Impact of Investigatory Powers Bill on the UK s Digital Economy May 2016

Size: px
Start display at page:

Download "Impact of Investigatory Powers Bill on the UK s Digital Economy May 2016"

Transcription

1 Impact of Investigatory Powers Bill on the UK s Digital Economy May 2016 Talal Rajab Head of Programme National and Cyber Security +44 (0) talal.rajab@techuk.org Tom Morrison-Bell Public Affairs Manager +44 (0) tom.morrison-bell@techuk.org 10 St Bride Street T London F EC4A 4AD

2 About techuk techuk represents the companies and technologies that are defining today the world that we will live in tomorrow. More than 850 companies are members of techuk. Collectively they employ approximately 700,000 people, about half of all tech sector jobs in the UK. These companies range from leading FTSE 100 companies to new innovative start-ups. The majority of our members are small and medium sized businesses. Executive Summary techuk welcomes the Government s attempt to harmonise investigatory powers legislation. There is, however, growing anxiety among businesses about the Bill s unintended consequences for the digital economy. As Britain s digital economy is the largest in Europe, any negative consequences will have a significant impact on the UK economy more broadly. Vague provisions and broad definitions in the Bill threaten to undermine user trust in technology and digital services. These need to be tightened on the face of the Bill as trust is the bedrock of the digital economy. It is vital that encryption services are not weakened. Encryption is fundamental for UK GDP and underpins the digital economy. It is widely seen as the best method to ensure that businesses and government are not vulnerable to cyber-attacks and fulfil their data protection obligations. The Bill currently places potentially disproportionate technical and financial burdens on businesses. These threaten many of the UK s fastest growing and most dynamic companies, and a number of start-ups have already left the UK as a result. The Bill must clarify the compensation available to companies for compliance costs, such as data retention as uncertainty could be crippling to businesses. Costs must be proportionate and the Government should consider covering 100% of costs. Unilateral assertions of extraterritorial jurisdiction in the Bill will create conflicting legal obligations for many companies that are subject to legal obligations elsewhere. This will make the UK a harder place to do business and is a disincentive to investment and innovation. To minimise the impact on the UK s digital economy, it is vital that Government departments take a joined up approach on this Bill, especially in light of the forthcoming UK Digital Strategy. 2

3 Background In March 2016, the Home Office published a revised Investigatory Powers Bill and the Government s response to the Bill s pre-legislative scrutiny. techuk fully supports the Government s commitment to bringing legislation in this area within a single Investigatory Powers Bill. However, there is growing anxiety among businesses about the unintended consequences of the powers in the Bill on user confidence in digital services. As outlined in a recent letter from tech leaders published in the Telegraph, consumer trust is the bedrock on which the digital economy is founded. Therefore, small shifts in public sentiment regarding the security and privacy of users communications can have serious consequences for the UK s digital economy. This is particularly important as the UK s digital economy is the largest in Europe. It accounts for nearly 15% of GDP and more than 1.5 million jobs. As such, any negative consequences the Bill has on the UK s digital economy will have a significant impact on the UK economy more broadly. Data-driven companies require clarity and consistency and the Bill fails to deliver these. This document outlines a number of areas where this is the case and techuk encourages the Government to act now to avoid the potential unintended consequences of the Bill on the UK s digital economy as Government, companies and users of digital services all have a shared interest in the sector s continued growth. Issue 1 The Bill threatens to undermine users trust in the UK s digital economy Since 2010 there has been growing public concern into how surveillance is conducted in the UK, with recent surveys revealing that 72% of British consumers are concerned about their private information online. Consumer trust is the bedrock on which the digital economy is founded. Therefore, small shifts in public sentiment regarding the security and privacy of users data can have serious consequences for the UK s digital economy. Many of the provisions in the Bill are vague and broad in their scope. This has the potential to create legal uncertainty for companies, undermine trust in the UK s digital economy and confidence in the UK as a place to do data-driven business. It is crucial that investors in the UK s digital economy do not feel that the broader interests of the digital economy will be compromised. For example, by virtue of powers now being within a single Bill, any power would be applicable to any entity capable of being deemed a communications provider. This brings new technology and security intermediaries within scope, without any ability for these companies to reasonably forecast when or how they might be affected. Transparency is a further cornerstone for trust in the digital sector, evidenced by the increasing number of companies producing transparency reports on the number and nature of requests that they receive for data. The Bill currently prohibits user notification, one of the sector s key transparency principles. 3

4 Recommended actions The Bill should: Include an additional section that explicitly addresses each privacy safeguard within the Bill and includes a clause that explicitly sets out the universal privacy protections which apply across the full range of investigatory powers. Enshrine the principle of user notice: as a general rule, users should be informed when the Government seeks access to account data. It is important both in terms of transparency, as well as affording users the right to protect their own legal rights. Provide for a right of appeal for service providers to the Investigatory Powers Commissioner, in cases where permission to notify a user is refused. Permit companies to publish data about requests received under international agreements. Issue 2 The Bill raises serious question marks for rapidly growing tech companies The Bill creates disproportionate and burdensome technical and financial requirements that could have a significant impact on many start-up and scale-up companies. A retention or technical capability notice served on one of these companies could negatively impact at a crucial time in their business development. For example, a data retention notice may impose an obligation on a small provider to retain data after the data controller has deleted the data. Not only will this require investment in new business practices, it would make the provider the de facto data controller, creating a host of further obligations for the provider as the controller of the data. This could be crippling for such companies. A number of start-ups have already decided to leave the UK due to the perceived burdens they would face from the Bill. Recommended actions DCMS, HMT and BIS have outlined goals for the digital economy and must seek assurances that the Home Office is not trading off broad objectives against business confidence. This is particularly pertinent for DCMS and BIS in light of the forthcoming UK Digital Strategy. In light of this, the Government should carry out an impact assessment of the current Bill on the UK s digital economy before enacting legislation. Provisions in the Bill that will require novel business practices must be set out coherently, so that companies are fully aware of, and can prepare for, the requirements that will be placed on them. 4

5 Issue 3 Economic security and national security are two sides of the same coin A company s ability to keep data secure is key to business success, however, the Bill creates a number of conflicting security and legal obligations that have the potential to undermine network integrity and cyber security in the pursuit of national security. A central concern is the Government s ongoing failure to confirm, on the face of the Bill, that encryption will not be weakened. Encryption is fundamental for UK GDP and underpins the digital economy. It is widely seen as the best method to ensure that businesses and government are not vulnerable to online attacks and fulfil their legal obligations under data protection statutes to keep personal data free from external intrusion. Furthermore, equipment interference requirements and technical capability orders could apply to cybersecurity companies, since many of them route traffic from other companies. This would undermine trust in their services and potentially weaken the cybersecurity services they offer. Such requirements could therefore harm a growing cybersecurity sector, despite it being identified as a priority sector by the Government in the National Cyber Security Strategy. Recommended actions The Bill must specifically safeguard encryption. The Government must take steps to ensure that the Bill does not undermine cyber security create nor reduce the ability of companies to secure their products and services. Issue 4 The Bill is unclear on the implications of data retention costs for companies The Bill places new and potentially expensive technical requirements on companies. For example, some companies will be required to store internet connection records (ICRs) for 12 months. This will be beyond normal business practice for many of them and will greatly increase operational costs. The Government has reassured industry that it will help with these costs, recognising the damaging impact they could have. However, the Bill remains ambiguous as to what these contributions will be, stating that the Government will make an appropriate contribution that must never be nil towards costs of retaining data that companies would not normally retain. 5

6 Recommended actions The Bill must clarify the compensation available to companies for compliance costs, such as data retention. This uncertainty is damaging to companies. Costs must be proportionate and the Government should consider covering 100% of costs. Issue 5 Potential conflicts of the Bill Unilateral assertions of extraterritorial jurisdiction in the Bill will create conflicting legal obligations for overseas providers who are subject to legal obligations elsewhere. There is a considerable risk that the Bill could conflict with newly adopted EU legislation such as the General Data Protection Regulation (GDPR) and the Network and Information Security Directive (NISD). The Bill will currently result in a patchwork of overlapping and conflicting laws that creates uncertainty, undermines user privacy and hinders innovation. This disincentive to investment and innovation will make the UK less attractive for investment. It also sets a worrying international precedent: UK companies abroad might find themselves having to retain and provide data to satisfy overseas governments. Recommended actions The Bill must ensure that no obligations can be placed on providers which require them to undermine customer security and put them in breach of cybersecurity or privacy laws. Furthermore, DCMS, HM Treasury and BIS should push the Government to create a coherent international legal framework, taking into account issues of proportionality, necessity and transparency, in order to resolve these conflicts across jurisdictions. 6

Briefing on Investigatory Powers Bill Prepared for the Public Bill Committee March 2016

Briefing on Investigatory Powers Bill Prepared for the Public Bill Committee March 2016 Briefing on Investigatory Powers Bill Prepared for the Public Bill Committee March 2016 Talal Rajab Programme Manager 020 7331 2189 talal.rajab@techuk.org Antony Walker Deputy CEO 07780 603 065 antony.walker@techuk.org

More information

6 Portability of non- personal data, Interoperability and standards

6 Portability of non- personal data, Interoperability and standards UK GOVERNMENT RESPONSE TO THE EUROPEAN COMMISSION'S CONSULTATION ON BUILDING THE EUROPEAN DATA ECONOMY Contents Executive Summary 1 Introduction 2 Localisation of data for storage and/or processing purposes

More information

Council of the European Union Brussels, 19 February 2015 (OR. en)

Council of the European Union Brussels, 19 February 2015 (OR. en) Council of the European Union Brussels, 19 February 2015 (OR. en) 6197/15 MI 82 COMPET 40 MAP 5 TELECOM 37 NOTE From: Permanent Representatives Committee (Part 1) To: Council Subject: Draft Council Conclusions

More information

Energy UK response to the Department of Digital, Culture, Media and Sport s Security of Network and Information Systems (NIS) Directive Consultation

Energy UK response to the Department of Digital, Culture, Media and Sport s Security of Network and Information Systems (NIS) Directive Consultation Energy UK response to the Department of Digital, Culture, Media and Sport s Security of Network and Information Systems (NIS) Directive Consultation 30 September 2017 About Energy UK Energy UK is the trade

More information

Lords Bill Committee on Digital Economy Bill Information Commissioner s briefing

Lords Bill Committee on Digital Economy Bill Information Commissioner s briefing Lords Bill Committee on Digital Economy Bill Information Commissioner s briefing Introduction 1. The Information Commissioner has responsibility in the UK for promoting and enforcing the Data Protection

More information

Information governance strategy

Information governance strategy Information governance strategy January 2018 Version 1.0 NHS fraud. Spot it. Report it. Together we stop it. Version control Version Name Date Comment V 1.0 Trevor Duplessis 22/01/18 Due for review Dec

More information

Response of the Law Society of England and Wales to the Legal Services Board consultation on Reviewing the Internal Governance Rules

Response of the Law Society of England and Wales to the Legal Services Board consultation on Reviewing the Internal Governance Rules Response of the Law Society of England and Wales to the Legal Services Board consultation on Reviewing the Internal Governance Rules February 2018 The Law Society 2018 Page 1 of 6 PREFACE 1 The Law Society

More information

27 April GDPR Implementation Challenges: A Summary of CIPL GDPR Project Participants Feedback

27 April GDPR Implementation Challenges: A Summary of CIPL GDPR Project Participants Feedback 27 April 2017 GDPR Implementation Challenges: A Summary of CIPL GDPR Project Participants Feedback 1 GDPR Implementation Challenges A Summary of CIPL GDPR Project Participants Feedback In early 2017, CIPL

More information

The GDPR enforcement deadline is looming are you ready?

The GDPR enforcement deadline is looming are you ready? Link to Article The GDPR enforcement deadline is looming are you ready? 1 Compliance Is this relevant to the Wealth Management community is Asia? It is relevant to your business if you have an establishment

More information

ECB-PUBLIC OPINION OF THE EUROPEAN CENTRAL BANK. of 25 July 2014

ECB-PUBLIC OPINION OF THE EUROPEAN CENTRAL BANK. of 25 July 2014 EN ECB-PUBLIC OPINION OF THE EUROPEAN CENTRAL BANK of 25 July 2014 on a proposal for a directive of the European Parliament and of the Council concerning measures to ensure a high common level of network

More information

Submission: Proposed Biodiversity Conservation Bill 2016, Local Land Services Amendment Bill 2016

Submission: Proposed Biodiversity Conservation Bill 2016, Local Land Services Amendment Bill 2016 28 June 2016 Submission: Proposed Biodiversity Conservation Bill 2016, Local Land Services Amendment Bill 2016 Yours faithfully Ann Lewis Executive Officer NOROC A regional voice for the Tweed, Ballina,

More information

Department for Culture, Media and Sport Call for Views: GDPR Derogations

Department for Culture, Media and Sport Call for Views: GDPR Derogations Sense About Science Department for Culture, Media and Sport Call for Views: GDPR Derogations Response by health and research organisations 10 May 2017 KEY MESSAGES The Department of Culture, Media and

More information

Enhancing Identity Verification and Border Processes Legislation Bill 26/10/2016

Enhancing Identity Verification and Border Processes Legislation Bill 26/10/2016 Enhancing Identity Verification and Border Processes Legislation Bill 26/10/2016 1 Overview Enhancing Identity Verification and Border Processes Legislation Bill 1.1 The New Zealand Law Society welcomes

More information

EDRi analysis on the most dangerous flexibilities allowed by the General Data Protection Regulation (*)

EDRi analysis on the most dangerous flexibilities allowed by the General Data Protection Regulation (*) 1 EDRi analysis on the most dangerous flexibilities allowed by the General Data Protection Regulation (*) General Note on divergences: One of the main reasons for adopting the main Data Protection Directive

More information

AmCham EU s Recommendations on GDPR Implementation

AmCham EU s Recommendations on GDPR Implementation AmCham EU s Recommendations on GDPR Implementation Ensuring a balanced and forwardlooking data protection framework in Europe Executive summary AmCham EU s recommendations for the implementation of the

More information

BEREC views on the European Parliament first reading legislative resolution on the European Commission s proposal for a Connected Continent Regulation

BEREC views on the European Parliament first reading legislative resolution on the European Commission s proposal for a Connected Continent Regulation BEREC views on the European Parliament first reading legislative resolution on the European Commission s proposal for a Connected Continent Regulation General remarks In line with its statutory duty of

More information

Proposal for a Directive on Better Enforcement and Modernisation of EU Consumer Protection Rules

Proposal for a Directive on Better Enforcement and Modernisation of EU Consumer Protection Rules INTERACTIVE SOFTWARE FEDERATION OF EUROPE Europe s video games industry Proposal for a Transparency Register ID Number: 20586492362-11 Summary: ISFE welcomes the Commission s initiative to achieve a more

More information

Ready or Not: SMBs and the GDPR

Ready or Not: SMBs and the GDPR Ready or Not: SMBs and the GDPR Introduction The deadline for General Data Protection Regulation (GDPR) compliance draws closer for organisations across the world. With fewer than 12 months to ensure compliance

More information

Chris Hodge Financial Reporting Council Fifth Floor Aldwych House Aldwych London WC2B 4HN. 10 July

Chris Hodge Financial Reporting Council Fifth Floor Aldwych House Aldwych London WC2B 4HN. 10 July Chris Hodge Financial Reporting Council Fifth Floor Aldwych House 71-91 Aldwych London WC2B 4HN Deloitte LLP Hill House 1 Little New Street London EC4A 3TR United Kingdom Tel: +44 (0) 20 7936 3000 Fax:

More information

TEXTS ADOPTED. having regard to the Treaties, and in particular to Articles 2, 3, 4 and 6 of the Treaty on European Union (TEU),

TEXTS ADOPTED. having regard to the Treaties, and in particular to Articles 2, 3, 4 and 6 of the Treaty on European Union (TEU), European Parliament 2014-2019 TEXTS ADOPTED P8_TA(2016)0344 Recent developments in Poland and their impact on fundamental rights as laid down in the Charter of Fundamental Rights of the European Union

More information

GDPR and Canadian organizations: Addressing key challenges GDPR and Canadian organizations: Addressing key challenges

GDPR and Canadian organizations: Addressing key challenges GDPR and Canadian organizations: Addressing key challenges GDPR and Canadian organizations: Addressing key challenges GDPR and Canadian organizations: Addressing key challenges Cyber Risk 1 GDPR and Canadian organizations: Addressing key challenges The regulation

More information

FSA Consultation on Effective Corporate Governance (Significant Influence Controlled Functions and the Walker Review) (FSA CP10/03)

FSA Consultation on Effective Corporate Governance (Significant Influence Controlled Functions and the Walker Review) (FSA CP10/03) FSA Consultation on Effective Corporate Governance (Significant Influence Controlled Functions and the Walker Review) (FSA CP10/03) Introduction A response by The British Bankers Association The British

More information

SUPPLEMENTARY SUBMISSION TO THE REVIEW OF THE DEFENCE TRADE CONTROLS ACT 2012

SUPPLEMENTARY SUBMISSION TO THE REVIEW OF THE DEFENCE TRADE CONTROLS ACT 2012 SUPPLEMENTARY SUBMISSION TO THE REVIEW OF THE DEFENCE TRADE 16 July 2018 Universities Australia welcomes the opportunity to make a supplementary submission to the Review of the Defence Trade Controls Act

More information

Ernst & Young Data Protection Binding Corporate Rules Programme

Ernst & Young Data Protection Binding Corporate Rules Programme Ernst & Young Data Protection Binding Corporate Rules Programme Table of contents Introduction to the data protection binding corporate rules programme... 2 Part I: Background and actions... 3 Part II:

More information

European Parliament resolution of 8 March 2011 on the revision of the General Product Safety Directive and market surveillance (2010/2085(INI))

European Parliament resolution of 8 March 2011 on the revision of the General Product Safety Directive and market surveillance (2010/2085(INI)) P7_TA(2011)0076 General product safety and market surveillance European Parliament resolution of 8 March 2011 on the revision of the General Product Safety Directive and market surveillance (2010/2085(INI))

More information

Strathclyde Partnership for Transport

Strathclyde Partnership for Transport APPENDIX 3 Strathclyde Partnership for Transport Information Management Strategy Action Date Version Owner Review Created 22/01/2019 0.6 HM Updated 12/02/2019 1.0 HM Updated Contents 1. Information is

More information

GDPR - 10 THINGS YOU NEED TO KNOW (US PERSPECTIVE) 1. Privacy and data protection are fundamental rights

GDPR - 10 THINGS YOU NEED TO KNOW (US PERSPECTIVE) 1. Privacy and data protection are fundamental rights GDPR - 10 THINGS YOU NEED TO KNOW (US PERSPECTIVE) 1. Privacy and data protection are fundamental rights Privacy is internationally recognised as a fundamental human right, like the right to free speech

More information

Finansinspektionen s response at the webb-survey, to the Commission Consultation on FinTech

Finansinspektionen s response at the webb-survey, to the Commission Consultation on FinTech FI dnr 17-4481 Finansinspektionen Box 7821 SE-103 97 Stockholm [Brunnsgatan 3] Tel +46 8 408 980 00 Fax +46 8 24 13 35 finansinspektionen@fi.se www.fi.se Finansinspektionen s response at the webb-survey,

More information

TECHNICAL RELEASE TECH 05/14BL. Data Protection Handling information provided by clients

TECHNICAL RELEASE TECH 05/14BL. Data Protection Handling information provided by clients TECHNICAL RELEASE TECH 05/14BL Data Protection Handling information provided by clients ABOUT ICAEW ICAEW is a world leading professional membership organisation that promotes, develops and supports over

More information

Relevant provisions of the Bill I would like to highlight for your attention are:

Relevant provisions of the Bill I would like to highlight for your attention are: PALAIS DES NATIONS 1211 GENEVA 10, SWITZERLAND Mandate of the Special Rapporteur on the promotion and protection of the right to freedom of opinion and expression REFERENCE: OL IRL 1/2018 5 November 2018

More information

UK Law Enforcement and GDPR

UK Law Enforcement and GDPR White Paper: UK Law Enforcement and GDPR The General Data Protection Regulation and its related laws in the context of the European Union Law Enforcement Directive December 2017 AUTHOR: Paul Gillingwater,

More information

PACKAGING. Working towards a Circular Economy

PACKAGING. Working towards a Circular Economy PACKAGING Working towards a Circular Economy A well functioning EU Internal Market is a precondition for a competitive, resource-efficient and growth-oriented Circular Economy How to move away from linear

More information

ARTICLE 29 DATA PROTECTION WORKING PARTY

ARTICLE 29 DATA PROTECTION WORKING PARTY ARTICLE 29 DATA PROTECTION WORKING PARTY 17/EN WP 256 Working Document setting up a table with the elements and principles to be found in Binding Corporate Rules (updated) Adopted on 29 November 2017 INTRODUCTION

More information

DELIVERING UK AUTOMOTIVE BREXIT PRIORITIES SMMT DISCUSSION PAPER 7 JULY 2017

DELIVERING UK AUTOMOTIVE BREXIT PRIORITIES SMMT DISCUSSION PAPER 7 JULY 2017 DELIVERING UK AUTOMOTIVE BREXIT PRIORITIES SMMT DISCUSSION PAPER 7 JULY 2017 Introduction This paper outlines key areas in delivering the UK automotive industry s position on the UK s withdrawal from the

More information

European Association of Co-operative Banks Groupement Européen des Banques Coopératives Europäische Vereinigung der Genossenschaftsbanken

European Association of Co-operative Banks Groupement Européen des Banques Coopératives Europäische Vereinigung der Genossenschaftsbanken European Association of Co-operative Banks Groupement Européen des Banques Coopératives Europäische Vereinigung der Genossenschaftsbanken EACB position paper on the technical advice of the Committee of

More information

LEGAL ICT FACT SHEET PRIVACY AND MONITORING AT WORK UNDER THE GDPR 2 WHAT KIND OF PERSONAL DATA DOES AN EMPLOYER PROCESS?

LEGAL ICT FACT SHEET PRIVACY AND MONITORING AT WORK UNDER THE GDPR 2 WHAT KIND OF PERSONAL DATA DOES AN EMPLOYER PROCESS? LEGAL ICT FACT SHEET PRIVACY AND MONITORING AT WORK UNDER THE GDPR On May 25th 2018, the General Data Protection Regulation ( GDPR ) will enter into force. With penalties of up to the higher of 20 million

More information

PREPARING YOUR ORGANISATION FOR THE GENERAL DATA PROTECTION REGULATION YOUR READINESS CHECKLIST DATA PROTECTION COMMISSIONER

PREPARING YOUR ORGANISATION FOR THE GENERAL DATA PROTECTION REGULATION YOUR READINESS CHECKLIST DATA PROTECTION COMMISSIONER PREPARING YOUR ORGANISATION FOR THE GENERAL DATA PROTECTION REGULATION YOUR READINESS CHECKLIST DATA PROTECTION COMMISSIONER 1 What will the GDPR mean for your business/organisation? On the 25 th May 2018,

More information

Comments on Chapter IV Part I Controller and processor 25/08/2015 Page 1

Comments on Chapter IV Part I Controller and processor 25/08/2015 Page 1 Comments on Chapter IV Part I Controller and processor 25/08/2015 Page 1 Bitkom represents more than 2,300 companies in the digital sector, including 1,500 direct members. With more than 700,000 employees,

More information

EUROPEAN UNION (Withdrawal) BILL AND IMPLICATIONS FOR SCOTLAND

EUROPEAN UNION (Withdrawal) BILL AND IMPLICATIONS FOR SCOTLAND EUROPEAN UNION (Withdrawal) BILL AND IMPLICATIONS FOR SCOTLAND This is a submission by Open Scotland to the Scottish Parliament s Finance and Constitution Committee in regards to the call for evidence

More information

A Path to Social Licence

A Path to Social Licence August 2017 A Path to Social Licence Guidelines for Trusted Data Use A Path to Social Licence Guidelines for Trusted Data Use 1 1 2 August 2017 A Path to Social Licence Guidelines Summary for June August

More information

AmCham EU s position on Directive on certain aspects concerning contracts for the supply of digital content

AmCham EU s position on Directive on certain aspects concerning contracts for the supply of digital content AmCham EU s position on Directive on certain aspects concerning contracts for the supply of digital content The Commission s proposal on digital content: further measures needed to drive online cross-border

More information

Transparency in the digital age: companies should talk about their cyber security

Transparency in the digital age: companies should talk about their cyber security Transparency in the digital age: companies should talk about their The cyber security of companies is an increasingly important issue for society. Nations depend on the of both public and private institutions

More information

WHITE PAPER EU General Data Protection Regulation Compliance

WHITE PAPER EU General Data Protection Regulation Compliance WHITE PAPER EU General Data Protection Regulation Compliance Table of Contents 1. SAP is ready for GDPR 04 1.1. Data Protection Processes 04 1.2. Data Protection Thresholds 05 1.3. Technical & Organizational

More information

UK Environmental Law Association s response to the Department for the Environment Food and Rural Affairs consultation on Biodiversity offsetting

UK Environmental Law Association s response to the Department for the Environment Food and Rural Affairs consultation on Biodiversity offsetting UK Environmental Law Association s response to the Department for the Environment Food and Rural Affairs consultation on Biodiversity offsetting UKELA UKELA is the UK's foremost membership organisation

More information

Bulkington, Nuneaton & Bedworth (BNB) BNB U3A Data Protection Policy

Bulkington, Nuneaton & Bedworth (BNB) BNB U3A Data Protection Policy Bulkington, Nuneaton & Bedworth (BNB) BNB U3A Data Protection Policy This policy applies to the work of BNB U3A. The policy sets out the requirements that BNB U3A has to gather information for membership

More information

COMMISSION STAFF WORKING DOCUMENT EXECUTIVE SUMMARY OF THE IMPACT ASSESSMENT. Accompanying the document

COMMISSION STAFF WORKING DOCUMENT EXECUTIVE SUMMARY OF THE IMPACT ASSESSMENT. Accompanying the document EUROPEAN COMMISSION Brussels, 4.6.2012 SWD(2012) 136 final COMMISSION STAFF WORKING DOCUMENT EXECUTIVE SUMMARY OF THE IMPACT ASSESSMENT Accompanying the document Proposal for a REGULATION OF THE EUROPEAN

More information

NHS VOLUNTARY SECTOR PROVIDERS FORUM CONSULTATION RESPONSE. Substantive Guidance on the Procurement, Patient Choice and Competition Regulations

NHS VOLUNTARY SECTOR PROVIDERS FORUM CONSULTATION RESPONSE. Substantive Guidance on the Procurement, Patient Choice and Competition Regulations 15 July2013 NHS VOLUNTARY SECTOR PROVIDERS FORUM CONSULTATION RESPONSE Substantive Guidance on the Procurement, Patient Choice and Competition Regulations On behalf of the above members of the recently

More information

Introduction. Summary

Introduction. Summary The Information Commissioner s response to the Department for Digital, Culture, Media & Sport consultation on the Security of Network and Information Systems. Introduction 1. The Information Commissioner

More information

In the matter of Gambling (Gambling Harm Reduction) Amendment Bill

In the matter of Gambling (Gambling Harm Reduction) Amendment Bill Submission to the Commerce Committee In the matter of Gambling (Gambling Harm Reduction) Amendment Bill From Local Government New Zealand June 2012 Table of contents Table of contents... 0 Introduction...

More information

Bord Gáis Éireann. Response to CER Strategic Plan

Bord Gáis Éireann. Response to CER Strategic Plan Bord Gáis Éireann Response to CER Strategic Plan 2014 2018 1 Response to CER Strategic Plan Introduction Bord Gáis Éireann (BGE) welcomes the opportunity to respond to the consultation paper issued by

More information

Effects of GDPR and NY DFS on your Third Party Risk Management Program

Effects of GDPR and NY DFS on your Third Party Risk Management Program Effects of GDPR and NY DFS on your Third Party Risk Management Program Please disable popup blocking software before viewing this webcast June 27, 2017 Grant Thornton LLP. All rights reserved. 1 CPE Reminders

More information

EACA position on the eprivacy Regulation proposal

EACA position on the eprivacy Regulation proposal EACA position on the eprivacy Regulation proposal The European Association of Communications Agencies (EACA) represents more than 2 500 communications agencies and agency associations from 30 European

More information

The proposed Code appears (inappropriately) to support incumbents investment models at the expense of competition

The proposed Code appears (inappropriately) to support incumbents investment models at the expense of competition Sky s response to the European Commission s consultation on the proposed Directive establishing a new European Electronic Communications Code Introduction 1. Sky plc ( Sky ) 1 is Europe s leading pay TV

More information

Unofficial Comment Form Project Cyber Security Supply Chain Risk Management

Unofficial Comment Form Project Cyber Security Supply Chain Risk Management Project 2016-03 Cyber Security Supply Chain Risk Management DO NOT use this form for submitting comments. Use the electronic form to submit comments on proposed CIP-013-1 Cyber Security - Supply Chain

More information

UK Finance welcome the clarity the EBA is giving on availability and performance of dedicated interfaces.

UK Finance welcome the clarity the EBA is giving on availability and performance of dedicated interfaces. UK Finance response to EBA consultation on draft Guidelines on the conditions to be met to benefit from an exemption from contingency measures under Article 33(6) of Regulation (EU) 2018/389 (RTS on SCA

More information

Data Protection Practitioners Conference 2018 #DPPC2018. Lawful basis myths

Data Protection Practitioners Conference 2018 #DPPC2018. Lawful basis myths Data Protection Practitioners Conference 2018 #DPPC2018 Myth #1 This lawful basis stuff is all new. Reality It s not new. The six lawful bases for processing are very similar to the old conditions for

More information

1. Acas (Advisory, Conciliation and Arbitration Service) welcomes the opportunity to respond to the government s consultation on employment status.

1. Acas (Advisory, Conciliation and Arbitration Service) welcomes the opportunity to respond to the government s consultation on employment status. Good Work: The Taylor Review of Modern Working Practices Consultation on Employment Status Acas Council Response 1. Acas (Advisory, Conciliation and Arbitration Service) welcomes the opportunity to respond

More information

Municipal Property Rates Amendment Bill Background

Municipal Property Rates Amendment Bill Background Financial and Fiscal Commission Submission in terms of Section 229 (5) of the Constitution of the Republic of South Africa Act No. 108 0f 1996 as amended Municipal Property Rates Amendment Bill 2010 1.

More information

GDPR: what you need to know

GDPR: what you need to know GDPR: what you need to know Getting to grips with the EU General Data Protection Regulation (GDPR) Introduction In May 2018, the European Union s (EU) GDPR ushers in unprecedented data protection for EU

More information

Customer Data Protection. Temenos module for the General Data Protection Regulation (GDPR)

Customer Data Protection. Temenos module for the General Data Protection Regulation (GDPR) Customer Data Protection Temenos module for the General Data Protection Regulation (GDPR) Contents Glossary 03 GDPR Geographical Scope 03 GDPR implementation status 03 Overview of GDPR 03 Financial Institutions

More information

Data Protection Policy

Data Protection Policy Preston and District Data Protection Policy The University of the Third Age Scope of the policy This policy applies to the work of Preston & District U3A (hereafter the U3A ). The policy sets out the requirements

More information

FORESTRY AND LAND MANAGEMENT (SCOTLAND) BILL

FORESTRY AND LAND MANAGEMENT (SCOTLAND) BILL FORESTRY AND LAND MANAGEMENT (SCOTLAND) BILL DELEGATED POWERS MEMORANDUM INTRODUCTION 1. This memorandum has been prepared by the Scottish Government in accordance with Rule 9.4A of the Parliament s Standing

More information

Protecting Your Personal Data Globally

Protecting Your Personal Data Globally Protecting Your Personal Data Globally How ADP s Adoption of Binding Corporate Rules Helps Your Company Comply with the General Data Protection Regulation We re passionate about protecting the privacy

More information

EDiMA response to European Commission Consultation on the application of the Unfair Commercial Practices Directive (2005/29/EC)

EDiMA response to European Commission Consultation on the application of the Unfair Commercial Practices Directive (2005/29/EC) EDiMA response to European Commission Consultation on the application of the Unfair Commercial Practices Directive (2005/29/EC) The European Digital Media Association (EDiMA) 1 is pleased to provide its

More information

Humber Information Sharing Charter

Humber Information Sharing Charter External Ref: HIG 01 Review date November 2016 Version No. V07 Internal Ref: NELC 16.60.01 Humber Information Sharing Charter This Charter may be an uncontrolled copy, please check the source of this document

More information

BC Public Service - Conflict of Interest Guidelines: Questions and Answers

BC Public Service - Conflict of Interest Guidelines: Questions and Answers BC Public Service - Conflict of Interest Guidelines: Questions and Answers General Questions Q: What are the conflict of interest guidelines? A: All employees in the BC Public Service are required under

More information

TOWARDS A EUROPEAN DATA ECONOMY

TOWARDS A EUROPEAN DATA ECONOMY POSITION PAPER 9 November 2016 TOWARDS A EUROPEAN DATA ECONOMY KEY MESSAGES 1 2 3 4 Digitalisation can be at the heart of Europe. The EU must timely complete the Digital Single Market, ensuring free movement

More information

General Data Protection Regulation (GDPR) A brief guide

General Data Protection Regulation (GDPR) A brief guide General Data Protection Regulation (GDPR) A brief guide Document compiled by: Terence Clark & Dr. Nathan Matthews June 2017 Acknowledgements This document contains material from the Information Commissioner

More information

General Data Protection Regulation (GDPR) Readiness

General Data Protection Regulation (GDPR) Readiness For External Distribution Canada Life UK General Data Protection Regulation (GDPR) Readiness Customers, Clients and Business Partners FAQ GDPR TP FAQ January 2018 Frequently Asked Questions (FAQ) Document

More information

Internal audit insights High impact areas of focus

Internal audit insights High impact areas of focus 2014 Internal audit insights High impact areas of focus To be truly effective, internal audit departments should ensure that their efforts are targeted at the key risks and issues facing their business

More information

Genera Data Protection Regulation and the Public Sector

Genera Data Protection Regulation and the Public Sector Genera Data Protection Regulation and the Public Sector Tuesday 30 May 2017 @mhclawyers Welcome Edward Gleeson Partner & Head of Public & Administrative Law Mason Hayes & Curran GDPR for Public Bodies

More information

Information Commissioner s Office. Consultation: GDPR DPIA guidance

Information Commissioner s Office. Consultation: GDPR DPIA guidance Information Commissioner s Office Consultation: GDPR DPIA guidance Start date: 22 March 2018 End date: 13 April 2018 ICO GDPR guidance: Contents (for web navigation bar) At a glance About this detailed

More information

Supplementary Analysis Report: State Sector and Crown Entities Reform Bill

Supplementary Analysis Report: State Sector and Crown Entities Reform Bill Supplementary Analysis Report: State Sector and Crown Entities Reform Bill Purpose The State Services Commission has prepared this Supplementary Analysis Report (SAR). On 20 December 2017, the Cabinet

More information

Improving the Cyber Security of Consumer IoT: Developing a new ETSI specification

Improving the Cyber Security of Consumer IoT: Developing a new ETSI specification Improving the Cyber Security of Consumer IoT: Developing a new ETSI specification Jasper Pandza Secure by Design team DCMS ETSI Security Week, 12 June 2018 1 Rationale for intervention Poorly secured IoT

More information

EUROPEAN COMMISSION Directorate-General for Communications Networks, Content and Technology

EUROPEAN COMMISSION Directorate-General for Communications Networks, Content and Technology EUROPEAN COMMISSION Directorate-General for Communications Networks, Content and Technology Ref. Ares(2018)723756-07/02/2018 Director General Brussels, cnect.ddg1.e.3 Goran Marby, ICANN President and CEO

More information

General Data Protection Regulation - Explained

General Data Protection Regulation - Explained General Data Protection Regulation - Explained Bernard Cogan & Bobby Gould CUNA Mutual Group ACE Conference & AGM 2017 12 th May 13 3h May 2017 Copthorne Hotel (Birmingham) Are you familiar with GDPR Don't

More information

EU Free Trade Agreement Proposition. Allowing data flows and respecting data privacy

EU Free Trade Agreement Proposition. Allowing data flows and respecting data privacy EU Free Trade Agreement Proposition Allowing data flows and respecting data privacy December 2016 Index Introduction 3 Main Principles 4 Additional Inserts to Ensure Coherency 6 Reading Guide 7 References

More information

GDPR is coming soon. Are you ready. Steven Ringelberg.

GDPR is coming soon. Are you ready. Steven Ringelberg. GDPR is coming soon. Are you ready. Steven Ringelberg steven@ringelberglaw.com 616 227 6403 Agenda Who am I Overview What data do you have that is covered and where is it? What rights do individual data

More information

UNITED STATES OF AMERICA BEFORE THE FEDERAL ENERGY REGULATORY COMMISSION

UNITED STATES OF AMERICA BEFORE THE FEDERAL ENERGY REGULATORY COMMISSION UNITED STATES OF AMERICA BEFORE THE FEDERAL ENERGY REGULATORY COMMISSION Electric Storage Participation in Markets Operated by Regional Transmission Operators and Independent System Operators Docket Nos.

More information

THE GENERAL DATA PROTECTION REGULATION: A BRIEF OVERVIEW (*)

THE GENERAL DATA PROTECTION REGULATION: A BRIEF OVERVIEW (*) THE GENERAL DATA PROTECTION REGULATION: A BRIEF OVERVIEW (*) The first IBM Personal Computer was introduced just over 35 years ago, on August 12, 1981. The first-generation iphone was introduced in the

More information

EU data protection reform

EU data protection reform EU data protection reform Background and insight A Whitepaper Executive summary The Irish Data Protection Acts 1988 and 2003 gave effect to the European Data Protection Directive 95/46/EC. The existing

More information

IESBA Strategy Survey Questionnaire, April 2017

IESBA Strategy Survey Questionnaire, April 2017 IESBA Strategy Survey Questionnaire, April 2017 A survey issued by the International Ethics Standards Board for Accountants (IESBA) Responses from July 2017 (the Association of Chartered Certified Accountants)

More information

REA Response to the BEIS committee Inquiry: Brexit negotiation priorities for energy and climate change policy

REA Response to the BEIS committee Inquiry: Brexit negotiation priorities for energy and climate change policy REA Response to the BEIS committee Inquiry: Brexit negotiation priorities for energy and climate change policy 1. The Renewable Energy Association (REA) is pleased to submit this response to the above

More information

The Flow Of Data Across Borders:

The Flow Of Data Across Borders: Business and Industry Advisory Committee to the OECD 13/15 Chaussée de la Muette 75016 Paris France Tel. +33 (0)1 42 30 09 60 Fax +33 (0)1 42 88 78 38 email: biac@biac.org www.biac.org The Flow Of Data

More information

Telecommunications (Interception and Access) Amendment (Data Retention) Bill 2014 SUPPLEMENTARY SUBMISSION

Telecommunications (Interception and Access) Amendment (Data Retention) Bill 2014 SUPPLEMENTARY SUBMISSION http://www.privacy.org.au Secretary@privacy.org.au http://www.privacy.org.au/about/contacts.html 31 January 2015 Committee Secretary Parliamentary Joint Committee on Intelligence and Security PO Box 6021

More information

EU General Data Protection Regulation in the digital age: Are you ready?

EU General Data Protection Regulation in the digital age: Are you ready? EU General Data Protection Regulation in the digital age: Are you ready? What do you need to know about the new EU General Data Protection Regulation? Data protection has entered a period of unprecedented

More information

EU STRATEGY FOR CSR

EU STRATEGY FOR CSR 9 January 2012 EU STRATEGY 2011-2014 FOR CSR 1 2 3 KEY MESSAGES CSR is driven by business, reflected in the growing number of companies integrating CSR into their business strategies, aware of the benefits

More information

Environmental principles and governance consultation: a briefing for local groups

Environmental principles and governance consultation: a briefing for local groups Environmental principles and governance consultation: a briefing for local groups July 2018 This briefing provides guidance on Friends of the Earth s position on the current government consultation on

More information

Brexit and the Future of Data Protection

Brexit and the Future of Data Protection Brexit and the Future of Data Protection Max Todd Information Compliance Team, Council Secretariat Tuesday 27 September 2016 General Data Protection Regulation (GDPR) Applies throughout EU from 25 May

More information

GDPR. Legalities, Policies and Process Part 3 of our series on GDPR and its impact on the recruitment industry

GDPR. Legalities, Policies and Process Part 3 of our series on GDPR and its impact on the recruitment industry GDPR Legalities, Policies and Process Part 3 of our series on GDPR and its impact on the recruitment industry Who are we? Dillistone Group Plc, a public company listed on the AIM market of the London stock

More information

Mobile Industry Reputation Index April September 2011

Mobile Industry Reputation Index April September 2011 Mobile Industry Reputation Index April September 2011 80 80 70 70 60 60 40 40 30 30 20 20 10 10 0 0 Contents 4 Foreword 6 Overall Contribution of the Mobile Industry 8 Geographical Breakdown of Respondents

More information

Guidance on the General Data Protection Regulation: (1) Getting started

Guidance on the General Data Protection Regulation: (1) Getting started Guidance on the General Data Protection Regulation: (1) Getting started Guidance Note IR03/16 20 th February 2017 Gibraltar Regulatory Authority Information Rights Division 2 nd Floor, Eurotowers 4, 1

More information

Consultation response rics.org

Consultation response rics.org RICS Regulation of Firms Consultation response RICS firm regulation 2 RICS Regulation of Firms Contents 1.0 Introduction... 4 2.0 The consultation process... 5 3.0 Executive summary... 6 4.0 Consultation

More information

GDPR for Colleges and Universities Daniel McCabe Assistant General Counsel

GDPR for Colleges and Universities Daniel McCabe Assistant General Counsel GDPR for Colleges and Universities Daniel McCabe Assistant General Counsel November 2018 Office of the General Counsel European Union General Data Protection Regulation Part One: GDPR Basics Part Two:

More information

We reserve the right to update this privacy notice at any time. Please check our website from time to time for any changes we may make.

We reserve the right to update this privacy notice at any time. Please check our website from time to time for any changes we may make. What is the purpose of this document? NORTHERN IRELAND SCREEN COMMISSION (Company Number NI031997) whose registered office is at 3 rd Floor Alfred House, 21 Alfred Street, Belfast, BT2 8ED is committed

More information

UCD Human Resources. UCD HR Privacy Statement - Employee

UCD Human Resources. UCD HR Privacy Statement - Employee UCD Human Resources UCD HR Privacy Statement - Employee Contents 1 Introduction 3 2 What information do we process? 3 3 How do we use your information? 4 4 Special categories of data 4 5 How is your information

More information

European Union s General Data Protection Regulation. A guide for APAC companies

European Union s General Data Protection Regulation. A guide for APAC companies European Union s General Data Protection Regulation A guide for APAC companies Introduction When the European Union s General Data Protection Regulation (GDPR) comes into force on 25 May 2018, it will

More information

EUROPEAN ECONOMIC AREA

EUROPEAN ECONOMIC AREA EUROPEAN ECONOMIC AREA STANDING COMMITTEE OF THE EFTA STATES SUBCOMMITTEE IV ON FLANKING AND HORIZONTAL POLICIES EEA EFTA Comment 14 July 2017 on the proposal for a directive of the European Parliament

More information

Committee on Civil Liberties, Justice and Home Affairs. of the Committee on Civil Liberties, Justice and Home Affairs

Committee on Civil Liberties, Justice and Home Affairs. of the Committee on Civil Liberties, Justice and Home Affairs European Parliament 2014-2019 Committee on Civil Liberties, Justice and Home Affairs 2018/0111(COD) 24.9.2018 DRAFT OPINION of the Committee on Civil Liberties, Justice and Home Affairs for the Committee

More information

Mobile Privacy Principles

Mobile Privacy Principles Mobile Privacy Principles Promoting consumer privacy in the mobile ecosystem About the GSMA The GSMA represents the interests of mobile operators worldwide, uniting nearly 800 operators with more than

More information