SlideShare una empresa de Scribd logo
1 de 16
Descargar para leer sin conexión
DATA PROTECTION RIGHTS ,FOR DATA SUBJECTS
CSK DATA PROTECTIONTRAINING FOR
CHAMPIONS
MONDAY 23 RD JAN 2023
Peter Owenje
owenjep@gmail.com. + 254 722 714141
• Under the Data Protection legislation, data
subjects have the following rights with
regards to their personal information:
DATA PROTECTION: RIGHTS FOR DATA SUBJECTS
__________________
DATA PROTECTION: RIGHTS FOR DATA SUBJECTS
___________________________________________
• the right to be informed about the collection and the use of their
personal data
• the right to access personal data and supplementary information
• the right to have inaccurate personal data rectified, or completed if it
is incomplete
• the right to erasure (to be forgotten) in certain circumstances
• the right to restrict processing in certain circumstances
• the right to data portability, which allows the data subject to obtain
and reuse their personal data for their own purposes across different
services
DATA PROTECTION: RIGHTS FOR DATA SUBJECTS
___________________________________________
• the right to object to processing in certain circumstances
• rights in relation to automated decision making and
profiling
• the right to withdraw consent at any time (where relevant)
• the right to complain to the Information Commissioner
• The organization or entity, must issue certain information
about the processing activities that affect you.
• This information is usually provided in a Privacy Notice or
Privacy Statement that is made available at the point the
data is collected.
THE RIGHT TO BE INFORMED
_________________________________
• The Organization, as the data controller, must provide you
with:
• confirmation that your data is being processed
• access to your personal data
• other supplementary information
THE RIGHT OF ACCESS
_________________________________
• You can ask the Organization to correct any personal
information it holds about you to ensure your data is
accurate.
• You may also ask the Organization to complete
incomplete data held about yourself.
THE RIGHT TO RECTIFICATION
_________________________________
• You have the right to (under certain circumstances) ask
for your personal data to be erased where:
• your personal data is no longer necessary in relation to
the purpose for which it was collected/processed
• you withdraw your consent or object to the processing
and there is no overriding legitimate interest to continue
processing
THE RIGHT TO ERASURE/BE FORGOTTEN
_________________________________
• you object to the processing and there are no overriding
legitimate grounds for the processing
• you object to the processing and your personal data was
processed for direct marketing purposes
• your personal data was unlawfully processed or should be
erased to comply with a legal obligation
• your personal data is processed in relation to the offer of
information services, you are subscribed to and nothing
else.
THE RIGHT TO ERASURE/BE FORGOTTEN
_________________________________
• The Organization can refuse to erase your personal data
where it is processed:
• to comply with a legal obligation or for the performance of a task of
public interest
• for the exercise or defence of legal claims
• for purposes relating to public health, archiving in the public interest,
scientific/historic research or statistics
If your data has been disclosed to a third party, the organization will ask
them to erase that data, unless this proves impossible or involves
disproportionate effort. You may ask who those third parties are and the
Organization will inform you accordingly.
THE RIGHT TO ERASURE/BE FORGOTTEN
_________________________________
You have the right to restrict the processing of personal data held by
the Organization where:
• you have contested its accuracy
• you have objected to the processing and the Organization is
considering whether they have a legitimate ground which overrides
this
• processing is unlawful
• the Organization no longer needs the data but you require it to
establish, exercise or defend a legal claim
THE RIGHT TO RESTRICT PROCESSING
_________________________________
The right to data portability allows individuals to move, copy or transfer
personal data easily from one IT environment to another in a safe and secure
way, without hindrance to usability. This enables you to obtain and reuse your
personal data across different services.
The right to data portability only applies:
• to personal data that an individual has personally provided to the
Organization
• where the processing is based on consent or the performance of a contract
• where processing is carried by automated means (i.e. excluding paper
files)
THE RIGHT TO DATA PORTABILITY
_________________________________
You have the right to object to processing of your personal data in certain
circumstances and have an absolute right to stop your data being used for
direct marketing.
You can also object if the processing is for:
• a task carried out in the public interest
• the exercise of official authority vested in the Organization
• The Organization’s legitimate interests (or those of a third party)
However, in these circumstances the right to object is not absolute and you
must give specific reasons why you are objecting to the processing of your
data.
Please be aware that the Organization would be able to continue processing
your personal data if:
• we can demonstrate compelling legitimate grounds for the processing,
which override the interests, rights and freedoms of the individual
• the processing is for the establishment, exercise or defence of legal claims
THE RIGHT TO OBJECT
_________________________________
Automated decision-making takes place when an electronic system uses
personal information to make decisions without human intervention.
The Organization could use automated decision-making in the following
circumstances:
• where we have notified you of the decision and given you 21 days to
request a reconsideration
• where it is necessary to perform the contract and appropriate measures
are in place to safeguard your rights
At present, there are no fully automated decision making or profiling systems
in use within the Organization. This means that this right does not currently
apply to any processing activities.
RIGHTS RELATING TO AUTOMATED DECISION MAKING
AND PROFILING
_________________________________
• The Organization must provide information on how to:
• Contact them about your rights
• How to make a complaint
CONTACTING THE ORGANIZATION
_________________________________
END
_________________________________

Más contenido relacionado

Similar a Data Protection Subjects.pdf

DMA - DPC Workshop - 23 October 2013
DMA - DPC Workshop - 23 October 2013DMA - DPC Workshop - 23 October 2013
DMA - DPC Workshop - 23 October 2013
Rachel Aldighieri
 
Imac 2011
Imac 2011Imac 2011
Imac 2011
sebmojo
 
General Data Protection Regulation
General Data Protection RegulationGeneral Data Protection Regulation
General Data Protection Regulation
GrittyCC
 
Data protection training emea new joiners. mandatory quiz
Data protection training emea new joiners. mandatory quizData protection training emea new joiners. mandatory quiz
Data protection training emea new joiners. mandatory quiz
Deborahchiesa
 

Similar a Data Protection Subjects.pdf (20)

GDPR: Training Materials by Qualsys
GDPR: Training Materials  by QualsysGDPR: Training Materials  by Qualsys
GDPR: Training Materials by Qualsys
 
Public sector breakfast club - October 2017, Exeter
Public sector breakfast club - October 2017, ExeterPublic sector breakfast club - October 2017, Exeter
Public sector breakfast club - October 2017, Exeter
 
Protection des données et de la vie privée : nouvelles obligations pour les e...
Protection des données et de la vie privée : nouvelles obligations pour les e...Protection des données et de la vie privée : nouvelles obligations pour les e...
Protection des données et de la vie privée : nouvelles obligations pour les e...
 
GDPR Data Subject Rights - What You Need to Know
GDPR Data Subject Rights - What You Need to KnowGDPR Data Subject Rights - What You Need to Know
GDPR Data Subject Rights - What You Need to Know
 
Media_644046_smxx (1).pptx
Media_644046_smxx (1).pptxMedia_644046_smxx (1).pptx
Media_644046_smxx (1).pptx
 
General Data Protection Regulation (GDPR) for Identity Architects
General Data Protection Regulation (GDPR) for Identity ArchitectsGeneral Data Protection Regulation (GDPR) for Identity Architects
General Data Protection Regulation (GDPR) for Identity Architects
 
Gdpr in a nutshell
Gdpr in a nutshellGdpr in a nutshell
Gdpr in a nutshell
 
Data Ethics Framework 2.pptx
Data Ethics Framework 2.pptxData Ethics Framework 2.pptx
Data Ethics Framework 2.pptx
 
pp_101_notes_eng.pdf
pp_101_notes_eng.pdfpp_101_notes_eng.pdf
pp_101_notes_eng.pdf
 
DMA - DPC Workshop - 23 October 2013
DMA - DPC Workshop - 23 October 2013DMA - DPC Workshop - 23 October 2013
DMA - DPC Workshop - 23 October 2013
 
Privacy Needs to be Personal
Privacy Needs to be PersonalPrivacy Needs to be Personal
Privacy Needs to be Personal
 
A BRIEF HISTORY OF US PRIVACY REGULATION ATTEMPTS
A BRIEF HISTORY OF US PRIVACY REGULATION ATTEMPTSA BRIEF HISTORY OF US PRIVACY REGULATION ATTEMPTS
A BRIEF HISTORY OF US PRIVACY REGULATION ATTEMPTS
 
Gdpr presentation
Gdpr presentationGdpr presentation
Gdpr presentation
 
Imac 2011
Imac 2011Imac 2011
Imac 2011
 
GDPR Breakfast Briefing for Business Advisors
GDPR Breakfast Briefing for Business AdvisorsGDPR Breakfast Briefing for Business Advisors
GDPR Breakfast Briefing for Business Advisors
 
General Data Protection Regulation
General Data Protection RegulationGeneral Data Protection Regulation
General Data Protection Regulation
 
Data protection training emea new joiners. mandatory quiz
Data protection training emea new joiners. mandatory quizData protection training emea new joiners. mandatory quiz
Data protection training emea new joiners. mandatory quiz
 
EU data protection and security update COCIR annual meeting 2016
EU data protection and security update COCIR annual meeting 2016EU data protection and security update COCIR annual meeting 2016
EU data protection and security update COCIR annual meeting 2016
 
GDPR Breakfast Briefing - For Business Owners, HR Directors, Marketing Direct...
GDPR Breakfast Briefing - For Business Owners, HR Directors, Marketing Direct...GDPR Breakfast Briefing - For Business Owners, HR Directors, Marketing Direct...
GDPR Breakfast Briefing - For Business Owners, HR Directors, Marketing Direct...
 
Gdpr presentation
Gdpr presentationGdpr presentation
Gdpr presentation
 

Más de PeterOwenje1 (13)

An Effective IT Staregy .pdf
An Effective IT Staregy .pdfAn Effective IT Staregy .pdf
An Effective IT Staregy .pdf
 
IT Alignment with Bus Strategy CSK IT Mgr Congress Pride inn 2022.pptx
IT Alignment with Bus Strategy CSK IT Mgr Congress Pride inn  2022.pptxIT Alignment with Bus Strategy CSK IT Mgr Congress Pride inn  2022.pptx
IT Alignment with Bus Strategy CSK IT Mgr Congress Pride inn 2022.pptx
 
Crafting a winning ICT Strategy .pptx
Crafting a winning ICT Strategy .pptxCrafting a winning ICT Strategy .pptx
Crafting a winning ICT Strategy .pptx
 
IT Networks and Vulnarabilities .pdf
IT Networks and Vulnarabilities .pdfIT Networks and Vulnarabilities .pdf
IT Networks and Vulnarabilities .pdf
 
Adaptive team leadrship.pptx
Adaptive team leadrship.pptxAdaptive team leadrship.pptx
Adaptive team leadrship.pptx
 
Digitalization of Goverment Services.pptx
Digitalization of Goverment Services.pptxDigitalization of Goverment Services.pptx
Digitalization of Goverment Services.pptx
 
Leadership Strategies.pptx
Leadership Strategies.pptxLeadership Strategies.pptx
Leadership Strategies.pptx
 
Mobile Device Management.pptx
Mobile Device Management.pptxMobile Device Management.pptx
Mobile Device Management.pptx
 
PIM Data Protection .pptx
PIM  Data Protection .pptxPIM  Data Protection .pptx
PIM Data Protection .pptx
 
PIM Data Protection .pptx
PIM  Data Protection .pptxPIM  Data Protection .pptx
PIM Data Protection .pptx
 
IT Govenence.pptx
IT Govenence.pptxIT Govenence.pptx
IT Govenence.pptx
 
ERP Presentation .pptx
  ERP Presentation .pptx  ERP Presentation .pptx
ERP Presentation .pptx
 
ERP Implementation.pptx
  ERP Implementation.pptx  ERP Implementation.pptx
ERP Implementation.pptx
 

Último

Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
vu2urc
 

Último (20)

presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
Developing An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilDeveloping An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of Brazil
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
Tech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdfTech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdf
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 

Data Protection Subjects.pdf

  • 1. DATA PROTECTION RIGHTS ,FOR DATA SUBJECTS CSK DATA PROTECTIONTRAINING FOR CHAMPIONS MONDAY 23 RD JAN 2023 Peter Owenje owenjep@gmail.com. + 254 722 714141
  • 2. • Under the Data Protection legislation, data subjects have the following rights with regards to their personal information: DATA PROTECTION: RIGHTS FOR DATA SUBJECTS __________________
  • 3. DATA PROTECTION: RIGHTS FOR DATA SUBJECTS ___________________________________________ • the right to be informed about the collection and the use of their personal data • the right to access personal data and supplementary information • the right to have inaccurate personal data rectified, or completed if it is incomplete • the right to erasure (to be forgotten) in certain circumstances • the right to restrict processing in certain circumstances • the right to data portability, which allows the data subject to obtain and reuse their personal data for their own purposes across different services
  • 4. DATA PROTECTION: RIGHTS FOR DATA SUBJECTS ___________________________________________ • the right to object to processing in certain circumstances • rights in relation to automated decision making and profiling • the right to withdraw consent at any time (where relevant) • the right to complain to the Information Commissioner
  • 5. • The organization or entity, must issue certain information about the processing activities that affect you. • This information is usually provided in a Privacy Notice or Privacy Statement that is made available at the point the data is collected. THE RIGHT TO BE INFORMED _________________________________
  • 6. • The Organization, as the data controller, must provide you with: • confirmation that your data is being processed • access to your personal data • other supplementary information THE RIGHT OF ACCESS _________________________________
  • 7. • You can ask the Organization to correct any personal information it holds about you to ensure your data is accurate. • You may also ask the Organization to complete incomplete data held about yourself. THE RIGHT TO RECTIFICATION _________________________________
  • 8. • You have the right to (under certain circumstances) ask for your personal data to be erased where: • your personal data is no longer necessary in relation to the purpose for which it was collected/processed • you withdraw your consent or object to the processing and there is no overriding legitimate interest to continue processing THE RIGHT TO ERASURE/BE FORGOTTEN _________________________________
  • 9. • you object to the processing and there are no overriding legitimate grounds for the processing • you object to the processing and your personal data was processed for direct marketing purposes • your personal data was unlawfully processed or should be erased to comply with a legal obligation • your personal data is processed in relation to the offer of information services, you are subscribed to and nothing else. THE RIGHT TO ERASURE/BE FORGOTTEN _________________________________
  • 10. • The Organization can refuse to erase your personal data where it is processed: • to comply with a legal obligation or for the performance of a task of public interest • for the exercise or defence of legal claims • for purposes relating to public health, archiving in the public interest, scientific/historic research or statistics If your data has been disclosed to a third party, the organization will ask them to erase that data, unless this proves impossible or involves disproportionate effort. You may ask who those third parties are and the Organization will inform you accordingly. THE RIGHT TO ERASURE/BE FORGOTTEN _________________________________
  • 11. You have the right to restrict the processing of personal data held by the Organization where: • you have contested its accuracy • you have objected to the processing and the Organization is considering whether they have a legitimate ground which overrides this • processing is unlawful • the Organization no longer needs the data but you require it to establish, exercise or defend a legal claim THE RIGHT TO RESTRICT PROCESSING _________________________________
  • 12. The right to data portability allows individuals to move, copy or transfer personal data easily from one IT environment to another in a safe and secure way, without hindrance to usability. This enables you to obtain and reuse your personal data across different services. The right to data portability only applies: • to personal data that an individual has personally provided to the Organization • where the processing is based on consent or the performance of a contract • where processing is carried by automated means (i.e. excluding paper files) THE RIGHT TO DATA PORTABILITY _________________________________
  • 13. You have the right to object to processing of your personal data in certain circumstances and have an absolute right to stop your data being used for direct marketing. You can also object if the processing is for: • a task carried out in the public interest • the exercise of official authority vested in the Organization • The Organization’s legitimate interests (or those of a third party) However, in these circumstances the right to object is not absolute and you must give specific reasons why you are objecting to the processing of your data. Please be aware that the Organization would be able to continue processing your personal data if: • we can demonstrate compelling legitimate grounds for the processing, which override the interests, rights and freedoms of the individual • the processing is for the establishment, exercise or defence of legal claims THE RIGHT TO OBJECT _________________________________
  • 14. Automated decision-making takes place when an electronic system uses personal information to make decisions without human intervention. The Organization could use automated decision-making in the following circumstances: • where we have notified you of the decision and given you 21 days to request a reconsideration • where it is necessary to perform the contract and appropriate measures are in place to safeguard your rights At present, there are no fully automated decision making or profiling systems in use within the Organization. This means that this right does not currently apply to any processing activities. RIGHTS RELATING TO AUTOMATED DECISION MAKING AND PROFILING _________________________________
  • 15. • The Organization must provide information on how to: • Contact them about your rights • How to make a complaint CONTACTING THE ORGANIZATION _________________________________