Personal Data (Privacy) Ordinance Hong Kong Personal Data (Privacy) Ordinance Hong Kong by Stephen Lau Privacy Commissioner for Personal Data Hong Kong.

Slides:



Advertisements
Similar presentations
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
Advertisements

Administrative Systems and the Law What you need to know to produce an oral presentation for Unit 7 When the presentations will take place Resources you.
Convention for the protection of individual with regard to automatic processing of personal data “The purpose of this convention is to secure in the territory.
BIOMETRICS, CCTV & DATA PROTECTION By Drudeisha Madhub Data Protection Commissioner Date:
CHAPTER 4 E-ENVIRONMENT
PIPA PRESENTATION PERSONAL INFORMATION PROTECTION ACT.
The Data Protection (Jersey) Law 2005.
Data Protection.
1 PRIVACY ISSUES IN THE U.S. – CANADA CROSS BORDER BUSINESS CONTEXT Presented by: Anneli LeGault ACC Greater New York Chapter Compliance Seminar May 19,
What does the Data Protection Act do? It sets standards which must be satisfied when obtaining, recording, holding, using, disclosing or disposing of.
6/1/2015MINISTRY OF ENERGY, COMMUNICATIONS AND MULTIMEDIA 1 PRESENTATION OF PERSONAL DATA PROTECTION BILL PRESENTATION OF PERSONAL DATA PROTECTION BILL.
E-Privacy for Electronic Commerce Implementing E-Privacy - An Enterprise Approach Tony LAM Deputy Privacy Commissioner for Personal Data, Hong Kong SAR.
Introduction to the APPs and the OAIC’s regulatory approach Presented by: Este Darin-Cooper Director, Regulation and Strategy May 2015.
1 Pertemuan 7 Points of Exposure Matakuliah:A0334/Pengendalian Lingkungan Online Tahun: 2005 Versi: 1/1.
Duncan Woodhouse – Assistant Registrar for Information Security, Risk Management and Business Continuity Helen Wollerton – Administrative Officer (Legal.
A European View of Privacy Protection John Woulds Director of Operations UK Data Protection Commissioner National Conference on Privacy, Technology & Criminal.
DEED WorkForce Center Reception and Resource Area Certification Program Module 2 Unit 1b: WorkForce Center System II Learning Objectives III.
Personal Data Privacy and The Internet by Stephen Lau Privacy Commissioner for Personal Data, Hong Kong SAR at the Joint Conference of the OECD, HCOPIL,
Anglican Province of Canada Privacy Policy. Commitment to Privacy The Privacy Policy, including the Web Privacy Statement, is the Anglican Province of.
“Privacy Implications of RFID Technology in Health Care Settings” Marc Rotenberg President EPIC Dept. of Health & Human Services Washington, DC 11 January.
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
Keeping on top of the Cloud - Compliance from a Regulator’s Perspective Henry Chang, IT Advisor Office of the Privacy Commissioner for Personal Data, Hong.
Protecting information rights –­ advancing information policy Privacy law reform for APP entities (organisations)
 The Data Protection Act 1998 is an Act of Parliament which defines UK law on the processing of data on identifiable living people and it is the main.
FSCPC1 Privacy in the workplace Chris Connolly Director Financial Services Consumer Policy Centre.
1 Introduction to the Personal Data (Privacy) Ordinance.
2 Private versus public. 2 Lesson objectives By the end of the session, you will: understand how you might unintentionally disclose personal data; define.
Implementation of Security and Confidentiality in GP Practices.
13 July 2006Susan Joseph Health Privacy It’s My Business Health Records Act 2001 (Vic) eReferral Service Co-ordination System.
Care.Data an ICO Update EMIS National User Group Conference East Midlands Conference Centre Nottingham 3 rd October 2013 Lynne Shackley Lead Policy Officer.
Professional Values and Basic Business Legislation.
7-Oct-15 Threat on personal data Let the user be aware Privacy and protection.
1 Office of the Privacy Commissioner for Personal Data Hong Kong SAR Tony LAM Deputy Privacy Commissioner for Personal Data Asian Personal Data Privacy.
Part 6 – Special Legal Rights and Relationships Chapter 35 – Privacy Law Prepared by Michael Bozzo, Mohawk College © 2015 McGraw-Hill Ryerson Limited 34-1.
Lesson Title: Privacy Overview Dale R. Thompson Computer Science and Computer Engineering Dept. University of Arkansas 1 This.
What is personal data? Personal data is data about an individual which they consider to be private.
The right item, right place, right time. DLA Privacy Act Code of Fair Information Principles.
IT Applications Theory Slideshows By Mark Kelly Vceit.com Privacy Laws.
Twelve Guiding Principles for the Regulation of Surveillance Camera Systems Presented by: Alastair Thomas Date: 23 rd October 2013.
Malcolm Crompton APEC Information Privacy Framework: review, impact, & progress APEC Symposium on Information Privacy Protection in E Government & E Commerce.
1 Office of the Privacy Commissioner for Personal Data Hong Kong SAR Tony LAM Deputy Privacy Commissioner for Personal Data Briefing to Asian Data Privacy.
Ethical and Legal Issues Information Systems 337 Prof. Harry Plantinga.
An Introduction to the Privacy Act Privacy Act 1993 Promotes and protects individual privacy Is concerned with the privacy of information about people.
Personal data protection in research projects
Data Protection and research Rachael Maguire Records Manager.
Data Protection Philip Reed. Introduction What is data? What is data protection? Who needs your data? Who wants your data? Who does not need your data?
DATA PROTECTION ACT DATA PROTECTION ACT  Gives rights to data subjects (i.e. people who have data stored about them on a computer)  Information.
Session 11 Data protection. 1 Contents Part 1: Introduction Part 2: Applicability and responsibility Part 3: Our procedures on data protection Part 4:
DON Code of Privacy Act Fair Information Principles DON has devised a list of principles to be applied when handling Protected Personal Information (PPI).
Can you share? Yes you can!! Angus Council Adult Protection Maureen H Falconer, Senior Policy Officer Information Commissioner’s Office.
Introduction to the Australian Privacy Principles & the OAIC’s regulatory approach Privacy Awareness Week 2016.
Data protection—training materials [Name and details of speaker]
Data Protection Officer’s Overview of the GDPR
People In, People Out: Why Big Data Security Needs Human Rights
Privacy principles Individual written policies
Managing Data Protection
APP entities (organisations)
The Data Protection Act & ICT Law
Data Protection Act.
G.D.P.R General Data Protection Regulations
Office of the University Registrar
Data Protection principles
OECD Guidelines Collection Limitation: should be limited to personal data, obtained by lawful and fair means, and (where appropriate) with knowledge and.
General Data Protection Regulations 2018
IAPP TRUSTe SYMPOSIUM 9-11 JUNE 2004
Hot Topic 1: GDPR and Traffic Data Systems
GDPR what do we need to do?
Presentation transcript:

Personal Data (Privacy) Ordinance Hong Kong Personal Data (Privacy) Ordinance Hong Kong by Stephen Lau Privacy Commissioner for Personal Data Hong Kong SAR The Tenth International World Wide Web Conference May 1 - 5, 2001, Hong Kong Hong Kong Convention & Exhibition Centre

2

Hong Kong Objectives of Personal Data (Privacy) Ordinance Hong Kong Objectives of Personal Data (Privacy) Ordinance to protect the individual’s right to privacy with respect to personal data to safeguard the free flow of personal data to Hong Kong from restrictions by countries that already have data protection laws 3

The Personal Data (Privacy) Ordinance Enacted 3 August 1995 Commenced operation 20 December 1996 Based on internationally accepted data protection principles Apply to personal data of individuals Govern private sector and public sector Established the Privacy Commissioner’s Office 4

Data Protection Principles Principle 1 - Purpose and manner of collection - this provides for the lawful and fair collection of personal data and sets out the information a data user must give to a data subject when collecting personal data from the subject. Principle 2 - Accuracy and duration of retention - this provides that personal data should be accurate, up-to- date and kept no longer than necessary. 5

Data Protection Principles Principle 3 - Use of personal data - this provides that unless the data subject gives consent otherwise personal data should be used for the purposes for which they were collected or a directly related purpose. Principle 4 - Security of personal data - this requires appropriate security measures to be applied to personal data (including data in a form in which access to or processing of the data is not practicable). 6

Data Protection Principles Principle 5 - Information to be generally available - this provides for openness by data users about the kinds of personal data they hold and the main purposes for which personal data are used. Principle 6 - Access to personal data - this provides for data subjects to have rights of access to and correction of their personal data. 7

Data Privacy Complaints in Hong Kong 8

Code of Practice Hong Kong Identity Card1998 Consumer Credit Data1999 Human Resource Management2000 Workplace Surveillance2001 9

Internet-Related Privacy guidelines for users1998 Privacy guidelines for websites1998 Privacy policy and purposes statements1999 Spamming Code (HK ISP Association)2000 e-Privacy for e-commerce

Improved customer relations Improved employee relations Better record management & information systems practices More effective planningMore effective operations BENEFITS OF COMPLIANCE 11

Hong Kong 2000 Community Opinion Survey Long term benefits of the Ordinance: Strongly agree / agree 12

Privacy Commissioner for Personal Data Hong Kong SAR Website: 13