article thumbnail

Understanding HIPAA: A Guide to Avoiding Common Violations

Armstrong Archives

Since 2003, there have been over 331,100 complaints that were handled by the Office for Civil Rights. For example, imagine a hospital employee accidentally shares a patient’s medical records with someone who shouldn’t have seen them. This breach of privacy could harm the patient and cause consequences for the hospital.

article thumbnail

UK GDPR Reform: government publishes response to consultation – likely to form basis of forthcoming UK Data Reform Bill

Data Protection Report

Unspecified clarifications will be made, although there is a reference to the recitals being clearer (for example, GDPR recital 50 provides public interest examples of where processing can be used for an incompatible purpose). Currently fines under PECR are capped at £500,000. Boosting trade and reducing barriers to data flows.

GDPR 144
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Selling and utilising personal data in an insolvency situation

Data Protection Report

For example, in February of this year, the FCA and ICO issued a joint statement warning regulated firms and insolvency practitioners of their responsibilities when dealing with personal data. Can this be done? It depends. email or sms) to have the relevant consumer’s consent (unless the “soft opt-in” rule described below applies).

article thumbnail

A Close Up Look at the Consumer Data Broker Radaris

Krebs on Security

Historic domain registration records from DomainTools show rosconcert.com was registered in 2003 to Unipoint Technologies — the same company fined by the FCC for not having a license. Rosconcert.com also lists the phone number 818-377-2101.

Privacy 239
article thumbnail

GDPR: lawful bases for processing, with examples

IT Governance

An ‘affirmative act’ means the data subject has to opt-in – you cannot assume their consent, for example by using pre-ticked boxes on your website. For example, when you process staff data for payroll purposes, contractual obligations will apply, as staff will have signed a contract of employment. Contractual obligations.

GDPR 92
article thumbnail

GDPR: lawful bases for processing, with examples

IT Governance

For tasks carried out in the public interest or exercise of authority vested in the data controller. For example, when you process staff data for payroll purposes, contractual obligations will apply, as staff will have signed a contract of employment. To comply with the data controller’s legal obligations. Public task.

GDPR 70
article thumbnail

The Hacker Mind Podcast: Hacking Real World Criminals Online

ForAllSecure

That, of course, was not all, but it is an example of how someone -- anyone on the internet -- can take a photo or blog post or Yelp review from social media, or some other seemingly random open source item and tie it back to a crime. All those exercises, the honeypot or honeynet challenges I think that's what they were called in.

IT 40