The Data Protection Act 1998.ppt
《The Data Protection Act 1998.ppt》由会员分享,可在线阅读,更多相关《The Data Protection Act 1998.ppt(27页珍藏版)》请在麦多课文档分享上搜索。
1、Oxford University, 29th June 2000,The Data Protection Act 1998,Tony Brett IT Systems Manager Corpus Christi College,Oxford University, 29th June 2000,Overview,General overview of the act What is the act? Definitions Changes since 1984 act Principles of the act Transitional Relief Implications for Co
2、lleges and Departments Things to keep in mind Resources,Oxford University, 29th June 2000,What is the Data Protection Act?,Intended to balance interests of data subjects with data controllers. Freedom to process data vs. privacy of individuals. 1984 act was repealed by the 1998 act. 24 October 1998.
3、 1 March 2000.,Oxford University, 29th June 2000,Definitions,Personal Data Expression of opinion, or fact, E-mail address, photos, video footage etc. etc. Some types are sensitive (a special new category). Processing Reviewing, holding, sorting, deleting Data Controllerall of us! Users of data Relev
4、ant Filing System Readily accessible information about living individuals Commissioner New name for Data Protection Registrar,Oxford University, 29th June 2000,Changes Since the 1984 Act,Much broader than the old act. More rights for data subjects. Covers relevant manual filing systems. New category
5、 of data sensitive data. Transitional relief 23 October 2001, for existing automated data and 23 October 2007 for manual records. Processing must have been in effect before 24 October 1998. Rules about export of data to non-EEA countries.,Oxford University, 29th June 2000,Some Effects on Colleges an
6、d Departments,Data subjects are students, staff, alumni, suppliers (sole traders or partnerships), tenants, legal advisers, fellows etc. Not people “acting in a capacity”. Anyone can be a data controller Dead people have no rights. Overseas transfers of data notably to U.S. Requirement to ensure dat
7、a is secure, accurate, sufficient but not excessive. Cant hold data longer than is reasonable.,Oxford University, 29th June 2000,Principles of the act 1.,Non-sensitive Personal data must be processed fairly and lawfully and shall not be processed unless one of the below is met (schedule 2). Consent
8、the most important Contract Legal Obligation Vital interests of subject (life or death!) Public functions Balance of interest,Oxford University, 29th June 2000,Sensitive Personal Data,Racial or ethnic origin Political opinions Religious/similar beliefs (note food!) Trade Union Membership Health Sexu
9、al Life Offences,Oxford University, 29th June 2000,Sensitive Personal Data,May only be held if one of the below is met: Explicit and informed consent Employment Law Vital Interests of Subject Legal Proceedings Medical Purposes (by medical professionals) Equal opportunities monitoring,Oxford Universi
10、ty, 29th June 2000,Consent,“Freely given specific and informed indication of wishes by which the data suject signifies agreement to personal data relating to him/her being processed.” Cant use implied consent must get forms back. Cant use blanket consent as condition of entry.,Oxford University, 29t
11、h June 2000,Fair processing,Must not intentionally or otherwise deceive or mislead subject as to purpose of data use/collection. Must identify to subject data controller/nominated representative. Must identify to subject purpose of processing data. Exceptions are disproportionate effort (direct mark
12、eting not allowed) or legal obligation.,Oxford University, 29th June 2000,Principles of the act 2.,Data must be obtained only for one or more specified lawful purposes. Must not use data for a new incompatible purpose without subjects consent. Have a data protection statement explaining what data wi
13、ll be held and why and get consent from new students/staff as they arrive. Old members data is a grey area for Colleges.,Oxford University, 29th June 2000,Principles of the act 3 & 4.,Personal data must be adequate, relevant and not excessive. Must not stock up on data without a reason that can be j
14、ustified consent! Personal data shall be accurate and up-to-date. This is an ongoing requirement and means data needs to be kept under constant review.,Oxford University, 29th June 2000,Principles of the act 5.,Personal data may not be kept for any longer than is necessary for its stated purpose(s).
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
2000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- THEDATAPROTECTIONACT1998PPT
