12/12/2015 Data Protection Act 1998. 12/12/2015 The DP Act A law that protects personal privacy and upholds individual’s rights Anyone who handles personal.

Slides:



Advertisements
Similar presentations
Administrative Systems and the Law What you need to know to produce an oral presentation for Unit 7 When the presentations will take place Resources you.
Advertisements

CHARTERED SECRETARIES AUSTRALIA New Privacy Laws 6 June 2013.
The Data Protection (Jersey) Law 2005.
Data Protection.
What does the Data Protection Act do? It sets standards which must be satisfied when obtaining, recording, holding, using, disclosing or disposing of.
3 Is there something I should know? Exercising our rights.
Data Protection Act.
Audiences NI Data Protection Workshop
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
Data Protection Overview
An overview of the Data Protection Act Legal framework The Data Protection Act 1998 came into force in March 2001, replacing the Data Protection.
The Data Protection Act
Data Protection Act. Lesson Objectives To understand the data protection act.
 The Data Protection Act 1998 is an Act of Parliament which defines UK law on the processing of data on identifiable living people and it is the main.
Data Protection for Church of Scotland Congregations
CENTRAL SCOTLAND POLICE Data Protection & Information Security Stuart Macfarlane Information Governance Unit Police Service of Scotland.
Data Protection webinar: Overview of Data Protection & Confidentiality 22 nd April 2015 Welcome. We’re just making the last few preparations for the webinar.
2 Private versus public. 2 Lesson objectives By the end of the session, you will: understand how you might unintentionally disclose personal data; define.
Practical Information Management
The Information Commissioner’s Office David Evans.
Health & Social Care Apprenticeships & Diploma
Data Protection and You Your Rights & The Law Registration Basics Other Activities Disclaimer: This presentation only provides an introductory info. Please.
Elma Graham. To understand what data protection is To reflect on how data protection affects you To consider how you would safeguard the data of others.
OCR Nationals Level 3 Unit 3.  To understand how the Data Protection Act 1998 relates to the data you will be collecting, storing and processing  To.
Data Protection STFC Presentation to PPD Senior Staff 26/11/2009 FoI/DP team.
Data Protection Act & Freedom of Information Simon Mansell Corporate Governance and Information Team.
Data Protection Act ‘ What you need to know’ Corporate Information Governance Team Strategic Intelligence.
Data Protection Corporate training Data Protection Act 1998 Replaces DPA 1994 EC directive 94/46/EC The Information Commissioner The courts.
The Data Protection Act What Data is Held on Individuals? By institutions: –Criminal information, –Educational information; –Medical Information;
Why the Data Protection Act was brought in  The 1998 Data Protection Act was passed by Parliament to control the way information is handled and to give.
Local Government Reform and Compliance with the DPA Ken Macdonald Assistant Commissioner (Scotland & Northern Ireland) Information Commissioner’s Office.
IT Applications Theory Slideshows By Mark Kelly Vceit.com Privacy Laws.
Data Protection Property Management Conference. What’s it got to do with me ? As a member of a management committee responsible for Guiding property you.
Data Protection for Church of Scotland Congregations.
Introduction Data protection is relevant to every individual, business or organisation today, not just Local Government. As well as protecting privacy,
Data Protection - Rights & Responsibilities Information Commissioner’s Office Orkney Practice Forum 4 th July 2007.
THE DATA PROTECTION ACT Data Protection Act 1998 DPA 1. Reasons2. People3. Principles 4. Exemptions 4 key points you need to learn/understand/revise.
LEGISLATION. DATA PROTECTION ACT (1998) The aim of this act give people the right to know what information is held about them. It also sets out rules.
Data Protection Act The Data Protection Act (DPA) is a balance between rights of the DATA SUBJECT and obligations of the DATA CONTROLLER DATA CONTROLLER.
INFORMATION GOVERNANCE AND CONFIDENTIALITY Information Governance Facilitator.
Data Protection and research Rachael Maguire Records Manager.
DATA PROTECTION ACT (DPA). WHAT IS THE DATA PROTECTION ACT?  The Data Protection Act The Data Protection Act (DPA) gives individuals the right.
DATA PROTECTION ACT INTRODUCTION The Data Protection Act 1998 came into force on the 1 st March It is more far reaching than its predecessor,
GCSE ICT Data and you: The Data Protection Act. Loyalty cards Many companies use loyalty cards to encourage consumers to use their shops and services.
Session 11 Data protection. 1 Contents Part 1: Introduction Part 2: Applicability and responsibility Part 3: Our procedures on data protection Part 4:
© University of Reading Lee Shailer 06 June 2016 Data Protection the basics.
Workshop Understanding your responsibilities under the Data Protection Act 1998 and the Freedom of Information Act 2000 Adele Rhodes Girling.
Data protection—training materials [Name and details of speaker]
Sharing Personal Data ‘What you need to know’ Corporate Information Governance Team Strategic Intelligence.
Clark Holt Limited (Co. No ), Hardwick House, Prospect Place, Swindon, SN1 3LJ Authorised and regulated by the Solicitors Regulation.
Understanding Privacy An Overview of our Responsibilities.
Data Protection and Freedom of Information. Objectives Describe the main points of the Data Protection Act 1998 and Freedom of Information Act 2000 Illustrate.
Introduction to Data Protection Plan »Brief Introduction to Data Protection  Example  Principles  P3, 4, 7  Sensitive Data  Conditions for Processing.
Data protection act. During the second half of the 20th century, businesses, organisations and the government began using computers to store information.
Students’ Unions 2011 Data Protection and Students’ Unions Mairead O’Reilly 19 July 2011.
Data Protection GCSE ICT Mrs N Steventon-2005.
Data Protection and Confidentiality
Data Protection : A Practical Guide
Handout 2: Data Protection and Copyright
Data Protection Act.
IT Applications Theory Slideshows
Data Protection & Freedom of Information- An Introduction
GENERAL DATA PROTECTION REGULATION (GDPR)
New Data Protection Legislation
Data Protection principles
Data Protection and You
Data Protection Act 1998 & GDPR
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
Understanding Data Protection
Presentation transcript:

12/12/2015 Data Protection Act 1998

12/12/2015 The DP Act A law that protects personal privacy and upholds individual’s rights Anyone who handles personal information as part of their job must follow the rules set out in the Act The Act ensures that data held electronically and in paper-based systems are managed properly

12/12/2015 Gives rights to the people the information is about : Data Subjects Places obligations on organisations that process personal data : Data Controllers What does the Act do?

12/12/2015 Notification To comply with the Act every school must register the reasons for processing personal information with the Information Commissioners Office (ICO) Fee of £35/£500 is payable annually Failure to notify is a criminal offence

12/12/2015 Personal Data FactualOpinion Paper Recorded information about an identifiable living individual Electronic

12/12/2015 Sensitive Personal Data a. Racial or ethnic origin b. Political opinions c. Trade union membership d. Religious or similar beliefs e. Health or sexual life f. Criminal offences, proceedings and convictions

12/12/2015 Where do we hold Personal Data?

12/12/ Held no longer than necessary 6. Processed in line with the individuals rights 6. Processed in line with the individuals rights 2. Processed for specified purpose 7. Kept secure 8. Only transferred to countries with adequate security measures Personal Data should be … The eight data protection principles 3. Adequate, relevant and not excessive 4. Accurate and up to date 1. Processed fairly and lawfully

12/12/2015 Privacy Notice We should ensure that all Data Subjects are provided with the following information: The identity of the Data Controller The purpose for which the data is being processed Any further information necessary

12/12/2015 Individuals Rights Complain to the ICO Correct incorrect data Take action for compensation Prevent processing for direct marketing Prevent processing likely to cause harm Subject Access Request

12/12/2015 Offences The Information Commissioners Office (ICO) has a duty to investigate a complaint Reasons for complaint could be: –Failure to comply with a written request –Unauthorised disclosure of personal data

12/12/2015 Information Security

12/12/2015 The Information Commissioner has stated that information security is probably the most important aspect of data protection for schools The ICO has the power to impose fines of up to £500,000 for serious breaches of the DP Act The school must consider informing the ICO of any breach involving personal information

12/12/2015 Breaches Nov Leeds City Council - Child care files sent to the wrong address - Fined £95,000 Dec London Borough of Lewisham - social work papers left on train in plastic shopping bag - Fined £70,000 Dec Devon County Council – social worker used previous case as a template and the old report was sent in error, identifying 22 people – Fined £90,000 June Halton Borough Council - clerical officer sent adoptive parent’s address details to birth mother who then gave them to her parents who in turn contacted the adoptive parents - Fined £70,000

12/12/2015 Information Security Keep all personal information secure when it’s not being used

12/12/2015 Passwords Look after your user ID and password used to access your computer Password is Frog

12/12/2015 Conversations Do not discuss someone’s personal business in a public place

12/12/2015 Phoning Take care when disclosing personal information particularly on the telephone

12/12/2015 Computer Screens Make sure the computer screen is shielded in open plan or public areas

12/12/2015 Memory Sticks Do not keep personal or confidential information on memory sticks

12/12/2015 Take care when using to send sensitive or confidential information

12/12/2015 Faxing Be very careful if you need to fax personal information

12/12/2015 Photocopying/printing Only send personal or confidential information to multi-function printers in ‘safe haven’ locations Only send personal or confidential information to multi-function printers in ‘safe haven’ locations

12/12/2015 Building Security Tighter access controls to prevent unauthorised access

12/12/2015 Information in Transit Keep personal information confidential when moving it from one location to another

12/12/2015 Confidential Waste All papers that identify individuals must be destroyed in a secure manner

12/12/2015 Contact Details Information Commissioner Website: Tel: IR&T Team Information Governance Specialists: Caroline Dodge(Team Leader)1652 Sandra Town1790 Michelle Hunt6692 Pauline Banks4999 Records Manager – Elizabeth Barber 4373 KELSI: and-reporting/access-to-information