LegalTech Asia DATA PRIVACY LAWS UPDATE Edward Chatterton 4 March 2013.

Slides:



Advertisements
Similar presentations
Tamtron Users Group April 2001 Preparing Your Laboratory for HIPAA Compliance.
Advertisements

Shipbuilding Intellectual Property Protection CESA/GuardSHIP Rotterdam, 4 February 2010.
AN OVERVIEW OF DATA PROTECTION LAW IN THE GCC NICK OCONNELL, Senior Associate – TMT JUNE 2013.
Safeguarding Data to Ensure Effective Data Use Paige Kowalski |Director| State Policy & Advocacy July 2014.
3Kites Consulting/Kemp IT Law Breakfast Seminar Law Firms and the Cloud: Balancing Benefits and Risks London, 10 September 2014 Contracting for the Cloud:
AFM INTERNAL AUDIT NETWORK MEETING MUTUAL ONE GROVE PARK, LEICESTER Current ‘Hot Topics’ in Information Security Governance Auditing David Tattersall 03.
International Employment – latest Digital Employment issues Melanie Lane and Karine Audouze.
The Corporate Laws Amendment Bill, B6/2006. © 2006 Deloitte Touche Tohmatsu Corporate Laws Amendment Bill, B6/2006 – 29 May 2006 Introduction Presenting.
The Islamic University of Gaza
Copyright © 2008 McGraw-Hill Ryerson Ltd.1 Chapter Ten Regulating Business Canadian Business and Society: Ethics & Responsibilities.
Employee privacy in a global company Sandra Kelman Privacy Manager (Asia Pacific) Privacy Issues Forum 30 March 2006.
THE CHOICES WE MAKE THAT MATTER – International Data Privacy/Protection JILL L. UREY, ASSISTANT GENERAL COUNSEL MID-ATLANTIC CIO FORUM NOVEMBER 20, 2014.
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
INDEPENDENT REGULATORY BOARD FOR AUDITORS Bernard Agulhas Chief Executive Officer 1 Select Committee on Finance 20 June 2012.
BUSINESS & HUMAN RIGHTS UniCredit on its sustainability path: understanding and managing the financial sector’s responsibilities in terms of human rights”
Chapter © 2012 Pearson Education, Inc. Publishing as Prentice Hall.
1Copyright Jordan Lawrence. All rights reserved. Annual In-House Symposium Practical Steps to Minimize Privacy Risks: Understanding The Intersection.
WORLD MEETING OF CUSTOMS LAW BRUSSELS , September “ Studies on Harmonization of Customs Law and Contributions of the Academy for updating and.
Privacy Codes of Conduct as a self- regulatory approach to cope with restrictions on transborder data flow Dr. Anja Miedbrodt Exemplified with the help.
CLOUD AND SECURITY: A LEGISLATOR'S PERSPECTIVE 6/7/2013.
Click to edit Master title style Doing Business 2009 in East Asia and the Pacific Presented by Rita Ramalho.
Presentation to Senior Management MiFID for Senior Managers Introduction These slides introduce the big changes for senior management from MiFID.
Medical Device Compliance Congress: Emerging Compliance Issues in Asia Anne Trimmer.
Managing the Privacy Function at a Large Company Kimberly S. Gray, Esq., CIPP Chief Privacy Officer Highmark Inc.
1 Office of the Privacy Commissioner for Personal Data Hong Kong SAR Tony LAM Deputy Privacy Commissioner for Personal Data Asian Personal Data Privacy.
Records & Information Management (RIM) Risk: Is Your Company Exposed? March 19, 2013.
HIPAA Michigan Cancer Registrars Association 2005 Annual Educational Conference Sandy Routhier.
Mark Estberg, John Howie Senior Directors Microsoft Corporation SESSION CODE: SIA317.
Individual liability for competition law infringements Koen Platteau UIA - Firenze 31 October 2014.
Recent Regulatory Developments in EU and the Roles and Responsibilities of Compliance Officers‘ Presentation at the Banks Association of Turkey TBB - TÜRKİYE.
Corporate Reform in East Asia Prof. Stephen Y.L. Cheung Department of Economics & Finance City University of Hong Kong.
Session 7 Compliance failure policy. 1 Contents Part 1: COLP and COFA duties Part 2: What do we have to comply with and why does it matter? Part 3: Compliance.
Aiia : voice of the digital economy ASR: voice of services in Australia Presented by Kaaren Koomen Director, Australian Services Roundtable Director (Alternate),
Compliance August 18, Agenda Outline Status Draft of Answers.
1 Canadian Privacy Policy: Customizing E.U. Standards Remarks by Jennifer Stoddart Privacy Commissioner of Canada Privacy Symposium: Summer 2007 August.
Information Management in Retail: A Legal Perspective Chris Hill Barlow Lyde & Gilbert LLP 17 September 2009.
Business Travelers Assessing tax and immigration risks 25 August 2015.
Privacy Advisory Services … … A Best Practices, Integrated Approach Insert Firm Name Here.
Legal framework Look at the legal compliance and framework a business is subject to.
Chapter © 2012 Pearson Education, Inc. Publishing as Prentice Hall.
Final HIPAA-HITECH Rules, Cybersecurity, and Privacy Dino TsibourisMehmet Munur (614) (614)
Business Integrity and Fraud Prevention By Kelvin Ko and Andy Cheung.
Introduction to the Australian Privacy Principles & the OAIC’s regulatory approach Privacy Awareness Week 2016.
Data protection—training materials [Name and details of speaker]
Key Points for a Privacy Programme for Multinationals Steve Coope.
JOHN M. HUFF NAIC PRESIDENT DIRECTOR, MISSOURI DEPARTMENT OF INSURANCE JUNE 16, 2016 NAIC CYBERSECURITY INITIATIVES.
ICC roundtable Istanbul, 30 April 2010 Procedural Fairness: Update on Recent OECD Activities Antonio Capobianco OECD Competition Division
Accountability & Structured Privacy Management
Data Minimization Framework
Understanding EU GDPR from an Office 365 perspective
Ireland’s transition towards the GDPR
Current ‘Hot Topics’ in Information Security Governance Auditing
General Data Protection Regulation
General Data Protection Regulations Preparing for the upcoming changes in data protection law David Jones & Angharad Williams.
International Regulatory Trends
GDPR Readiness Project
INTRODUCTION TO GDPR 19/09/2018.
Chapter 3: IRS and FTC Data Security Rules
PERSONAL DATA PROTECTION ACT 2010
GDPR Road map to Compliance.
Introduction to GDPR 09/11/2018.
General Counsel and Chief Privacy Officer
Cyber Trends and Market Update
Privacy: a work in progress
Information Governance
G.D.P.R General Data Protection Regulations
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
MIS 5121 Control Failure: Morgan Stanley
Colorado “Protections For Consumer Data Privacy” Law
Presentation transcript:

LegalTech Asia DATA PRIVACY LAWS UPDATE Edward Chatterton 4 March 2013

Agenda and Introduction 1. International data protection landscape – trends 3. Asia Pacific Data Privacy Heat Map and recent developments 4. Why it is relevant to Law firms and their IT Departments 5. Compliance Building Blocks 6. DLA Piper - Data Privacy Laws of the World 23 August 2012 Data Protection Master Class 2

No. of countries with privacy laws Time Period The growth of global privacy laws 3

Asia Pacific Heat Map Date of presentation Insert filename here 4 Heat MapRecent Highlights Hong Kong – new amendment ordinance passed in June, to come into force in phases starting from 1 October, major provisions coming into force on 1 April 2013 Philippines – 1 st DP law recently passed influenced EU Directive the Asia Pacific Economic Cooperation Information Privacy Framework. South Korea – new (and draconian) law came into force in September 2011 Malaysia – 1 st DP law passed in April 2010, still awaiting to come into force Singapore – 1 st DP law now passed. Bill published Vietnam – consumer protection law (which protects consumer data) took effect July 2011 Taiwan – new DP act to come into force 1 Oct 2012 (in parts)

Why it matters to Law firms and their IT departments? Law Firms often/always …  Collect customer, employee, supplier, agents… information and store these in centralised marketing databases  Transfer personal data across international borders  Hire employees  Use or process personal data  Transfer personal data to others  Outsource HR and payroll functions to others either within or ourside their corporate group  Provide Consolidated IT services to service multinational practices across separate country based partnerships  Outsource data management functions to others (e.g. cloud)?  Do direct marketing 5

… at your own risk  Increasing regulation  Criminal prosecution  Imprisonment  Fines  Reputational damage  Civil actions  Regulatory investigation  Enforcement actions 6

Compliance building blocks International transfer restrictions Data security Records management Training 7 Audit/verification Third party vendors Individuals' rights Customer data Governance and enforceability DPA Notifications/ registrations Transparency Legitimate processing On-line data HR data Accountability Privacy by design

What compliance might look like…… 8 Policies and procedures Statement of requirements DPA notifications Global data protection policy Governance and accountability HR Client data Direct marketing Records management Electronic usage Security Social media Vendors Cookie CCTV Executive buy-in Data transfer agreement Training and awareness Verification and audit country variations Generic code of conduct Statement of good practice Local law compliance on top of this Sets structure for other components Data Protection Master Class 23 August 2012

We already know what the law says…. 9 Data Protection Master Class 23 August 2012

Thank you