4th Conference on Information Society Infobalt, Vilnius 1 Privacy Protection Audit and IT Security Problems in Germany Dr. Thilo Weichert Independent Centre.

Slides:



Advertisements
Similar presentations
Steps towards E-Government in Syria
Advertisements

ICPP ICPP = Independent Centre for Privacy Protection Schleswig-HolsteinICPP = Independent Centre for Privacy Protection Schleswig-Holstein Service.
1 Dr. Ashraf El-Farghly SECC. 2 Level 3 focus on the organization - Best practices are gathered across the organization. - Processes are tailored depending.
The Challenges for Ensuring Transparency and Accountability in specific Areas of Public Financial Management presented by Mr.Abdluaziz Yousef Al-Adsani.
Special Meeting on ICT Education in Tertiary Institutions Towards a Regional Perspective on Quality and Academic Standards in ICT Education and Training.
Dr. Mohamed A. Hamada Lecturer of Accounting Information Systems Advanced Auditing Lecture 1 Assurance and Attestation Services.
The fundamentals of EC competition law
Implementation of Electronic Signature Law Kęstutis Andrijauskas Information Society Development Committee under the Government of the Republic.
Spring Conference of the European Privacy Commissioners 2002 in Bonn 1 Privacy Protection Audit/Seal of Quality - Practical Experience Dr. Helmut Bäumler.
National Institute of Advanced Industrial Science and Technology Auditing, auditing template and experiences on being audited Yoshio Tanaka
The quality assurance system in Sweden Håkan Hult Linköping University Gdansk March 13, 2009.
9.401 Auditing Chapter 1 Introduction. Definition of Auditing The accumulation and evaluation The accumulation and evaluation Of evidence about information.
This work is supported by the National Science Foundation under Grant Number DUE Any opinions, findings and conclusions or recommendations expressed.
© 2006 IBM Corporation Introduction to z/OS Security Lesson 9: Standards and Policies.
Tamara Ćapeta  Comparable to evolutive federations : Article 1 TEU:  “By this Treaty, the HIGH CONTRACTING PARTIES establish among themselves.
1980 Hague Child Abduction Convention and Brussels II bis Interaction within the EU and beyond Prof. Dr. Marta Pertegás First Secretary Hague Conference.
1 IPSG WORKSHOP 1 - CHALLENGES AND TOOLS FOR THE CENTRE OF GOVERNMENT There is an observable trend towards direction of centralization of the CoG: Reasons.
Public sector compliance audit and its internal controls Meeting of the INTOSAI Subcommittee on Internal Control Standards, 27th of May 2014, Vilnius,
SAFA- IFAC Regional SMP Forum
AfDB - EBRD Joint conference in procurement reform in North Africa and SEMED Countries Marrakech 22 and 23 April 2013 Jordan Delegation 22-23/4/2013.
IEKA - Albanian Institute of Authorized Chartered Auditors Towards application of new standards on accounting and auditing – Albanian challenge on implementing.
Republic of Moldova: general presentation Geographical position: South-Eastern Europe Territory: 33,8 thousand км 2 (situated between the Danube, Prut.
Tina Kraigher and Milena Podjed-Fabjančič 18 April 2010 Processing of Telephone Traffic Data of Employees ( a Case Study )
"certification service provider" Electronic Signatures
Slovenia One of very few EU countries without a special legal regulation of that topic  Why? Other possibilities? EU Directive on AR for Consumer Disputes.
EHRs and the European Union – current legislation and future directions. Dr Richard Fitton.
[Gaßner, Groth, Siederer & Coll.] Dr. Jochen FischerPV Policy Group ProjectSolar Energy in Germany 1 st Meeting1 PV Policy Group Project 1.
Slide 1 The 8th Company Law Directive on Statutory Audit: Conditions for entry into the profession of auditing, mutual recognition and free movement of.
Quality in language assessment – guidelines and standards Waldek Martyniuk ECML Graz, Austria.
M. ANGELA JIMENEZ 1 UNIT 5. REGULATION OF EXTERNAL AUDIT IFAC AND E.C.
DINI „Electronic Publishing Group“ DINI – Certificate Document and Publication Repositories “Electronic Publishing Group“
Accreditation practices at the Hungarian Central Statistical Office Zoltán Vereczkei Methodology Department Hungarian Central Statistical Office
The Legal Basis of Volunteering in Italy Renzo Razzano President SPES Volunteer Support Centre Lazio Region Vice President of CEV Parliament of Lithuania,
APPLICATION OF EU SUSTAINABLE DEVELOPMENT RULES Axel Luttenberger.
Massella Ducci Teri Italian approach to long-term digital preservation Policies for Digital Preservation ERPANET Training Seminar.
© B ARTBERG Hotelbetriebs- und Beratungs Ges.m.b.H Pressbaum, Grenzgasse 15 CMC and Eastern European Perspectives Prof. Dr. Gerd Prechtl, CMC The.
1 Internal Audit. 2 Definition Is an independent activity established by management to examine and evaluate the organization’s risk management processes.
Presentation “Green Investment Schemes – greenhouse gas emissions quotas trading mechanisms in Ukraine according to the Kyoto Protocol to the Convention.
Competitive selection in the civil service of Lithuania Civil Service Department under the Ministry of the Interior Rasa Tumėnė Advisor of the Division.
Unit 1: Law, Justice, and You
A regional perspective: Council of Europe The European Convention on Human Rights The European Social Charter.
UNECE – SIDA “ SOUTH EAST EUROPE REGULATORY PROJECT” FIRST MEETING OF REGULATORS FROM SOUTH EAST EUROPEAN COUNTRIES PRESENTATIONFROM THE REPUBLIC OF MACEDONIA.
Ministry of Agriculture and Environmental Protection of the Republic of Serbia Implementation of the third pillar of the Aarhus Convention - Access to.
INTERNATIONAL CONFERENCE National Human Rights Institutions and the Promotion and Protection of Human Rights in Macedonia and the Western Balkans What.
Deregulation to the Economy and removal of Administrative Barriers, Russian Federation EuropAid/114008/C/SV/RU Setting up of national accreditation system.
16-17 November 2005 COSCAP – NA Project Steering Group Guangzhou, China 1 Co-operating with the European Aviation safety Agency.
Technical Assistance Office SOCRATES / Lingua 1 and 2 Information seminar for co-ordinators of successful pre-proposals Carla Donda 28 January 2005.
European Aviation Safety Agency Head of Aircraft Product Certification
Privacy Audit and Privacy Seal Barbara Körffer & Dr. Thomas Probst Independent Centre for Privacy Protection Independent Centre for Privacy ProtectionSchleswig-Holstein.
Leading State Inspector Ivan Rovkach Department of Nuclear and Radiation Safety Ministry of Emergency Situations of the Republic of Belarus(GOSATOMNADZOR)
Lecturer: Lina Vladimirovna Zhornyak, associated professor.
Deputy Head of Federal Accreditation Service Sergey V. Migin Approximation of accreditation systems of European Union and Russia.
Ministry of Finance Compliance assessment of the management and control systems of the managing authorities under the Operational programmes. Conclusions.
Monika W ó jtowicz, LL.M. European Privacy Seal Certification of evaluators and the application procedure from the perspective of an EuroPriSe evaluator.
1. Consumers, Health, Agriculture and Food Executive Agency General presentation on the Regulation (EC) No 882/2004 Providing an overview of the main.
Mirjana Boshnjak Skopje, 20 to 22 September 2017
MODULE 8: GOVERNANCE AUDIT EVIDENCE AND REVIEW
Joint Seminar Brussels 2017.
Auditor Training Module 1 – Audit Concepts and Definitions
Modern Auditing: Assurance Services and the Integrity of Financial Reporting, 8th Edition William C. Boynton California Polytechnic State University at.
EU Competences Tamara Ćapeta 2016.
MODULE 2 INTRODUCTION TO GOVERNANCE AUDIT
EU Reference Centres for Animal Welfare
Quality system in forensics
Law and nursing practise
Andrea Sundstrand Associate Professor
Modern Auditing: Assurance Services and the Integrity of Financial Reporting, 8th Edition William C. Boynton California Polytechnic State University at.
Legal Foundations of European Union Law II
Data Protection in Law Enforcement Area Chapter 9a of the draft law
GDPR PERSONDATAFORORDNINGEN I PRAKSIS
Presentation transcript:

4th Conference on Information Society Infobalt, Vilnius 1 Privacy Protection Audit and IT Security Problems in Germany Dr. Thilo Weichert Independent Centre for Privacy Protection Schleswig-Holstein, Germany

4th Conference on Information Society Infobalt, Vilnius 2 Privacy Protection Audit and IT Security Problems in Germany  One-sided focus on legal aspects  Too much geared towards Rules and Prohibitions  Lack of incentive for good Privacy Protection Concepts  Customers and Citizens not enough involved Reasons for the Establishment of the Privacy Protection Audit Shortcomings of the previous Privacy Protection System

4th Conference on Information Society Infobalt, Vilnius 3 Privacy Protection Audit and IT Security Problems in Germany  Privacy Protection makes an arrival at the free economy  Influence on the technical Design  Increased Possibility for Control  Privacy Protection as a winning Model Reasons for the Establishment of the Privacy Protection Audit

4th Conference on Information Society Infobalt, Vilnius 4 Privacy Protection Audit and IT Security Problems in Germany  Federal Data Protection Act  Member States‘ Privacy Protection Acts  Privacy Protection Act of Schleswig-Holstein  Privacy Protection Audit  IT Seal of Quality Legal Situation in Germany

4th Conference on Information Society Infobalt, Vilnius 5 Privacy Protection Audit and IT Security Problems in Germany  Legal Situation  Rules  How to execute the Audit  Subject of the Audit  Public Authorities  Parts of Public Authorities  Administrative Proceedings Privacy Protection Audit in Schleswig-Holstein

4th Conference on Information Society Infobalt, Vilnius 6 Privacy Protection Audit and IT Security Problems in Germany  On voluntary Basis  Increasing Personal Responsibility  Using the Audit as an Image und Commercial factor Privacy Protection Audit in Schleswig-Holstein

4th Conference on Information Society Infobalt, Vilnius 7 Privacy Protection Audit and IT Security Problems in Germany  Examining the current Privacy Protection Situation  Determination of Privacy Protection Aims  Establishment of a Privacy Protection Management System  Appraisal by the Independent Centre for Privacy Protection Procedure of the Privacy Protection Audit in Schleswig-Holstein

4th Conference on Information Society Infobalt, Vilnius 8 Privacy Protection Audit and IT Security Problems in Germany  Awarding with the Audit Seal  First Experience Procedure of the Privacy Protection Audit in Schleswig-Holstein

4th Conference on Information Society Infobalt, Vilnius 9 Privacy Protection Audit and IT Security Problems in Germany  Legal Regulation: § 4 par. 2 Priv.Prot.Act  Further Steps  July 01, 2000:Enactment of the Priv.Prot.Act  April 04, 2001:Quality Seal Decree by the State Government  Nov 05, 2001:Beginning of the Expert Accreditation Procedure  Feb 01, 2002:Publication of the Product Criteria  Feb 01, 2002:Accreditation of the first Experts IT Seal of Quality in Schleswig-Holstein

4th Conference on Information Society Infobalt, Vilnius10 Privacy Protection Audit and IT Security Problems in Germany  Product to be certified  Conclusion of an Expert Agreement  Examination and Evaluation of the Product by the Expert  Expert Opinion  The Independent Center for Privacy Protection checks the Expert Opinion on conclusiveness and understandability Course of the Quality Seal Procedure in Schleswig-Holstein

4th Conference on Information Society Infobalt, Vilnius11 Privacy Protection Audit and IT Security Problems in Germany  Awarding with the Mark of Quality

4th Conference on Information Society Infobalt, Vilnius12 Privacy Protection Audit and IT Security Problems in Germany  Competence and Expert Knowledge  Independence  Reliability  List of Experts: Experts in the Schleswig-Holstein Seal of Quality Procedure

4th Conference on Information Society Infobalt, Vilnius13 Privacy Protection Audit and IT Security Problems in Germany  No violation of Privacy Protection Laws  Support of Privacy Protection and Data Security Aims by Means of technical Design  Possible organisational Backup Measures are described in an understandable Way and can be put into Action with appropriate Effort  Easily understandable Documentation  Altogether adequate to the User Criteria for the Schleswig-Holstein Seal of Quality

4th Conference on Information Society Infobalt, Vilnius14 Privacy Protection Audit and IT Security Problems in Germany  Data Avoidance/Data Austerity  Guarantee for Data Security and Ability to Revision  Guarantee for the Rights of the involved citizen Special Criteria for the Schleswig-Holstein Seal of Quality

4th Conference on Information Society Infobalt, Vilnius15 Privacy Protection Audit and IT Security Problems in Germany  Supported by the EU  Results Influence the Federal Legislation  International Congress 2003 in Kiel The Schleswig-Holstein Seal of Quality Procedure

4th Conference on Information Society Infobalt, Vilnius16 Privacy Protection Audit and IT Security Problems in Germany The Independent Centre for Privacy Protection Where?Holstenstraße 98, Kiel Telephone? 0431/ Telefax?0431/ Internet?