Global Privacy and Information Quality Working Group.

Slides:



Advertisements
Similar presentations
How Will it Help Me Do My Job?
Advertisements

Module N° 4 – ICAO SSP framework
Electronic Medical Records: Implications of HIPAA for Selecting and Implementing an EMR Todd Frech Senior Partner
Legal Work Group Developing a Uniform EHR/HIE Patient Consent Form.
What weve been up to these past few months… IIJIS Privacy Policy Subcommittee February 24, 2005.
STATE OF MARYLAND DEPARTMENT OF HEALTH AND MENTAL HYGIENE Statewide Transition Plan for Compliance with Home and Community-Based Setting Final Rule 1 Public.
© 2006 The Finance Project Sustainability Planning: Keys to Success.
Implementing SMS in Civil Aviation: the Canadian Perspective.
© 2013 Cengage Learning. All Rights Reserved. 1 Part Four: Implementing Business Ethics in a Global Economy Chapter 8: Developing an Effective Ethics Program.
Global Justice Information Sharing Initiative. Overview The Global Justice Information Sharing Initiative (Global) operates under.
Service Acquisition Process
Non-governmental Actors in the Compliance with and Monitoring of Multilateral Environmental Decisions.
Guideline 3 Model Recordkeeping Policy Brisbane August 2012.
Preventing and Managing a Crisis. Overview This session will cover how to: Develop a crisis communications plan Prevent crises Prepare for crises Implement.
United States Department of Justice U.S. DOJ’s Global Justice Information Sharing Initiative Robert Boehmer Chairman, Global Advisory.
United States Department of Justice Global Privacy and Information Quality Working Group Chairman Carl Wicklund.
National Governor’s Association September 29-30, 2003 Salt Lake City, Utah.
Legal Framework for BLM Planning. Objective Describe the major laws and regulations that guide and influence planning at BLM.
Privacy: Understanding the Needs, Policy, and Approach Owen Greenspan Director Law and Policy Program.
Basics of OHSAS Occupational Health & Safety Management System
The Sarbanes-Oxley Act of PricewaterhouseCoopers Introduction of Panel Members The Sarbanes-Oxley Act of 2002 What Companies Should Be Doing Now.
Transitioning to the COSO 2013 Update.  Released on May 14, 2013  Designed to build upon the foundation of the 1992 Framework  Will supersede the 1992.
Organize to improve Data Quality Data Quality?. © 2012 GS1 To fully exploit and utilize the data available, a strategic approach to data governance at.
Privacy: Understanding the Needs, Policy, and Approach Innovations in Justice: Information Sharing Strategies and Best Practices BJA Regional Information.
MGT 461 Lecture # 19 Project Initiation Phase (I OF II)
Developing an Effective Ethics Program
Lecture #9 Project Quality Management Quality Processes- Quality Assurance and Quality Control Ghazala Amin.
Quote for today “Sometimes the questions are complicated and the answers are simple” - ?? ????? “Sometimes the questions are complicated and the answers.
Session 5 Integrating CLAS Into Policy and Practice CLAS Training [ADD DATE] [ADD PRESENTER NAME] [ADD ORGANIZATION NAME]
National Center on Response to Intervention NCRTI TECHNICAL ASSISTANCE DOCUMENTATION AND IMPLEMENTATION Tessie Rose, PhD NCRTI Co-coordinator of TA and.
Duties, Responsibilities and Authority of the NCO
Chapter 7: A Summary of Tools Focus: This chapter outlines all the customer-driven project management tools and techniques and provides recommendations.
Communication 2 Report Writing.
Privacy Project Framework & Structure HIPAA Summit Brent Saunders
United States Department of Justice Implementing Privacy Policy in Justice Information Sharing: A Technical Framework John Ruegg,
Environmental Management System Definitions
Delaware Information Analysis Center
Strategic Approaches to Improving Ethical Behavior
Workshop on Implementing Audit Quality Practices Working Group on Audit Manuals and Methods March 2006 Vilnius (Lithuania) Hungarian Experiences.
Revisions to Primacy State Underground Injection Control Programs Primacy State Implementation of the New Class V Rule.
Module V: Writing Your Sustainability Plan Cheri Hayes Consultant to Nebraska Lifespan Respite Statewide Sustainability Workshop June 23-24, 2015 © 2011.
Data Governance 101. Agenda  Purpose  Presentation (Elijah J. Bell) Data Governance Data Policy Security Privacy Contracts  FERPA—The Law  Q & A.
Regulatory Impact Analysis (RIA) in OECD countries: a policy tool to manage the flow of regulation Regional Capacity-Building Seminar on “Drafting Legislation.
Strategies for Knowledge Management Success SCP Best Practices Showcase March 18, 2004.
The Safety Problem Is Global The Safety Solution Is Local and Personal Business of Saving Lives.
Systems Accreditation Berkeley County School District School Facilitator Training October 7, 2014 Dr. Rodney Thompson Superintendent.
The Evolution, Development & Training of HIPAA Policies and Procedures in a Decentralized Health Care Environment Presented By: Sharon A. Budman, M.S.
District Leadership Module Preview This PowerPoint provides a sample of the District Leadership Module PowerPoint. The actual Overview PowerPoint is 73.
Organization and Implementation of a National Regulatory Program for the Control of Radiation Sources Management Systems Part I.
Exploring Service-Oriented Architecture (SOA) to Support Justice-Related Information Sharing Steven E. Correll, Chair Global Infrastructure/Standards Working.
SCOPE DEFINITION,VERIFICATION AND CONTROL Ashima Wadhwa.
AUTHORIZING QUALITY TEAM Dana C. Reed Assistant Superintendent.
California Department of Public Health / 1 CALIFORNIA DEPARTMENT OF PUBLIC HEALTH Standards and Guidelines for Healthcare Surge during Emergencies How.
Overview of System or Process Design and Improvement 1.
Gdansk International Air & Space Law Conference November 2013 Authority and Organisation Requirements “effective management systems for authorities and.
Board Assessment Governing Board Online Training Module.
Copyright © Houghton Mifflin Company. All rights reserved.8-1 Chapter 8 Developing an Effective Ethics Program.
Info-Tech Research Group1 Info-Tech Research Group, Inc. Is a global leader in providing IT research and advice. Info-Tech’s products and services combine.
Info-Tech Research Group1 Info-Tech Research Group, Inc. Is a global leader in providing IT research and advice. Info-Tech’s products and services combine.
Policy Development Governing Board Online Training Module.
Overview of Tampa Electric’s Compliance Program APPA Reliability Standards and Compliance Program January 10, 2007.
Sample Fit-Gap Kick-off
Contents Playbook Objectives Playbook Value Details Playbook Design
Implementing SMS in Civil Aviation: the Canadian Perspective
So where in ISO is Process?
Sustainability Planning: Keys to Success
Privacy Project Framework & Structure
AIS Manual (Doc 8126) Air Navigation Procedures for AIM Seminar
Taking the STANDARDS Seriously
Bridging the ITSM Information Gap
Presentation transcript:

Global Privacy and Information Quality Working Group

Product II Privacy Policy Development Guide

Message From the Chair “The foundations for privacy policy exist in our current laws and customs. Constitutions, statutes, regulations, policies, procedures, and common law requirements still control the obligations of the justice entities to collect and share information within legal limits.”

The Change “Clear articulation of rules that control justice information sharing in a manner that translates into systems requirements for systems developers and information managers.”

The Audience The guidebook has been developed to assist the individual who is assigned the task of writing a privacy policy.

The Process “A step-by-step guide on team effort to develop and articulate privacy policy.”

Section 3 Privacy Policy Overview 3.1What Is a Privacy Policy? 3.2The Intersection Between Privacy and Information Quality 3.2.1What Is Information Quality? 3.2.2Impact of Data Quality on Privacy and Public Access 3.2.3What Generates Data Quality Issues? 3.2.4Future Guidance Statement

Section 4 Governance 4.1Identifying the Champion 4.2Resource Justification 4.3Identifying the Project Leader 4.4Building the Project Team and Stakeholder Contacts

Section 5 Planning 5.1Developing a Vision, Mission, Values Statement, and Goals and Objectives 5.1.1Vision Statement 5.1.2Mission Statement 5.1.3Values Statement 5.1.4Goals and Objectives 5.2Writing the Charter

Section 6 Process 6.1Understanding Information Exchanges 6.1.1Tools to Assist With Understanding the Flow of Information 6.2Analyzing the Legal Requirements 6.2.1Introduction 6.2.2Approach to the Legal Analysis 6.2.3Focusing the Legal Analysis 6.2.4Performing the Legal Analysis Checklist 6.2.6Resources

Section 6 Process (continued) 6.3Using FIPs as a Starting Point ( law enforcement exception discussion ) 6.4Identifying Critical Issues and Policy Gaps

Section 7 Product (Developing the Elements of the Privacy Policy) 7.1Vision and Scope for the Privacy Policy 7.2Outline and Organizational Structure 7.2.1Introduction 7.2.2Definitions 7.2.3Applicability 7.2.4Legal Requirements and Policy Guidance 7.2.5Accountability (responsibility for implementation/ compliance monitor) 7.2.6Process for Revisions and Amendments

Section 7 Product (continued) 7.3Writing the Privacy Policy 7.3.1Making the Policy Choices—Filling in the Gaps 7.4Vetting the Privacy Policy 7.5Resources 7.5.1Some Common Elements of Current Policies 7.5.2Policy Example(s)

Section 8 Implementation 8.1Formal Adoption of the Policy 8.2Publication 8.3Outreach 8.4Training

Appendices Appendix A – Case Study –Illinois Criminal Justice Information Authority and Illinois Integrated Justice Information System (IIJIS) Appendix B – Definitions Appendix C – Acknowledgements Appendix D – Compendium

Next Steps on Privacy GAC input on the Privacy Policy Development Guide Compendium of state and privacy laws and available Attorney General opinions Examples of privacy policies GAC input on next steps on information quality

Next Steps on Information Quality Goals and objectives Identification of subject-matter experts Guidance on information quality issues Guidance on developing information quality policies