Enforcement of U.S. Privacy and Security Laws Flashcards
5-7 questions
Who is the lead privacy enforcer in the government?
FTC
Define:
civil ligitation
occurs in courts where plaintiff sues defendant to redress a wrong
Define:
criminal prosecution
- actions brought by the government for violations of criminal laws
- prosecuted by DOJ or state AG/DAs
Define:
administrative enforcement actions
- carried out pursuant to statutes that create and empower an agency, such as the FTC
- rules for agency enforcement actions occur under the Administrative Procedure Act (APA) which sets forth rules for adjudication within an agency, where court-like hearings may take place before an administrative law judge
Can a federal agency sue?
federal agency may sue a party in federal court, with the agency as the plaintiff in the civil action
Who is the enforcer for medical privacy?
Office of Civil Rights (OCR) in Department of Health and Human Services (HHS) enforces the Health Insurance Portability and Accountability Act (HIPAA)
Who is the enforcer for financial privacy?
- Consumer Financial Protection Bureau (CFPB) responsible generally for consumer protection issues
- federal financial regulators such as the Federal Reserve and the Office of Comptroller of the Currency (OCC) have privacy enforcement responsibilities for institutions under their jurisdiction under the Gramm-Leach-Bliley Act (GLBA)
Who is the enforcer for educational privacy?
U.S. Department of Education enforces the Family Educational Rights and Privacy Act (FERPA)
Who is the enforcer for telecommunications and marketing privacy?
Federal Communications Commission (FCC) has responsibilities under the Telephone Consumer Protection Act and other statues
Who is the enforcer for workplace privacy?
agencies including Equal Employment Opportunity Commission (EEOC) responsible for enforcing protections in the Americans with Disabilities Act (ADA) and other anti discrimination statutes
How is the U.S. Department of State involved in privacy oversight, enforcement and policy?
increasingly active, especially by negotiating internally on privacy issues with other countries
How is the Department of Commerce involved in privacy oversight, enforcement and policy?
leading role in federal policy development and has traditionally administered agreement on privacy protection for data flows between the U.S. and the EU
How is the Department of Transportation involved in privacy oversight, enforcement and policy?
traditionally enforced violations of agreement on privacy protections for data flows between the U.S. and EU for some transportation companies
How is the FAA involved in privacy oversight, enforcement and policy?
increasing role for drones
How is the Office of Management and Budget involved in privacy oversight, enforcement and policy?
lead agency for interpreting Privacy Act of 1974, which applies to federal agencies and private-sector contractors to those agencies