Ch 3- Risk management ethics privacy Flashcards
what are ethics
the ppricniples of right and wrong that individuals use to make choices that guide their behvaiour
what are ethical frameworks
and what are they based on
tradiitonal or the GVV framewokr (These are based on 5 approaches)
GIVING VOICE TO VALUES
WHAT IS CODE OF ETHICS
what are 3 funamental tenets of ethics code of ethics are based on
- code of ethics (collection of principples_
- fundamental tenets of ethics:
1) responsibility: accepting consequecnes of actions
2) accountability: assigning responsibility
3) liability: individual can recover damages done to them by other individuals
what are 4 categories of ethics in IT
4 categories of ethics in IT
1) privacy: collecting storing disemmingating info
2) accuracy: authenticity, fidelity, correctness of info
3) property: ownership and value of info
4) accesibility: who should have access to info and whether they should pay a feee to access
are things that are unethical always illegal
no!!!
privacy definition
right to be left alone and to be free of unreasonable personal intrusions
info privacy
right to determine when and how much info about you can be gathered/ ocmmunicated
what are the 2 general rules of privacy
-not absolute (must be balanced against needs of society)
-public’s right to know > individuals right to privacy
Digital dossiers are created using profiling
which is an electronic profile of you and your habits. The process of forming a digital dossier is called profiling.
what are some data aggregators
stat can
what is electronic surveillance
using tech to monitor individuals as they go about daily routines
-surveillance coducted by employees, govts and institutions
(think cameras)
what tech is used for surveillance
-inexpensive digital sensors in laptop webcams
-smartphones
-drones
major concerns about info that you provide records keepers with
- is sit accurate
-how is it used
-who is given access
what is a privacy code and policy
org cuideliens for protecting the privacy of customers, lcients, employees
methods of informed conset
opt out model
opt in model
what is P3P
platform for privacy preferences
PROTOCAL THAT AUTOMATICALLY COMMUNICATES PRIVACY POLICIES EBTWEEN A WEBSTIE AND ITS VENDORS
what is some legislation relatied to data privacy
PIPEDA
GDPR
CSA
What is PIPEDA
10 principles
1) accountabiltiy
2) identifying purposes
3) consent
4. limiting collection,
5. limiting use, disclosure, and retention,
6. accuracy,
7. safeguards,
8. openness,
9. individual access, and
10. challenging compliance.
- The global nature of the Internet complicates data privacy
- Approximately 50 countries have data-protection laws
- Inconsistent standards from country to country
- Transborder data flow
intl privacy
utilitarian approach of ethics
ethical approach is the one that does the least harm to everyone
rights approach of ethics
best approach is the one that best protects the rights of the parties
ex: right to truth, not to tbe injured, privacy
fairness approach
ethical actions treat all humans equally or equitably!!
think of pay disparities etc.
common good approach
respect and compassion for everyone is basis for ethical actions
good conditions are needed: healthcare, educaiton, public recreation areas
deontology approach
morality of an action depends on if the action itself is right or wrong, rather than the ocnsequences of that action
killing is deplorable even if self defense
WHO GETS ACCESS TO DIGITLA DOSSIER
govts employers
opt out model
collect data and thennn ask if people wanna opt out
opt in model
need to get informed consent before collecting data
p3p
platform for privacy preference
-tool for ocnsumers to protect privacy
-communicates privacy policy to visitos to detemrine types of personal data
how to make ethical decision
get relevant facts,
recognizes that it is a problem of an ethical nature
, and evaluates which options treat the parties in the most equal way.
considers all solution options and carefully implements her decision and reflects on its consequences.
Sensitive data being verified is an aspect of data accuracy,
individual consent before data gathering is an aspect of data collection,
disagreement about accuracy is an aspect of data accuracy
Disclosures of data and third-party access to data are data confidentiality issues, not accuracy issues. Collecting adequate and relevant data in relation to business objectives is a data collection issue, not an accuracy issue
bill198
if someone lies to u u can sue them