GDPR what next? PRACTICAL IMPLICATIONS FOR NATIONAL LEGISLATORS, DPAs AND DATA CONTROLLERS. GDPR and the NORDIC ACTIONS

Size: px
Start display at page:

Download "GDPR what next? PRACTICAL IMPLICATIONS FOR NATIONAL LEGISLATORS, DPAs AND DATA CONTROLLERS. GDPR and the NORDIC ACTIONS"

Transcription

1 SPRING CONFERENCE 2016 BUDAPEST GDPR what next? PRACTICAL IMPLICATIONS FOR NATIONAL LEGISLATORS, DPAs AND DATA CONTROLLERS GDPR and the NORDIC ACTIONS Mr Reijo Aarnio Data Protection Ombudsman OFFICE OF THE DATA PROTECTION OMBUDSMAN / Finland 1

2 Nordic countries The Nordic countries are a geographical and cultural region in Northern Europe and the North Atlantic, where they are most commonly known as Norden (lit., "The North"). They consist of Denmark, Finland, Iceland, Norway and Sweden, including their associated territories (Greenland, the Faroe Islands, and the Åland Islands). FINLAND SWEDEN DENMARK ICELAND NORWAY OFFICE OF THE DATA PROTECTION OMBUDSMAN 2

3 GDPR: PRACTICAL IMPLICATIONS FOR DPAs NOTHING BUT: 1) NEW LEGAL FRAMEWORK 2) NEW TASKS 3) NEW COMPETENCIES 4) NEW NETWORK DPOs 5) NEW CUSTOMERS (+ 500 MILLION) 6) NEW WORKING METHODS 7) NEW IT-PLATFORM 8) NEW DECISSION MAKING SYSTEM 9) NEW ORGANISATIONS (?!) 10) NEW JOB-DESCRIPTIONS 11) NEW AUTHORITY? AND ALL THIS WHILE STILL TAKING CARE OF CURRENT DAILY WORK OFFICE OF THE DATA PROTECTION OMBUDSMAN / Finland 3

4 FUTURE STRUCTURE OF - One man s office? THE DPO? - Independent Deputy Modell? (State auditing authority) - Multimember organization? - BOARD? OFFICE OF THE DATA PROTECTION OMBUDSMAN / Finland 4

5 FINNISH DATA PROTECTION PLAYERS DATA PROTECTION BOARD FINNISH COMMUNICATIONS REGULATORY AUTHORITY (Ficora) NATIONAL SUPERVISORY AUTHORITY FOR WELFARE AND HEALTH (Valvira) OFFICE OF THE DATA PROTECTION OMBUDSMAN THE CONSUMER OMBUDSMAN NATIONAL ARCHIVE OCCUPATIONAL HEALTH AND SAFETY AUTHORITY WHO? OFFICE OF THE DATA PROTECTION OMBUDSMAN / Finland

6 OR JUST. OFFICE OF THE DATA PROTECTION OMBUDSMAN Or other individual authority OFFICE OF THE DATA PROTECTION OMBUDSMAN / Finland 6

7 NORDIC CO-OPERATION: CORNERSTONES 1) COMMON JUDICIAL TRADITION 2) TRANSPARENCY AND BENCHMARKING 3) Mr GÖRAN GRÄSLUND: 4) LEARNING BY DOING; INSPECTIONS 5) COMMITTED CHIEFS 80 % OF CROSSBORDER CASES ARE LOCAL OFFICE OF THE DATA PROTECTION OMBUDSMAN / Finland 7

8 NORDIC MEETINGS; TOPICS: FINLAND 2011: 1) EFFICIENCY 2) PLANNING SYSTEM 3) BUDGETING 4) INFORMATION MANAGEMENT 5) STRATEGICAL CO-OPERATION 6) VISI0NS, BUSINESS IDEA, STRATEGIES AND VALUES OFFICE OF THE DATA PROTECTION OMBUDSMAN / Finland 8

9 NORDIC MEETINGS; TOPICS: NORWAY 2012: 1) STRENGHTEN CO-OPERATION 2) CROSS BORDER CASES 3) CROSS BORDER & JOINT INSPECTIONS 4) INTERNATIONAL CO-OPERATION EXTRA MEETING ALSO IN SWEDEN case examples OFFICE OF THE DATA PROTECTION OMBUDSMAN / Finland 9

10 NORDIC MEETINGS; TOPICS: SWEDEN 2014: 1) LESSONS LEARNED FROM INSPECTIONS 2) EFFECTIVENESS 3) KNOWLEDGE MANAGEMENT - internal databases - staff - external 4) DPA S INFLUENCE IN GOVERNMENTAL PROPOSALS OFFICE OF THE DATA PROTECTION OMBUDSMAN / Finland 10

11 HOW TO MAKE A GOOD STATEMENT ON GOVERNMENTAL PROPOSAL E) Go carefully through all different processing phases and estimate their legality D) Evaluate if the proposal has influence on other basic rights - DUTY OF CARE - DEFINED PURPOSE OF PROCESSING - EXCLUSIVITY OF PURPOSE - NECESSITY REQUIREMENT - ACCURACY REQUIREMENT And also: - PROPORTIONALITY - FINALITY - QUALITY - sensitive data - liability - disclosure E D C B A C) Evaluate that the proposal meets: a) Article 10 in the Constitution b) resolutions of Constitutional Committee and the Administration Committee c) essential issues shall not be regulated by a Degree. B) Evaluate the need for a special law and estimate if the relation of Personal Data Act and the proposal in question is clear. It has to be evident, whether the proposal in question replaces the corresponding regulation of the Personal Data Act (which is general provision) or not. A) Evaluate in the beginning if the proposal has influence on data processing, does it change, supplement, overrule or clarifiy the principles of Personal Data Act. Analyse and specify which phases of the processing the proposal concerns. OFFICE OF THE DATA PROTECTION OMBUDSMAN / Finland 11

12 OFFICE OF THE DATA PROTECTION OMBUDSMAN / Finland 1. Strategic human resource planning, personnel strategy COULD BE IMPROVED REGARDING THE PRACTICES No strategy at all, only calculation/estimation of the number of persons by units for budgeting. The personnel is not informed about personnel strategy, it s not planned how to spread the information enough. (Unofficial translation) GOOD PRACTISE The management group deals with both the personnel strategy and the personnel plan in connection of making annual planning and budgeting. The leaders of every unit are informed about personnel strategy. PROGRESSIVE, FORWARD- LOOKING PRACTICE Personnel strategy is also strategy for competence. It s one of the 3 most important issues and dealed with throughout the whole year both by the management group and administration. The management group has created and decided with the help of experts an exact view about strategic competence and the information has been given to all managers/directors and staff. Self-evaluation tool is created by Finnish Institute of Occupational Health. In finnish it s found on the Internet. 12

13 13

14 14

15

16

17 SWOT The Reform and its influence on ICT-functions

18 STRENGHTS WEAKNESSES Homogenious internal market Overall efficiency Easier international operations Data protection becomes more important One-stop-shop from any DPA Disruption of national law Foreign administrative culture Conflicts between DPR and national law One-stop-shop from any DPA OPPORTUNITIES THREATS Prestige and power Virtualresources, outsourcing, sharingof experts Distribution of super-cases Additional resources Diminished independence Competition between DPAs Lack of competence Lack of resources Lack of good leadership

19 19

20 OFFICE OF THE DATA PROTECTION OMBUDSMAN REFORM AND DIRECTIVE * Check points: - Situation - Need for updating - Achievements - risk assessments - book keeping, estimated costs - internal information / staff - how has the reform taken into consideration nationally and in EUlevel The projectis called TSAU START Risk assessment **** Approval of the project plan -Introduction - Appointments - Distribution of tasks ** CURRENT PROCESSES: 1. Public counsel, ombudsman 2. Inspector 3. Consult 4. Educator 5. Political adviser 6. Negotiant 7. Executor 8. International emissary *** NEW PROCESSES: 1. Consistency mechanism 2. Administrative sanctions 3. Prior checking auditing 4. Data transfers to third countries 5. Data Breach Notifications 6. Inspections 7. Electronic platform for handling and conducting issues 8. National legislation Version Internal information A. Knowledge management B. Organization C. Raising Awareness * March2016 Check point 1 D. New Processes E. Other projects F. International Co-operation G. IT-platform A.1.a Internal A.2.a External B.1.a Resources C.1.a Project plan D.1.a Legal Framework A.1.b - Staff plan Training plan Help desk A.2.b Choosing co-operation partners B.1.b Check point C.1.b Check point Nordic meeting, Island * May2016 Check point 2 (International) E.1.a Ministryof Justice task force F.1.a. EDPB F.2.a. Substantial issues F.3.a. Administrative issues G.2.a. National Convertions D.1.a.a Updating current processes** G.1.a. International complaints D.1.a.b Work Flows (8 new processes***) E.1.b Sub task forces A.2.c -Website -SOME -Education B.1.c Organization plan * September 2016 Check point 3 F.1.b Check point D.1.b.1 Testing E.1.c Check point F.2.b. WP 29 roadmap F.3.b. WP 29 roadmap G.1.b. Joint operations G.2.b. - Raising awereness -Knowhow management - Quality control A.1.c Quality of Internal data base A.2.d DPO s (DP Officers) B.1.d -Job descriptions -Salaries * December 2016 Check point 4 D.1.b.2 Implementation F.2.c Check point F.3.c Check point A.1.d Execution & reporting A.2.e Check point B.1.e -Appointments G.1.c. Consistency Mechanism G.2.c Check point D.1.b.3 Check point A.1.e Check point B.1.f Check point * June2017 Check point 5 G.1.d Check point 20 FOLLOW UP END 2018 H. Overall CHECK POINT I. SAUNA EVENING J. IMPLE- MENTA- TION

21 21

22

23

24

25

26 DATA PROTECTION REFORM AND ITS EFFECTS ON NATIONAL LEGISLATION -a working group by the finnish Ministry of Justice TASKS: - to evaluate the need for national legal actions presumed in the Reform, especially if there is a need for a common national data protection legislation such as the Data Protection Act at the moment, and to prepare a proposition for such a possible regulation -to evaluate, if there is a need to amend the national legislation concerning the national data protection authority and to prepare a proposition for such an authority and its organization, duties and competencies -to evaluate the possibilities of the latitude that the Reform allows to national legislation of a member country and to present the principles for to use it in an appropriate and functional way -to co-ordinate and assist the work which will and has to be done for to evaluate national special legislation OFFICE OF THE DATA PROTECTION OMBUDSMAN / Finland 26

27 THANK YOU FOR LISTENING Mr Reijo Aarnio Data Protection Ombudsman OFFICE OF THE DATA PROTECTION OMBUDSMAN / FINLAND 27

APPENDIX D WORKPLACE SKILLS & CAREER DEVELOPMENT COMPETENCIES LINKAGE TO THE ILLINOIS LEARNING STANDARDS

APPENDIX D WORKPLACE SKILLS & CAREER DEVELOPMENT COMPETENCIES LINKAGE TO THE ILLINOIS LEARNING STANDARDS APPENDIX D WORKPLACE SKILLS & LINKAGE TO THE ILLINOIS LEARNING STANDARDS The Illinois Learning Standards incorporate knowledge and skills that will enable students to be successful in the workplace of

More information

ü Nordic Council of Ministers The Freedom of Movement Council

ü Nordic Council of Ministers The Freedom of Movement Council ü Nordic Council of Ministers The Freedom of Movement Council The Freedom of Movement Council Prioritisation The Freedom of Movement Council Freedom of Movement Group Nordic Council 11111111 JL_ 77ii I

More information

EU General Data Protection Regulation (GDPR) Tieto s approach and implementation

EU General Data Protection Regulation (GDPR) Tieto s approach and implementation EU General Data Protection Regulation (GDPR) Tieto s approach and implementation GDPR roles and positions Data subjects Information on processing Consent or other basis for processing Right requests High

More information

ARTICLE 29 DATA PROTECTION WORKING PARTY

ARTICLE 29 DATA PROTECTION WORKING PARTY ARTICLE 29 DATA PROTECTION WORKING PARTY 17/EN WP 256 Working Document setting up a table with the elements and principles to be found in Binding Corporate Rules (updated) Adopted on 29 November 2017 INTRODUCTION

More information

DATA PROTECTION OFFICER (DPO) Maria Maxim Partner Bucharest October 25, 2017

DATA PROTECTION OFFICER (DPO) Maria Maxim Partner Bucharest October 25, 2017 DATA PROTECTION OFFICER (DPO) Maria Maxim Partner Bucharest October 25, 2017 TOPICS GDPR overview Concept of the DPO Recruitment process Job description Liability Your to do s: GDPR Responsibility and

More information

THE GENERAL DATA PROTECTION REGULATION: A BRIEF OVERVIEW (*)

THE GENERAL DATA PROTECTION REGULATION: A BRIEF OVERVIEW (*) THE GENERAL DATA PROTECTION REGULATION: A BRIEF OVERVIEW (*) The first IBM Personal Computer was introduced just over 35 years ago, on August 12, 1981. The first-generation iphone was introduced in the

More information

GDPR: AN OVERVIEW.

GDPR: AN OVERVIEW. GDPR: AN OVERVIEW www.amicuslegalconsultants.com AN OVERVIEW OF GDPR AND THE ROLE OF THE DATA PROTECTION OFFICER 1 INTRODUCTION The GDPR comes into effect across EU States on 25 May 2018, creating a level

More information

POLICY FOR THE REMUNERATIONS OF THE EMPLOYEES WORKING FOR INVESTMENT INTERMEDIARY TRADING 212 LTD

POLICY FOR THE REMUNERATIONS OF THE EMPLOYEES WORKING FOR INVESTMENT INTERMEDIARY TRADING 212 LTD POLICY FOR THE REMUNERATIONS OF THE EMPLOYEES WORKING FOR INVESTMENT INTERMEDIARY TRADING 212 LTD (Title amended with resolutions of the sole owner of the capital from 10.07.2017 and from 16.10.2017) GENERAL

More information

Agenda. What is the GDPR? Who does GDPR apply to? Implications of Non-Compliance The Road to GDPR Compliance

Agenda. What is the GDPR? Who does GDPR apply to? Implications of Non-Compliance The Road to GDPR Compliance Agenda What is the GDPR? Who does GDPR apply to? Implications of Non-Compliance The Road to GDPR Compliance What is the GDPR? The General Data Protection Regulation(GDPR) is a European-wide regulation

More information

PUBLIC COUNCILOF THEEUROPEANUNION. Brusels,11March /14. InterinstitutionalFile: 2012/0011(COD) LIMITE

PUBLIC COUNCILOF THEEUROPEANUNION. Brusels,11March /14. InterinstitutionalFile: 2012/0011(COD) LIMITE ConseilUE COUNCILOF THEEUROPEANUNION PUBLIC Brusels,11March 2014 7464/14 InterinstitutionalFile: 2012/0011(COD) LIMITE DATAPROTECT43 JAI149 MI 256 DRS36 DAPIX41 FREMP40 COMIX146 CODEC720 NOTE from: to:

More information

GDPR: A PRAGMATIC APPROACH

GDPR: A PRAGMATIC APPROACH GDPR: A PRAGMATIC APPROACH AUTHOR: KOEN CLAESSENS PARTNER - BDO RISK & ASSURANCE SERVICES INTRODUCTION Numerous information sessions have been held and publications issued about the whys and wherefores

More information

GDPR Factsheet - Key Provisions and steps for Compliance

GDPR Factsheet - Key Provisions and steps for Compliance GDPR Factsheet - Key Provisions and steps for Compliance Organisations in the Leisure & Hospitality industry hold vast amounts of personal data relating to customers, employees, and suppliers as well as

More information

ENERGY SAFETY CANADA COR AUDIT PROTOCOL PROPOSED CHANGES (2019)

ENERGY SAFETY CANADA COR AUDIT PROTOCOL PROPOSED CHANGES (2019) Energy Safety Canada Question A.1a (modified) A.1b A.2a/b A.2c/d A.2e A.2h A.3a Changes made Element A Management Involvement and Commitment The order of the criteria has changed to align with the common

More information

The 2014/2015 European Peer Reviews facilitating for statistical cooperation in the Nordic countries

The 2014/2015 European Peer Reviews facilitating for statistical cooperation in the Nordic countries The 2014/2015 European Peer Reviews facilitating for statistical cooperation in the Nordic countries Naja Andersen 1, Ari Tyrkkö 2 and Live Margrethe Rognerud 3 1 Statistics Denmark, Copenhagen, Denmark,

More information

ARTICLE 29 DATA PROTECTION WORKING PARTY

ARTICLE 29 DATA PROTECTION WORKING PARTY ARTICLE 29 DATA PROTECTION WORKING PARTY 17/EN WP265 Recommendation on the Standard Application form for Approval of Processor Binding Corporate Rules for the Transfer of Personal Data Adopted on 11 April

More information

ARTICLE 29 Data Protection Working Party

ARTICLE 29 Data Protection Working Party ARTICLE 29 Data Protection Working Party 17/EN WP264 rev.01 Recommendation on the Standard Application for Approval of Controller Binding Corporate Rules for the Transfer of Personal Data Adopted on 11

More information

Radioactive Waste Management System in Georgia (Ways for Development)

Radioactive Waste Management System in Georgia (Ways for Development) "Science Stays True Here" Advances in Ecological and Environmental Research, 387-393 Science Signpost Publishing Radioactive Waste Management System in Georgia (Ways for Development) G.Nabakhataini, V.Gedevanishvili

More information

AmCham EU s Recommendations on GDPR Implementation

AmCham EU s Recommendations on GDPR Implementation AmCham EU s Recommendations on GDPR Implementation Ensuring a balanced and forwardlooking data protection framework in Europe Executive summary AmCham EU s recommendations for the implementation of the

More information

COMPREHENSIVE LEGAL, TAX, ACCOUNTING AND AUDIT SERVICES

COMPREHENSIVE LEGAL, TAX, ACCOUNTING AND AUDIT SERVICES 1. General Data Protection Regulation (GDPR) 2. Changes in the regulation of data processing 3. Implementation of GDPR requirements COMPREHENSIVE LEGAL, TAX, ACCOUNTING AND AUDIT SERVICES NEWSLETTER September

More information

Procedia - Social and Behavioral Sciences 109 ( 2014 ) Laine Fogh Knudsen a *, Signe Balina b

Procedia - Social and Behavioral Sciences 109 ( 2014 ) Laine Fogh Knudsen a *, Signe Balina b Available online at www.sciencedirect.com ScienceDirect Procedia - Social and Behavioral Sciences 109 ( 2014 ) 944 948 2 nd World Conference On Business, Economics And Management- WCBEM 2013 Alternative

More information

GDPR POLICY. This policy complies with the requirements set out in the GDPR, which will come into effect on

GDPR POLICY. This policy complies with the requirements set out in the GDPR, which will come into effect on GDPR POLICY Sponsors Statement All The Bishop of Winchester Academy policies exist to support the Sponsors vision, Christian ethos and values that are embedded in the day-to-day and long term running of

More information

Global Recycled Standard Summary of Changes from 3.0 to 4.0

Global Recycled Standard Summary of Changes from 3.0 to 4.0 Global Recycled Standard from 3.0 to 4.0 June 2017 Reference GRS 3.0 Requirement GRS 3.0 Reference GRS 4.0 N/A "must" How to use this document A1.1b A1.1c A1.1d The Standard applies to products that contain

More information

GDPR factsheet Key provisions and steps for compliance

GDPR factsheet Key provisions and steps for compliance GDPR factsheet Key provisions and steps for compliance Organisations hold vast amounts of personal data relating to customers, employees, and suppliers as well as within marketing databases. Compliance

More information

Basic information on the reform, autumn 2016

Basic information on the reform, autumn 2016 Basic information on the reform, autumn 2016 This is how The City of Helsinki's new governance system looks like Office 25.8.2016 The Mayoral system and sectors The City Council decided on 16 March and

More information

Third Evaluation Round

Third Evaluation Round Adoption : 6 December 2013 Publication : 6 December 2013 Public Greco RC-III (2013) 24E Third Interim Report Third Evaluation Round Third Interim Compliance Report on Sweden Transparency of Party Funding

More information

MEMORANDUM OF UNDERSTANDING

MEMORANDUM OF UNDERSTANDING MEMORANDUM OF UNDERSTANDING BETWEEN THE GOVERNMENT OF THE REPUBLIC OF FINLAND AND THE GOVERNMENT OF THE KINGDOM OF SWEDEN ON DEFENCE COOPERATION 1 INTRODUCTION The Government of the Republic of Finland

More information

TRANSLATION OF THE OFFICIAL PUBLICATION OF SINT MAARTEN (AB 2010, GT no. 6)

TRANSLATION OF THE OFFICIAL PUBLICATION OF SINT MAARTEN (AB 2010, GT no. 6) TRANSLATION OF THE OFFICIAL PUBLICATION OF SINT MAARTEN (AB 2010, GT no. 6) National ordinance structure and organisation of national government 1 1 Structure of the administrative organisation Article

More information

Fresh Food Access Plan

Fresh Food Access Plan Fresh Food Access Plan Vision Statement: The Lehigh Valley is committed to a healthy, sustainable local food system that recognizes and strengthens the interdependent relationships between individual food

More information

Desk Review Questionnaire

Desk Review Questionnaire Project RAB/01/006: TRANSPARENCY AND ACCOUNTABILITY IN THE PUBLIC SECTOR IN THE ARAB REGION Desk Review Questionnaire (Draft: 14/02/03 14:39) Country Name: I. ORGANIZATION OF GOVERNMENT Information for

More information

Paul Jordan Thursday 12 October,

Paul Jordan Thursday 12 October, GDPR Readiness: Role of the DPO OXS 17 Brussels Paul Jordan Thursday 12 October, 2017 Overview General DPO requirements under the GDPR: legitimacy of the DPO role International Research findings in Data

More information

GOVERNMENT EMERGENCY MANAGEMENT REGULATION

GOVERNMENT EMERGENCY MANAGEMENT REGULATION Province of Alberta EMERGENCY MANAGEMENT ACT GOVERNMENT EMERGENCY MANAGEMENT REGULATION Alberta Regulation 248/2007 With amendments up to and including Alberta Regulation 216/2017 Office Consolidation

More information

INTERNATIONAL WHAT GDPR MEANS FOR RECORDS MANAGEMENT

INTERNATIONAL WHAT GDPR MEANS FOR RECORDS MANAGEMENT WHAT GDPR MEANS FOR RECORDS MANAGEMENT Presented by: Sabrina Guenther Frigo Overview Background Basic Principles Scope Lawful Processing Data Subjects Rights Accountability & Governance Data Transfers

More information

To ensure safety at sea. To prevent human injury or loss of life. To avoid damage to the environment and to the ship.

To ensure safety at sea. To prevent human injury or loss of life. To avoid damage to the environment and to the ship. TOPIC 6: ISM (INTERNATIONAL SAFETY MANAGEMENT) The ISM code s main objectives are: To ensure safety at sea. To prevent human injury or loss of life. To avoid damage to the environment and to the ship.

More information

Work with the B2B Compliance Manager and NS&I GPS clients to align risk appetites in respect of matters pertaining to data protection compliance

Work with the B2B Compliance Manager and NS&I GPS clients to align risk appetites in respect of matters pertaining to data protection compliance Role Profile Role Details Role Title GDPR Compliance Delivery Manager - GPS Pay band Business unit Compliance Advice & Delivery Reporting to Head of Compliance Date produced or updated March 2018 Purpose

More information

WHAT PAYROLL PROFESSIONALS NEED TO KNOW ABOUT THE GENERAL DATA PROTECTION

WHAT PAYROLL PROFESSIONALS NEED TO KNOW ABOUT THE GENERAL DATA PROTECTION WHAT PAYROLL PROFESSIONALS NEED TO KNOW ABOUT THE GENERAL DATA PROTECTION REGULATION (GDPR) WHAT PAYROLL PROFESSIONALS NEED TO KNOW ABOUT THE GENERAL DATA PROTECTION REGULATION (GDPR) Published by: The

More information

GDPR & SMART PIA. Wageningen University Feb 2017

GDPR & SMART PIA. Wageningen University Feb 2017 GDPR & SMART PIA Wageningen University Feb 2017 Tips for Action: Anticipate on the new EU General Data Protection Regulation (GDPR) to determine the privacy standards GDPR has been adopted by EU Parliament

More information

Scope of Decree. Designation of water bodies

Scope of Decree. Designation of water bodies Ministry for Environmental Protection and Water (KvVM) Decree 30/2004. (XII. 30.) on rules for investigation of groundwaters Authorised by the provisions set forth in clause m), paragraph (8), Article

More information

More information at cventconnect.com/europe/mobileapp

More information at cventconnect.com/europe/mobileapp Download and Login to the Cvent CONNECT Europe Mobile Event App Tap On Schedule Find Your Session Access Polls and Live Q&A More information at cventconnect.com/europe/mobileapp Cvent CONNECT Europe General

More information

Committee on Civil Liberties, Justice and Home Affairs WORKING DOCUMENT. Committee on Civil Liberties, Justice and Home Affairs

Committee on Civil Liberties, Justice and Home Affairs WORKING DOCUMENT. Committee on Civil Liberties, Justice and Home Affairs EUROPEAN PARLIAMT 2009-2014 Committee on Civil Liberties, Justice and Home Affairs 06.07.2012 WORKING DOCUMT on the protection of individuals with regard to the processing of personal data and on the free

More information

Guidance on the General Data Protection Regulation: (1) Getting started

Guidance on the General Data Protection Regulation: (1) Getting started Guidance on the General Data Protection Regulation: (1) Getting started Guidance Note IR03/16 20 th February 2017 Gibraltar Regulatory Authority Information Rights Division 2 nd Floor, Eurotowers 4, 1

More information

SURVEY OF ANTI-CORRUPTION MEASURES IN THE PUBLIC SECTOR IN OECD COUNTRIES: KOREA

SURVEY OF ANTI-CORRUPTION MEASURES IN THE PUBLIC SECTOR IN OECD COUNTRIES: KOREA SURVEY OF ANTI-CORRUPTION MEASURES IN THE PUBLIC SECTOR IN OECD COUNTRIES: KOREA 1. What anti-corruption mechanisms exist for the public sector in your country? a) Legislation proscribing corrupt activities

More information

FOURTH EVALUATION ROUND. Corruption prevention in respect of members of parliament, judges and prosecutors SECOND COMPLIANCE REPORT

FOURTH EVALUATION ROUND. Corruption prevention in respect of members of parliament, judges and prosecutors SECOND COMPLIANCE REPORT Adoption/Publication : Public 23 June 2017 Greco RC4(2017)11 F O U R T H FOURTH EVALUATION ROUND Corruption prevention in respect of members of parliament, judges and prosecutors SECOND COMPLIANCE REPORT

More information

Briefing No. 2 GDPR. 1 mccann fitzgerald

Briefing No. 2 GDPR. 1 mccann fitzgerald Briefing No. 2 GDPR This briefing was produced by the Institute of Directors in association with McCann FitzGerald for use in Ireland. McCann FitzGerald is one of Ireland s premier law firms, providing

More information

Preparing for the GDPR

Preparing for the GDPR Preparing for the GDPR Note: These slides and the accompanying presentation contain a general summary and are not legal advice. Niall Rooney 03/11/2017 (1) Data Protection The Right to Data Protection

More information

Government Rules of Procedure (262/2003; amendments up to 1143/2008 included) Section 1 - Scope of application of the Government Rules of Procedure

Government Rules of Procedure (262/2003; amendments up to 1143/2008 included) Section 1 - Scope of application of the Government Rules of Procedure NB: Unofficial translation Prime Minister s Office, Finland Government Rules of Procedure (262/2003; amendments up to 1143/2008 included) Chapter 1 - General provisions Section 1 - Scope of application

More information

ANNEX XX ENVIRONMENT

ANNEX XX ENVIRONMENT 7.7.2018 - EEA AGREEMENT - ANNEX XX p. 1 ANNEX XX ENVIRONMENT TABLE OF CONTENTS I. General II. Water III. Air IV. Chemicals, Industrial Risk and Biotechnology V. Waste VI. Noise Acts of which the Contracting

More information

We reserve the right to update this privacy notice at any time. Please check our website from time to time for any changes we may make.

We reserve the right to update this privacy notice at any time. Please check our website from time to time for any changes we may make. What is the purpose of this document? NORTHERN IRELAND SCREEN COMMISSION (Company Number NI031997) whose registered office is at 3 rd Floor Alfred House, 21 Alfred Street, Belfast, BT2 8ED is committed

More information

4-1 CITY CENTRE WEST COMMUNITY IMPROVEMENT PLAN

4-1 CITY CENTRE WEST COMMUNITY IMPROVEMENT PLAN SCHEDULE 4 URBAN VILLAGE DEVELOPMENT PROPOSAL EVALUATION The City Centre West Community Improvement Plan clearly specifies that all contemplated development incentives shall be performance-based incentives,

More information

SIGMA Support for Improvement in Governance and Management A joint initiative of the OECD and the European Union, principally financed by the EU

SIGMA Support for Improvement in Governance and Management A joint initiative of the OECD and the European Union, principally financed by the EU SIGMA Support for Improvement in Governance and Management A joint initiative of the OECD and the European Union, principally financed by the EU POLICY DEVELOPMENT, MONITORING AND EVALUATION: THE ROLE

More information

MODERNISING THE CIVIL SERVICE Francisco Cardona OECD, Sigma Programme

MODERNISING THE CIVIL SERVICE Francisco Cardona OECD, Sigma Programme SIGMA Support for Improvement in Governance and Management A joint initiative of the OECD and the European Union, principally financed by the EU MODERNISING THE CIVIL SERVICE Francisco Cardona OECD, Sigma

More information

General Personal Data Protection Policy

General Personal Data Protection Policy General Personal Data Protection Policy Contents 1. Scope, Purpose and Users...4 2. Reference Documents...4 3. Definitions...5 4. Basic Principles Regarding Personal Data Processing...6 4.1 Lawfulness,

More information

CHARTER OF THE AUDIT, FINANCE AND RISK COMMITTEE OF THE BOARD OF DIRECTORS OF ACE AVIATION HOLDINGS INC.

CHARTER OF THE AUDIT, FINANCE AND RISK COMMITTEE OF THE BOARD OF DIRECTORS OF ACE AVIATION HOLDINGS INC. CHARTER OF THE AUDIT, FINANCE AND RISK COMMITTEE OF THE BOARD OF DIRECTORS OF ACE AVIATION HOLDINGS INC. 1. Structure, Procedure, Qualifications The Audit, Finance and Risk Committee (the Audit Committee

More information

The Helsinki Treaty. Treaty of Co-operation between Denmark, Finland, Iceland, Norway and Sweden

The Helsinki Treaty. Treaty of Co-operation between Denmark, Finland, Iceland, Norway and Sweden The Helsinki Treaty Treaty of Co-operation between Denmark, Finland, Iceland, Norway and Sweden The Helsinki Treaty Treaty of Co-operation between Denmark, Finland, Iceland, Norway and Sweden ANP 2018:746

More information

Accountability under the GDPR: What does it mean for Boards & Senior Management?

Accountability under the GDPR: What does it mean for Boards & Senior Management? Accountability under the GDPR: What does it mean for Boards & Senior Management? Alan Calder Founder & Executive Chairman IT Governance Ltd 19 January 2017 www.itgovernance.co.uk Introduction Alan Calder

More information

CODE OF CORPORATE GOVERNANCE 2010

CODE OF CORPORATE GOVERNANCE 2010 Derbyshire Police Authority CODE OF CORPORATE GOVERNANCE 2010 March 2010 DPA Code of Corporate Governance 2010 A - 1 CODE OF CORPORATE GOVERNANCE 2010 DERBYSHIRE POLICE AUTHORITY INTRODUCTION 1. Governance

More information

THEMATIC COMPILATION OF RELEVANT INFORMATION SUBMITTED BY ARMENIA ARTICLE 10 UNCAC PUBLIC REPORTING

THEMATIC COMPILATION OF RELEVANT INFORMATION SUBMITTED BY ARMENIA ARTICLE 10 UNCAC PUBLIC REPORTING THEMATIC COMPILATION OF RELEVANT INFORMATION SUBMITTED BY ARMENIA ARTICLE 10 UNCAC PUBLIC REPORTING ARMENIA (SEVENTH MEETING) RA Law on freedom of information regulates the relations concerning freedom

More information

JOB DESCRIPTION. Hours: Monday Thursday, 8.30am 4.45pm; Friday 8.30am 4.30pm Term Time plus four weeks

JOB DESCRIPTION. Hours: Monday Thursday, 8.30am 4.45pm; Friday 8.30am 4.30pm Term Time plus four weeks JOB DESCRIPTION Post Title Salary Scale: Working Hours: Human Resources Officer Salary: PO2, 35 38 ( 32,628-35,268) pro rata 36 hours per week Hours: Monday Thursday, 8.30am 4.45pm; Friday 8.30am 4.30pm

More information

JOB TITLE: Head of Risk and Governance and Data Protection Officer. REPORTS TO: Director of Corporate Affairs and Governance

JOB TITLE: Head of Risk and Governance and Data Protection Officer. REPORTS TO: Director of Corporate Affairs and Governance JOB DESCRIPTION AND PERSON SPECIFICATION JOB TITLE: Head of Risk and Governance and Data Protection Officer REPORTS TO: Director of Corporate Affairs and Governance SALARY: Level G HOURS: 37 per week PURPOSE

More information

The Charities Property Association. The impact of the GDPR (including its affect on your direct marketing and fundraising activities)

The Charities Property Association. The impact of the GDPR (including its affect on your direct marketing and fundraising activities) The Charities Property Association The impact of the GDPR (including its affect on your direct marketing and fundraising activities) Mark Harvey, Consultant Jonathan McDonald, Senior Associate charlesrussellspeechlys.com

More information

GDPR Readiness: Role of the DPO

GDPR Readiness: Role of the DPO GDPR Readiness: Role of the DPO EDAA Summit 2017 London Paul Jordan Tuesday 28 November, 2017 Overview General DPO requirements under the GDPR: legitimacy of the DPO role International Research findings

More information

The General Data Protection Regulation in health & social care. 6 October 2016 Leeds

The General Data Protection Regulation in health & social care. 6 October 2016 Leeds The General Data Protection Regulation in health & social care 6 October 2016 Leeds Session outline 09.05am: Roadmap of the GDPR 10.15am: Coffee break 10.30: GDPR impact: Streetview Employment Rights of

More information

AEGON N.V. AUDIT COMMITTEE CHARTER

AEGON N.V. AUDIT COMMITTEE CHARTER AEGON N.V. AUDIT COMMITTEE CHARTER ADOPTED BY THE SUPERVISORY BOARD ON: 19 MARCH 1998 LAST REVISION: 6 NOVEMBER 2017 CONTENTS 1 General Purpose... 1 2 Audit Committee Role... 2 3 Audit Committee practices...

More information

Moldova s Priority Reform Action Roadmap Key measures until 31 July 2016

Moldova s Priority Reform Action Roadmap Key measures until 31 July 2016 Moldova s Priority Reform Action Roadmap Key measures until 31 July 2016 The present Roadmap provides a comprehensive list of measures, stakeholders engagement and calendar to address the challenges highlighted

More information

I am the complainant in the Investigatory Power Tribunal (IPT CH) against Cleveland Police. The public hearing commences on December

I am the complainant in the Investigatory Power Tribunal (IPT CH) against Cleveland Police. The public hearing commences on December Date: 31/10/2016 Our Reference: FOIA-2016-0103 Your Reference: N/A (Via email: ) Dear Mr, RE: Freedom of Information Act 2000 Request I write in response to your Freedom of Information Act 2000 (or FoIA

More information

CHECKLIST FOR TASKS NEEDED IN ORDER TO COMPLY WITH GDPR. Legal02# v1[RXD02]

CHECKLIST FOR TASKS NEEDED IN ORDER TO COMPLY WITH GDPR. Legal02# v1[RXD02] CHECKLIST FOR TASKS NEEDED IN ORDER TO COMPLY WITH GDPR Legal02#67236978v1[RXD02] CHECKLIST FOR TASKS NEEDED IN ORDER TO COMPLY WITH GDPR Notes: We recommend that any business looking to comply with the

More information

Third Evaluation Round. Second Compliance Report on Iceland

Third Evaluation Round. Second Compliance Report on Iceland Adoption: 16 May 2012 Publication: 25 April 2013 Public Greco RC-III (2012) 2E Third Evaluation Round Second Compliance Report on Iceland Incriminations (ETS 173 and 191, GPC 2) * * * Transparency of Party

More information

LAW ON TRADE UNIONS

LAW ON TRADE UNIONS LAW ON TRADE UNIONS 2012 1 2 LAW ON TRADE UNIONS 2012 Table of Contents Preface...4 Chapter I: GENERAL PROVISIONS...5 Chapter II: RIGHTS AND RESPONSIBILITIES OF TRADE UNONS AND TRADE UNION MEMBERS...8

More information

Genera Data Protection Regulation and the Public Sector

Genera Data Protection Regulation and the Public Sector Genera Data Protection Regulation and the Public Sector Tuesday 30 May 2017 @mhclawyers Welcome Edward Gleeson Partner & Head of Public & Administrative Law Mason Hayes & Curran GDPR for Public Bodies

More information

Ward Councillor Role and Responsibilities

Ward Councillor Role and Responsibilities Appendix A Ward Councillor Accountabilities To the Political Group Whip To the Party Group Leader To Full Council Role Purpose and Activities Leadership at Ward Level Leading and championing the interests

More information

New Data Protection & Privacy Regulations in the EU. March 7, 2018

New Data Protection & Privacy Regulations in the EU. March 7, 2018 New Data Protection & Privacy Regulations in the EU March 7, 2018 Moderator Gergana Antonova Bulgaria If you need another copy of the PowerPoint slides: Open a new window Go to the ELA homepage Click

More information

Expert meeting on Building an open and innovative government for better policies and service delivery. Paris, 8-9 June 2010

Expert meeting on Building an open and innovative government for better policies and service delivery. Paris, 8-9 June 2010 Expert meeting on Building an open and innovative government for better policies and service delivery Paris, 8-9 June 2010 Background document for session 1 (8 June, 16h 17h) OECD Guiding Principles for

More information

Appointing your Data Protection Officer (DPO) March 2018

Appointing your Data Protection Officer (DPO) March 2018 Appointing your Data Protection Officer (DPO) March 2018 2 Control Sheet: Data Protection Officer Reference: Date produced: Valid until: Short description/ notes: Restrictions on use: n/a 27 March 2018

More information

Annual Report to the European Commission. Finland. Summary

Annual Report to the European Commission. Finland. Summary 1097/69/2005 29.7.2005 Annual Report to the European Commission Finland Summary Annual Report 2005 Energy Market Authority, Finland 1 Summary 1.1 The Regulatory Authority 1.1.1 Organization and legal basis

More information

GENERAL DATA PROTECTION REGULATION REPORT

GENERAL DATA PROTECTION REGULATION REPORT GENERAL DATA PROTECTION REGULATION REPORT 2016 Report -General Data Protection Regulation BACKGROUND P.4 ECIJA SOLUTIONS P.15 MAIN DEVELOPMENTS P.7 FAQS P.16 MEASURES AND TERMS P.12 Privacy and Data Protection

More information

Colleges and public authority status under data protection legislation

Colleges and public authority status under data protection legislation Colleges and public authority status under data protection legislation Introduction 1. This paper sets outs the likelihood that Colleges (and the University) will be designated as public authorities under

More information

Audit Committee Charter

Audit Committee Charter 1. Overall purpose/objectives 1.1 The Audit Committee (the Committee ) of Millicom International Cellular S.A. (the Company ) is appointed by the Board of Directors (the Board ). 1.2 The primary purpose

More information

Regional Development Australia

Regional Development Australia Regional Development Australia Code of Conduct and Ethics For committee members and staff This booklet provides information for members of the community who are considering joining the national Regional

More information

Personal Information Protection and Privacy

Personal Information Protection and Privacy 99-106 Diversity and Inclusion 107-113 Creating a Diverse Work Style Personal Information Protection and Privacy Policy Due to the rapid progress of ICT and the continuing and rapid spread of the Internet

More information

PROBATION IN UKRAINE. Ministry of Justice of Ukraine Probation Department Director, OLEG YANCHUK

PROBATION IN UKRAINE. Ministry of Justice of Ukraine Probation Department Director, OLEG YANCHUK PROBATION IN UKRAINE Ministry of Justice of Ukraine Probation Department Director, OLEG YANCHUK UKRAINE The largest territory in Europe, 25 administrative regions, 32 place by population in the world (42

More information

June PUBLIC OVERSIGHT OF THE AUDIT PROFESSION: Enhancing Credibility and Supporting Cooperation

June PUBLIC OVERSIGHT OF THE AUDIT PROFESSION: Enhancing Credibility and Supporting Cooperation Federation of European Accountants Fédération des Experts comptables Européens Briefing Paper Standing for trust and integrity June 2014 PUBLIC OVERSIGHT OF THE AUDIT PROFESSION: Enhancing Credibility

More information

AMF Position Compliance function requirements

AMF Position Compliance function requirements AMF Position 2012-17 Compliance function requirements Reference texts: Articles 313-1 to 313-3, 313-5 to 313-7, 313-54, 313-75 of the AMF General Regulation The Autorité des Marchés Financiers applies

More information

Republic of Bulgaria NATIONAL ANTI-CORRUPTION STRATEGY

Republic of Bulgaria NATIONAL ANTI-CORRUPTION STRATEGY Republic of Bulgaria NATIONAL ANTI-CORRUPTION STRATEGY In the last years corruption has become a global threat not only for the economic development of the countries themselves and their international

More information

Vocational Education and Training (VET) Systems: Role of the Social Partners

Vocational Education and Training (VET) Systems: Role of the Social Partners Austria Belgium Cyprus Czech Republic Cooperative partnership between associations of employers and of employees has a long tradition in Austria. Social partnership is based on the principle of voluntarism.

More information

Data Protection Law: An Update

Data Protection Law: An Update Data Protection Law: An Update Billy Hawkes Data Protection Commissioner Matheson Dublin, 28 January 2014 Data Protection Day EU & Irish Legislation Data Protection Directive 95/46/EC Being updated Electronic

More information

TERMS OF REFERENCE FOR THE BOARD OF DIRECTORS AND THE MANAGEMENT OF SA SA INTERNATIONAL HOLDINGS LIMITED

TERMS OF REFERENCE FOR THE BOARD OF DIRECTORS AND THE MANAGEMENT OF SA SA INTERNATIONAL HOLDINGS LIMITED TERMS OF REFERENCE FOR THE BOARD OF DIRECTORS AND THE MANAGEMENT OF SA SA INTERNATIONAL HOLDINGS LIMITED (together with its subsidiaries, the COMPANY unless the context otherwise requires) A. INTRODUCTION

More information

Ministry of Public Safety and Solicitor General. Assistant Deputy Minister Corrections Victoria, BC

Ministry of Public Safety and Solicitor General. Assistant Deputy Minister Corrections Victoria, BC The Ministry of Justice and the comprise the justice and public safety sector within the Government of British Columbia. The ministries work together to administer justice, deliver public safety services

More information

Presenting a live 90-minute webinar with interactive Q&A. Today s faculty features:

Presenting a live 90-minute webinar with interactive Q&A. Today s faculty features: Presenting a live 90-minute webinar with interactive Q&A Compliance With New EU GDPR: Steps Investment Funds, Banks, Advisers and Financial Intermediaries Should Take Now Revising Service Agreements and

More information

Parliamentary and Health Ombudsman. Data protection audit report

Parliamentary and Health Ombudsman. Data protection audit report Parliamentary and Health Ombudsman Data protection audit report Executive summary March 2018 1. Background The Information Commissioner is responsible for enforcing and promoting compliance with the Data

More information

Chapter 1. Assessment and recommendations

Chapter 1. Assessment and recommendations 1. ASSESSMENT AND RECOMMENDATIONS 19 Chapter 1 Assessment and recommendations Economic context and drivers for regulatory reform Colombia is a unitary constitutional republic, composed of 32 departments

More information

Pay and Salary Setting HR-03-30

Pay and Salary Setting HR-03-30 Pay and Salary Setting About This Policy Effective Dates: 01-01-1970 Last Updated: 12-20-2016 Responsible University Administrator: Vice President and Chief Financial Officer Policy Contact: IU Human Resources

More information

ADELAIDE BRIGHTON LIMITED ACN

ADELAIDE BRIGHTON LIMITED ACN ADELAIDE BRIGHTON LIMITED ACN 007 596 018 AUDIT, RISK AND COMPLIANCE COMMITTEE COMMITTEE CHARTER 1 Membership of the committee The committee shall consist of: only non-executive directors a majority of

More information

GENERAL DATA PROTECTION REGULATION

GENERAL DATA PROTECTION REGULATION GENERAL DATA PROTECTION REGULATION (GDPR) What is General Data Protection Regulation (GDPR) What this means for GP Practices Replaces the Data Protection Act 1998 (DPA) Designed to match data privacy laws

More information

2019 COR AUDIT PROTOCOL 2015 COR AUDIT PROTOCOL (2016 GUIDELINES)

2019 COR AUDIT PROTOCOL 2015 COR AUDIT PROTOCOL (2016 GUIDELINES) 2019 COR AUDIT PROTOCOL 2015 COR AUDIT PROTOCOL (2016 GUIDELINES) Element A: Management, Leadership and Organizational Commitment Element A: Management Involvement and Commitment 1. Company Health and

More information

Contract Management in the Antimonopoly Office

Contract Management in the Antimonopoly Office Contract Management in the Antimonopoly Office Proposal for agenda 1) Why are we doing this? 2) What lessons have been learned i.e. Denmark? 3) What could a contract look like? 4) How could the process

More information

CNPD Training: Data Protection Basics

CNPD Training: Data Protection Basics CNPD Training: Data Protection Basics The obligations of controllers and processors Esch-sur-Alzette Mathilde Stenersen 7-8 February 2018 Legal service Outline 1. Introduction 2. Basic elements 3. The

More information

with Xavier Darmstaedter Managing Partner GEDAPRE DACOTA Consulting

with Xavier Darmstaedter Managing Partner GEDAPRE DACOTA Consulting with Xavier Darmstaedter Managing Partner GEDAPRE DACOTA Consulting xada@gedapre.eu tel 0475-41.03.22 xavier.darmstaedter@dacota.eu Gent, 3 October 2017 4 facts 1. We are not really in control of our personal

More information

European Data Protection Supervisor (Controleur europeen de la protection des donnees)

European Data Protection Supervisor (Controleur europeen de la protection des donnees) European Data Protection Supervisor (Controleur europeen de la protection des donnees) APPLICATION FORM FOR ACCREDITATION As A DATA PROTECTION AUTHORITY Application to the Credentials Committee for accreditation

More information

BACKGROUND NOTE ON ACTION PLANS

BACKGROUND NOTE ON ACTION PLANS BACKGROUND NOTE ON ACTION PLANS SMO Action Plans are developed by IFAC Members and Associates to demonstrate fulfillment of IFAC Statements of Membership Obligations (SMOs). SMOs require IFAC Members and

More information

SCHOOLS DATA PROTECTION POLICY. Guidance Notes for Schools

SCHOOLS DATA PROTECTION POLICY. Guidance Notes for Schools SCHOOLS DATA PROTECTION POLICY Guidance Notes for Schools Please read this policy carefully and ensure that all spaces highlighted in the document are completed prior to publication. Please ensure that

More information

General Data Protection Regulation

General Data Protection Regulation General Data Protection Regulation Sofie van der Meulen Axon seminar 21 February 2018 Why and when GDPR Essentials Guidance Data Protection Officer Lead Authority Data Portability Data Protection Impact

More information