTION ACT INTRODUCTION The Data Protection Act 1998 came into force on the 1 st March It is more far reaching than its predecessor,
Session 11 Data protection. 1 Contents Part 1: Introduction Part 2: Applicability and responsibility Part 3: Our procedures on data protection Part 4:
© University of Reading Lee Shailer 06 June 2016 Data Protection the basics.
Data protection—training materials [Name and details of speaker]
Sharing Information Legally Lindsay Ould London Borough of Lewisham.
Presented by Ms. Teki Akuetteh LLM (IT and Telecom Law) 16/07/2013Data Protection Act, 2012: A call for Action1.
Protection of Personal Information Act An Analysis on the impact.
Clark Holt Limited (Co. No ), Hardwick House, Prospect Place, Swindon, SN1 3LJ Authorised and regulated by the Solicitors Regulation.
Introduction to Data Protection Plan »Brief Introduction to Data Protection  Example  Principles  P3, 4, 7  Sensitive Data  Conditions for Processing.
Data Protection Laws in the European Union John Armstrong CMS Cameron McKenna.
Students’ Unions 2011 Data Protection and Students’ Unions Mairead O’Reilly 19 July 2011.
The Freedom of Information and Data Protection Legislation An Overview
Data Protection: The Law
Issues of personal data protection in scientific research
Data Protection: EU & International
IT Applications Theory Slideshows
Data Protection The Current Regime
GDPR Overview Gydeline – October 2017
Data Protection Act 1988 and Data Protection (Amendment) Act 2003
GDPR Overview GDPR - General Data Protection Regulations
Data Protection & Freedom of Information- An Introduction
GENERAL DATA PROTECTION REGULATION (GDPR)
Data Protection: Your Rights as a Data Subject
Data Protection and FOI
Data Protection principles
Data Protection and You
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
IMPLICATIONS OF GDPR ROBERT BELL.
GDPR Workshop MEU Symposium Prague 2018
Data Protection Act 1988 and Data Protection (Amendment) Act 2003
Data Protection for SDS Employers Alison Johnston Lead Policy Officer (Scotland) Information Commissioner’s Office.
Legal Basis: CRITERIA FOR MAKING DATA PROCESSING LEGITIMATE
Dr Elizabeth Lomas The General Data Protection Regulation (GDPR): Changing the data protection landscape Dr Elizabeth Lomas
Presentation transcript:

Data Protection: The Law

EU & Irish Legislation Data Protection Directive 95/46/EC Electronic Privacy Directive 2002/58/EC EUROPOL etc Data Protection Acts 1988 & 2003 EC Electronic Privacy Regulations 2003 (SI 535/2003) Corresponding Acts Good Friday Agreement Disability Act 2005

The Data Protection Rules (Directive 95/46 & Data Protection Acts) 1.Fair obtaining & processing Consent 2.Specified purpose 3.No disclosure unless “compatible” 4.Safe and secure 5. Accurate, up-to-date 6. Relevant, not excessive 7. Retention period 8. Right of access

Definitions(1) Personal Data livingidentifiable  Any Data relating to a living identifiable individual Data manual data  Automated data or structured manual data Manual Data  Structured by reference to individuals in a way that makes data readily accessible

Definitions(2) Data Controller  a person who controls the contents and use of personal data Data Processor  A person who processes personal data on behalf of a data controller

Definitions(3) Data Subject  an individual who is the subject of personal data Processing  Anything done with personal data, from collection to disposal

Sensitive Data (special protection) Physical or mental health Racial origin Political opinions Religious or other beliefs Sexual life Criminal convictions Alleged commission of offence Trade Union membership

Using Sensitive Data EXTRA conditions: S.2B (one only is needed) 1.explicit consent 2.necessary under employment law 3.non-profit body (political, philosophical, religious, trade-union) – its members / clients 4.necessary for medical purposes (contd)

Using Sensitive Data EXTRA conditions: (one only is needed) 5.necessary to protect vital interests 6.necessary for legal advice / legal claim 7.for electoral purposes 8.for substantial public interest 1. as prescribed by Minister

Genetic Testing Disability Act 2005 (Part 4):  Informed consent of data subject required  Prohibited in relation to insurance policies, pensions, and mortgages  Subject to DPC prior approval in relation to employment

Electronic Communications (SI 535/2003) General DP Principles apply Telecom-specific:  ‘Cookies’ on PCs  Caller ID (phones)  Location Data (mobiles)  Directories  ‘SPAM’  Data Retention  ‘Cold Calling’ opt-out

North/South Bodies S 31, British-Irish Agreement Act, 1999:  Irish DPC responsible for Bodies established in Republic  UK Information Commissioner responsible for Bodies established in Northern Ireland

DP/FOI Access to Personal Information DP and FOI Acts reinforce one another in relation to personal access in the public sector Defending access to personal information as human (DP) and citizen (FOI) right 3 rd Party Access restricted under both Acts FOI access to personal information should sometimes prevail in the public interest

Access right: DP v FOI FOI - Public Interest (s 28(5)(a)) when “on balance, the public interest that the request should be granted outweighs the public interest that the right to privacy of the individual to whom the information relates should be upheld” Information Commissioner: Case No “the protection of personal privacy afforded by s.28 exemption is intended to be a strong one”

DP and FOI A right conferred by the Data Protection Act shall not prejudice the exercise of a right conferred by the Freedom of Information Act The Commissioner and the Information Commissioner shall, in the performance of their functions, co-operate with and provide assistance to each other (DP Act 2003)