Privacy Fundamentals Flashcards
What are the privacy classes?
Informational, territorial, bodily, communications
What does UDHR cover for privacy and human rights?
Art 12- No one shall be subjected to arbitrary interference with his privacy, family, home or correspondence, nor to attacks upon his honour and reputation.
What does ECHR cover with respect to privacy and human rights?
Art 8- Everyone has the right to respect for his private and family life, his home and his correspondence.
There shall be no interference by a public authority with the exercise of this right except such as is in accordance with the law and is necessary in a democratic society in the interests of national security, public safety, or the economic well being of the country, for the prevention of disorder or crime, for the protection of health or morals, or for the protection of rights and freedoms of others.
What principles is the US Fair Information Practices 1973 based on?
- No secret record systems
- Must have way to find our record and usage
- Way for preventing use for other purposes.
- Way for person to correct or amend a record.
- Any organisation creating / maintaining/ using/ disseminating records must Ensure reliability of data for their intended use.
What is the significance of Council of Europe 1981?
Convention for the Protection of Individuals with regard to Automatic Processing of Personal Data
Basic principles:
- Data quality
- Special categories of data
- Data Security
- Data subject safeguards
- Sanctions and remedies
- Extended protection by states
What is the scope covered by the Convention for the Protection of Individuals with regard to Automatic Processing of Personal Data?
Public and private sectors
What is the key EU directive?
Directive 95/46/EC of the European Parliament
Council of 24 Oct 1995
On the protection of individuals with regard to the processing of personal data and on the free movement of such data
What is the Madrid Resolution?
31st International Conference of Data Protection and Privacy - 50 countries approved the resolution.
Sets out 9 data principles: Lawfulness and fairness Purpose specification Proportional Principle Data Quality Principle Openness principle Accountability Principle Rights of individuals Security measures Breach notification
When was the European Data Protection Board created?
On 25 May 2018 it adopted the Guidelines previously issued by the Article 29 Working Party
When was the new Privacy Shield finalised?
2 Feb 2016
What is the US definition of Personal Identifiable Information?
Any info relating to an identified or identifiable individual
What does sensitive personal info mean in US?
Social security number
Financial info
Driver’s license no
Medical records
What does special categories of data mean in Europe?
Racial or ethnic origin Political opinions Religious or philosophical beliefs Trade union membership Health or sex life Criminal convictions or offences
What are the primary purposes of the APEC Privacy Framework as approved by the APEC ministers in 2004?
(a) improve information sharing among gov agencies and regulators
(b) improve info sharing among gov agencies and regulators
(c) encourage the use of electronic data as a means to enhance and expand business
(d) establish a common set of privacy principles
(E) provide technical assistance to those economies that have yet to address privacy from a regulatory or policy perspective
In which countries has the European Commission determined there is adequate privacy protection?
Andorra, Argentina, Canada, Faeroe Islands, Guernsey, Isle of Man, Israel, Jersey, NZ; Switzerland, Uruguay, US
17 July 2018: Japan/EU concluded their talks on reciprocal adequacy.