February 13, 2014
Itnews in Commissioner to launch privacy guidance next week reports that the Privacy Commissioner will relase its guidance on amendments to the Privacy Act. If the draft guidelines provide any indication the focus is on the operation of the Australian Privacy Principles.
The article provides:
Having compliance on your agenda isn’t enough, says commissioner.
Australian privacy commissioner Timothy Pilgrim said his office will release long-awaited final guidance on new privacy legislation before the end of next week, less than a month before the stricter regime takes effect.
Pilgrim said the Office of the Australian Information Commissioner (OAIC) would also Read the rest of this entry »
Posted in Commonwealth Privacy Commissioner, Privacy
|
Post a comment »
February 12, 2014
In one calendar month the amendments to the Privacy Act take effect. For those organisations covered by the Act and non compliant the impact could be significant. The Commissioner will have powers Read the rest of this entry »
Posted in Privacy, Privacy Articles
|
Post a comment »
February 10, 2014
The Information Commissioner’s Office in the UK has produced 2 interesting reports of data maintenance by independent fostering and adoption agencies and general practitioners and primary healthcare providers. The reports highlight positives and negatives on data handling and security processes in each industry group. The general practitioners and primary healthcare providers seem to have been more compliant than foster and adoption agencies.
Given the soon to be expanded role of the Privacy Commissioner and a more assertive regulation of data management and data security the findings by the ICO should be noted, studied and implemented. Each jurisdiction may have particular issues however many good data management and privacy enhancing processes are universal.
Regading data management, security and privacy issues warranting concern and requiring improvement the ICO made the following comments:
Posted in Health privacy issues, Privacy
|
Post a comment »
February 9, 2014
In a constantly changing world there are a few certainties. One is that the Victoria Police LEAP database will continue to be abused with personal information of Victorians accessed without authorisation and, occasionally (or more often), leaked to those who find such information invaluable; criminals, private investigators and unscrupulous debt collectors to name just a few usual suspects. In Cops still using LEAP database to snoop on people the Herald Sun today reports that the more things stay the same the more things stay the same. Breaches of the LEAP database has previously been reported by Read the rest of this entry »
Posted in Privacy, Privacy Articles
|
Post a comment »
SBS radio has recently had a program on the impact of the new amendments to the Privacy Act on 12 March 2014 in Do new privacy protection laws go far enough?
The points made are familiar to those who practice in the privacy sphere, so to speak. The changes are far from comprehensive and a selective adoption of the Australian Law Reform Commissioner report. Very much a curate’s egg – good in parts. The Act will remain inadequate but if properly and effectively regulated it should should dramatically improve privacy protection in so far as it covers the handling of personal information. The current Privacy Commissioner is quite active. Far more active than his predecessors. But now he has real enforcement powers and a business environment that is only partially compliant (and hardly likely to be in any better shape before 12 March) the real test is how he uses those powers.
It provides:
While millions Read the rest of this entry »
Posted in Practical issues, Privacy
|
Post a comment »
February 7, 2014
Phones, cameras and the ubiquitous USB stick pose a real and growing problem for organisations trying to maintain data security. The storage of data on those devices as well as photocopiers can easily become a data breach if they are not wiped clean when decommissioned. The growing phenomana of BYODs and the development of the internet of things makes this problem as big a data risk as a hacking attack.
The UK Information Commissioner’s office has provided some helpful hints on how to deal with personal information left on mobile devices in their now many incarnations with Deleting your data from computers, laptops and other devices.While the ICO goes through the various options if an organisation is upgrading its mobiles or laptops serious consideration should be given to Read the rest of this entry »
Posted in Privacy
|
Post a comment »
February 6, 2014
Data security is a key issue in the regulation of privacy. Security from hacking is the prominant issue for web sites. Direct attacks can be difficult to protect against but not as complex as third party access. In Contractor creds used in Target hack itnews reports that the massive breach of Target’s data occured because of stolen log credentials of a third party, an air conditioning contractor. Net result a loss of records of 110 customer payment cards and personal records. This poses a dilema for large organisations which use third parties, often smaller operations with less sophistacted IT system and protection. The changes to the Privacy Act in March requires organisations to maintain adequate security. Take reasonable steps in fact. If an organisation is concerned about the security of its contractors it will have to take steps to restrict their access to its site or require the contractors to upgrade their security. The consequences of a Read the rest of this entry »
Posted in Privacy, Privacy Articles
|
Post a comment »
February 5, 2014
Even though the article is titled Internet privacy: how Australia’s new laws will work the Guardian piece is, properly, about the general changes to the Privacy Act. In my recent experience the reaction from those who should be most concerned about making sure they are compliant is a weary “meh”. Almost as if – it wasn’t a problem in the past why should it be a problem into the future. The analysis is flawed of course. Previously the Privacy Act had little impact on businesses covered by it because the powers available to the Privacy Commissioner were very limited and any exposure to penalty so slight as to be almost academic. As of 12 March the regulatory landscape will change from peaceful meadows to tangled weeds and steep cliffs for organisations Read the rest of this entry »
Posted in Privacy, Privacy Articles
|
Post a comment »
Forbes reports that Mark Zuckerberg’s apparent softening on privacy, at least as far as supporting anonymity, in Zuckerberg’s Embrace Of Anonymity Marks Shift In Attitudes Toward Privacy. It may be a nuanced change but a step, even if of the micro variety, is to be welcomed. As the article ponders, the proof is in the eating.
The article provides:
In an interview with Bloomberg BusinessWeek on Thursday, Facebook CEO Mark Zuckerberg admitted that he thought it was “somewhat of a burden” if you are “always under the pressure of a real identity.”
If anyone else had said something so obvious it would be completely unremarkable. But coming from the same person who once threatened “the age of privacy is over” and having Read the rest of this entry »
Posted in Privacy, Privacy Articles
|
Post a comment »
February 4, 2014
The California Assembly passed the Bill 1256 (AB 1256) – Privacy and Buffer Zones and Bill 1356 (AB 1356) – Stalking Reform last week. Both Bills were the product of the work of the Paparazzi Reform Initiative.
The Privacy and Buffer Zone Bill provides:
Posted in Privacy
|
Post a comment »