Cover | Table of Contents | Colophon
|
Law/regulation
|
Description
|
|---|---|
|
Canadian Personal Information Protections and Electronic Documents Act
|
Applies to employees of firms regulated by the federal government. Recognizes an employee's right to privacy and imposes principles that employers must follow with respect to the personal data of their employees.
|
|
Customer Identification Program (Patriot Act)
|
Applies to financial services organizations in the U.S. Requires the collection and storage of customer data and its verification against government-owned lists of known or suspected terrorists.
|
|
European Data Protection Directive
|
Applies to organizations operating in the European Union. Imposes wide-ranging obligations regarding the collection, storage, and use of personal information relating to employees and customers.
|
|
Health Information Portability and Accountability Act (HIPAA)
|
Applies to any organization that manages health care data in the U.S. Establishes a patient's right to control access and use of personal health information (PHI). Requires that organizations control and safeguard PHI. Imposes technical standards for access control, audit, data integrity, and security. |