Data, Technology, and Innovation in Government



Similar documents
Policy Implications: Privacy, Security and Liability Big Data in Telecom. June TIA 2012: INSIDE THE NETWORK Dallas TX

FISHER & PAYKEL PRIVACY POLICY

Summary of feedback on Big data and data protection and ICO response

Merthyr Tydfil County Borough Council. Data Protection Policy

Overview. Data protection in a swirl of change Cloud computing. Software as a service. Infrastructure as a service. Platform as a service

HIPAA BUSINESS ASSOCIATE ADDENDUM (Privacy & Security) I. Definitions

Cyber, Security and Privacy Questionnaire

I. U.S. Government Privacy Laws

ESOMAR PRACTICAL GUIDE ON COOKIES JULY 2012

RESEARCH INVOLVING DATA AND/OR BIOLOGICAL SPECIMENS

RUTGERS POLICY. Responsible Office: RBHS Office of Ethics, Compliance & Corporate Integrity

Jan Philipp Albrecht Rapporteur, Committee on Civil Liberties, Justice and Home Affairs European Parliament

IAB Europe Guidance. Five Practical Steps to help companies comply with the E-Privacy Directive

Into the Cloud: How will the Draft EU Data Protection Regulation affect cloud computing service providers and users?

Human Research Protection Program Good Clinical Practice Guidance for Investigators Investigator & Research Staff Responsibilities

INFORMATION TECHNOLOGY POLICY

Technological Evolution

An Executive Overview of GAPP. Generally Accepted Privacy Principles

DATA Dr. Jan Krancke, VP Regulatory Strategy & Projects CERRE Expert Workshop, Brussels. re3rerererewr

Open Government Data Strategy

Privacy Law Basics and Best Practices

Northwest Cardiology Associates 400 W. Northwest Hwy Barrington, IL Fax HIPAA Notice of Privacy Practices ( Notice )

NOTICE OF PRIVACY PRACTICES

Factsheet on the Right to be

What Virginia s Free Clinics Need to Know About HIPAA and HITECH

What s New in Access, Privacy and Health Care. Brian Beamish Commissioner. Ontario Connections May 21, 2015

7.0 Information Security Protections The aggregation and analysis of large collections of data and the development

Policy Brief: Protecting Privacy in Cloud-Based Genomic Research

Data Use and the Liquid Grids Model

HIPAA PRIVACY AND SECURITY AWARENESS

ROYAL AUSTRALASIAN COLLEGE OF SURGEONS

HIPAA Notice of Privacy Practices

HIPAA The Law Explained. Click here to view the HIPAA information.

HIPAA Notice of Privacy Practices HAND & MICROSURGERY ASSOCIATES, INC.

Special Edition. I. What is "Big Data"? April 2013

Chief Privacy Officer Christian Brothers Services 1205 Windham Parkway Romeoville, IL

PRIVACY IMPACT ASSESSMENT (PIA) For the

NOTICE OF PRIVACY PRACTICES Allergy Treatment Center of New Jersey, P.C. Effective Date: April 14, 2003

UC PRIVACY AND INFORMATION SECURITY STEERING COMMITTEE OCTOBER 25, 2010

U.S. Department of Health and Human Services. U.S. Department of Education

In which new or innovative ways do you think RPAS will be used in the future?

Metropolitan Living, LLC 151 W. Burnsville Parkway, Suite 101 Burnsville, MN Ph: (952) Fax: (651)

Grand Rapids Medical Education Partners Mercy Health Saint Mary s Spectrum Health. Pam Jager, GRMEP Director of Education & Development

PRIVACY PRACTICES OUR PRIVACY OBLIGATIONS

HIPAA Privacy and Security Rules: A Refresher. Marilyn Freeman, RHIA California Area HIPAA Coordinator California Area HIM Consultant

Joint Innovate UK and CW Legal SIG Event - Internet of Things Workshop - 17th March Contracting for IoT

HIPAA BUSINESS ASSOCIATE AGREEMENT

BUSINESS ASSOCIATE AGREEMENT

Privacy Statement. What Personal Information We Collect. Australia

Declaration of Internet Rights Preamble

BUSINESS ASSOCIATE AGREEMENT. Recitals

3rd Party Assurance & Information Governance outlook IIA Ireland Annual Conference Straightforward Security and Compliance

PRIVACY POLICY Personal information and sensitive information Information we request from you

Appendix : Business Associate Agreement

Pulmonary Associates of Richmond, Inc. Notice of Privacy Practices Page 1 of 6

Policy on the Appropriate Use of Telemedicine Technologies in the Practice of Medicine

A Pragmatic Guide to Big Data & Meaningful Privacy. kpmg.be

Data, Privacy, Cookies and the FTC in Kevin Stark - ExactTarget Maltie Maraj - ExactTarget Nicholas Merker - Ice Miller

Business Associate Agreement

BUSINESS ASSOCIATE AGREEMENT

Mohammad Djafari Pediatric Kennedy Parkway. Cortland, New York Notice of Privacy Practices

Transcription:

Data, Technology, and Innovation in Government Seminar 3: Privacy and Personal Data Portability February 18, 2015 Nick Sinai Walter Shorenstein Media and Democracy Fellow Shorenstein Center for Media, Politics, and Public Policy Harvard Kennedy School @NickSinai

Seminar Background Personal Background Government: White House, Federal Communications Commission, Technology VC: Insight Venture Partners, Lehman Brothers, Polaris Goals Expose you to real projects, policy, and people Raise your Tech IQ Get credits toward your GSD degree Logistics: Students get priority, seminar is not for credit

Seminar Series Introduction to Open Data Government Digital Services Privacy and Personal Data Portability Marketing U.S. Data: Data Jams, Datapaloozas, Hackathons, Prizes, & CDOs Government Spending Transparency Smart Cities/Internet of Things Data Journalism Freedom of Information Act Healthcare.gov: A Case Study Regulatory Modernization

Today s guest: Jim Waldo Gordon McKay Professor of the Practice of Computer Science, SEAS CS 105: Privacy and Technology Chief Technology Officer of Harvard University Former Cloud Engineer at VMWare Distinguished Engineer at Sun Microsystems Laboratories

2012 Consumer Bill of Rights America must apply our timely privacy values to the new technologies and circumstances of our times. White House

Federal Privacy Regimes o US Government o Privacy Act of 1974 o E-Government Act of 2002 o Industry o Fair Credit Reporting Act (FCRA) o Family Educational Rights and Privacy Act (FERPA) of 1974 o Health Insurance Portability and Accountability Act (HIPAA) of 1996 o Children s Online Privacy Protection Act (COPPA) of 1998

o Privacy Act of 1974 Federal Privacy Regimes No agency shall disclose any record to any person, or to another agency, except with the prior written consent of the individual to whom the record pertains and the record is to be transferred in a form that is not individually identifiable. o E-Government Act of 2002 Section 208: Requirements for data handling by agencies and departments Privacy Impact Assessment (PIA) Privacy Policies on agency websites Machine-readable Designation of responsible official. o Health Insurance Portability and Accountability Act (HIPAA) of 1996 The Privacy Rule protects all individually identifiable health information held or transmitted by a covered entity of its business associate, in any form or media. This information is classified as protected health info (PHI).

WH Big Data Report

Personal Data Portability

Across the Atlantic... European Union Data Protection Directive E-Privacy Directive (Cookie Law) UK Information Commissioner s Office Data Protection Act

Discussion Topics Is privacy the same as anonymity? Data donation Right to be forgotten How do we balance big data in the social sciences with privacy?

Key Takeaways Increasing focus on how data is used Build privacy into products Give citizens back their data! Next Week: Marketing U.S. Data

Homework Read a privacy policy Get your personal data (electronically) from the U.S. federal government; send me feedback o IRS Get Transcript o My Student Data o Other

Additional Resources Big Data and Privacy: A Technological Perspective http://www.whitehouse.gov/sites/default/files/microsites/ostp/pcas T/pcast_big_data_and_privacy_-_may_2014.pdf John Podesta, Big Data and Privacy, 1 Year Out http://www.whitehouse.gov/blog/2015/02/05/big-data-andprivacy-1-year-out Gov.uk Data protection, making a complaint https://www.gov.uk/data-protection/the-data-protection-act TechCrunch - US Government still leaning on Europe to dilute data protection reform proposal http://techcrunch.com/2013/01/18/us-government-still-leaningon-europe-to-dilute-data-protection-reform-proposals/