Image
Icon

Directory

IconAppraisers and Valuers
IconAssociations and Institutes
IconBBBEE Consulting and Verification Agencies
IconConsumer Protection
IconCorporate Governance
IconCredit Bureaus
IconDefensive Driver Training
IconEmergency Medical Rescue
IconForensic Investigation Services
IconInsurance Brokers - Alphabetical Listing
IconInsurance Brokers by Type of Product or Service Needed
IconInsurance Companies
IconInsurance Consultants
IconLightning Damage & Surge Protection Specialists
IconOmbud
IconOnline Quotes and Cover
IconPremium Financing
IconPublic Loss Adjustors
IconPublications
IconRating Agencies
IconRegulatory Authorities
IconRisk Finance
IconRisk Management
IconRisk Surveyors
IconSalvage Operators
IconTelephone Quotes
IconVehicle Accident Management
IconVehicle and Household Risk Inspection Services
IconVehicle Tracking
IconWellness Programs
Advertise Here
  Subscribe To »

FOR YOUR EYES ONLY-POPIA ESSENTIALS

Published

2020

Thu

12

Nov

The Protection of Personal Information Act (POPIA) has been in the making for a while, with certain aspects already introduced. It is finally set to come into full effect after President Cyril Ramaphosa said, in June, that the effective date for compliance is 1 July 2021, and most organisations will have much to do to get ready during this grace period.

Privacy is a basic human right. Individuals have the right to:

  • access their data
  • change or update it
  • request that it is deleted
  • object to direct marketing
  • be notified if data is compromised
  • lay a complaint with the information regulator

Globally, data protection is in the spotlight. The European Union’s General Data Protection Regulation, which has become a benchmark for data protection laws around the world, has been in operation for just over two years and is strictly enforced by regulatory authorities. A recent ruling by the European Court of Justice resulted in the US having to scramble to put a federal data protection law in place.

Russell Nel, data protection officer at Alexander Forbes, says “good data protection practices help to foster trust with your customers, stakeholders, and the general public”.

 

Under the law, one of the rights that individuals have is to be notified when their information is collected. At a minimum, they should be told:

  • what information will be collected
  • the reasons or purpose for collection and processing
  • who their information will be sent to
  • any laws requiring such collection

 

Data breaches are a costly business – even if the information regulator has not issued any fines, your reputation will be damaged because of a breach, making it more difficult to attract and retain clients.

Nel discusses some of the key privacy challenges corporates face:

  1. Privacy is seen as a compliance matter

While many organisations try to drive privacy from a compliance perspective, in reality it is much broader than that. A good privacy implementation should involve all areas of a business – from business operations, to risk and compliance, marketing, and particularly information technology.

  1. Time and effort to comply are underestimated

Organisations overseas, particularly in the UK and Europe, have had data protection laws in place in some form since the 1990s. Despite the fact that they have had two decades to prepare, many organisations are still largely unable to fully comply with these laws, and we see regulatory authorities issuing multi-million euro fines with alarming frequency.

  1. Data protection never ends

Data protection requires constantly re-evaluating your organisation, and the risks to personal information. Just because you are secure today does not mean you will be protected tomorrow – technology, business and the markets evolve rapidly, and you need to keep up.

Privacy and data protection need to be built into operational processes; systems may need to be upgraded or replaced, and people need to be trained.

Nel said that, before a data breach even happens, the trustees should review the company’s insurance policy and engage with the brokers to ensure that adequate cover is put in place once POPIA takes effect. This means making certain that insurance cover for a breach is adequate.

He explains that, if personal information is compromised or accessed by an unauthorised user, the responsible party will need to notify any individuals who may be affected, as well as the information regulator.

“Trustees have an obligation to ensure that this information is appropriately protected.”

Some things that can be done to protect information in accordance with POPIA principles:

  • Make sure that any printed documentation is securely locked away, and shredded when it is no longer needed
  • With the Covid-19 pandemic, more people are working remotely. Make sure that family, friends and children do not have access to private information or the systems on which it is stored
  • Make sure that laptops or computers are encrypted and that mobile devices are secured with a PIN or biometric access control. Investigate the possibility of minimising, redacting or ‘de-identifying’ data so that it cannot be used to identify an individual if it is compromised.

 

“This is especially important when transmitting data by email, as email fraud and spoofing attacks are on the rise, especially in light of increased remote working,” concludes Nel.

 
Source: ALEXANDER FORBES
 
« Back to previous page Print this page » |
 

Breaking News »

2020 State of the Insurance Market

Opinion by Terence Williams, CEO of Aon South Africa   South African businesses operate in a time of unprecedented volatility across economics, demographics and geopolitics and as these risks evolve, ...
Read More »

  

Top brokers acknowledged at CIB Broker Awards

Top brokers acknowledged at CIB Broker Awards   The 2020 CIB Broker Awards took place on 6 November in Johannesburg, under strict COVID-19 protocols for a well-deserved celebration. The event ...
Read More »

  

How comprehensive is your motor insurance cover?

Your car is likely to be one of your biggest assets you will own. It’s a significant financial investment, not to mention an essential when it comes to getting from A to B for work, leisure, study ...
Read More »

  

Does digital assistance make insurance relevant beyond loss coverage?

In an era of digitisation and disruption, one aspect where most insurers come up short is providing real value beyond the insurance policy. Traditionally, insurers and brokers have (and continue to) only ...
Read More »

 

More News »

Image

Healthcare »

Image

Investment »

Image

Life »

Image

Retirement »

Advertise Here
Image
Image
Image
Image
Advertise Here

From The Glossary »

Icon

Size:

Differentiates between large and small capitalisation shares.
More Definitions »

 

Advertise

 

eZine

 

Contact IG

 

Media Pack

 

RSS Feeds

By using this website you agree to the Terms of Use.
Copyright © Insurance Gateway (Pty) Ltd 2004 - 2020. All Rights Reserved.