
Recent Privacy Developments ISACA January 12, 2012 Keith A. Cheresko and Robert L. Rothman Principals, Privacy Associates International LLC
Areas or Topics of Privacy Activity • Breach • Cloud • Geo-location • Facial Recognition • BYOD • Marketing • Social Media • OBA • Consumer Financial Protection Bureau • Federal Trade Commission • COPPA • Health Care • International • EU Cookie Rules • EU Data Protection Directive • APEC • USA PATRIOT ACT • Supplier Relationships
Focus on Several Items • Social Media • Breach • Marketing • Supplier Relationships • Privacy Developments from the EU • TEST!
Breach PII
Breach Notification No general national beach notification law - BUT
Breach Notification • Internal processes • Training • Policies and practices • Supplier action implications
Social Media Labor Relations
Social Media NLRB Actions
Social Media • Policies and practices • Internal processes • Training • Enforcement
Marketing • Policies and practices • Internal processes • Training • Enforcement
Supplier Relationships Cloud Computing
Supplier Relationships Contracts!
Supplier Relationships • Contract • Allocation of liability • Responsibility for actions of others
The European Data Protection Laws Have Been a Compliance Headache for Companies Around the World
The Good News DIRECTIVE REGULATION
The Bad News Nearly Everything Else
Companies Outside Europe Potentially Subject to the Regulation