Privacy Profile References FINAL
Privacy Profile References FINAL
Association (SIA)
Privacy Profile References
GDPR References for Physical Security & Identity in the U.S.1
California.............................................................................................................................................. 8
Privacy Journal.................................................................................................................................... 8
Europe
EU......................................................................................................................................................... 8
ePrivacy Directive......................................................................................................................... 8
Incorporation of the GDPR Into the European Economic Area (EEA) Agreement.................. 9
International
International Standards Organization (ISO)..................................................................................... 9
United Kingdom
Data Protection Act (2018).................................................................................................................. 9
ICO Resources............................................................................................................................. 10
Guide to 12 Principles................................................................................................................ 10
CCTV Checklist............................................................................................................................ 10
Brent............................................................................................................................................ 10
Self-Assessment Tools...................................................................................................................... 11
Body-Worn Video........................................................................................................................ 11
Cloud
ISO 27018........................................................................................................................................... 12
STAR Certification...................................................................................................................... 12
Guides
International Association of Privacy Professionals (IAPP)............................................................. 13
Axis..................................................................................................................................................... 13
Hardening Guide......................................................................................................................... 13
University of Michigan..................................................................................................................... 14
Additional Resources
National Institute of Standards & Technology (NIST).................................................................... 14
Cybersecurity Framework.......................................................................................................... 14
Cornell University............................................................................................................................. 14
Home Page.................................................................................................................................. 15
Members List.............................................................................................................................. 15
Privacy Principles.............................................................................................................................. 15
Codes of Practice............................................................................................................................... 15
City of Perth................................................................................................................................ 15
Blogs.................................................................................................................................................. 16
New California Privacy Law to Affect More Tthan Half a Million U.S. Companies................ 16
Privacy Journal
U.S. Privacy Laws by State
http://www.privacyjournal.net/_center_compilation_of_state_and_federal_privacy_laws__
center__3077.htm
Europe
EU
The General Data Protection Regulation (GDPR)
https://ec.europa.eu/info/files/regulation-eu-2016-679-protection-natural-persons-regard-process-
ing-personal-data-and-free-movement-such-data_en
Council of Europe: The Convention for the Protection of Individuals With Regard to Automatic
Processing of Personal Data (CETS No. 108)
https://www.coe.int/en/web/data-protection/convention108-and-protocol
ePrivacy Directive
https://eur-lex.europa.eu/legal-content/EN/TXT/PDF/?uri=CELEX:52017PC0010&from=EN
Judgment in Case C-131/12 Google Spain SL, Google Inc. v Agencia Española de Protección de Datos
https://curia.europa.eu/jcms/upload/docs/application/pdf/2014-05/cp140070en.pdf
International
International Standards Organization (ISO)
ISO 27001 Information Security Management
https://www.iso.org/isoiec-27001-information-security.html
United Kingdom
UK
Data Protection Act (2018)
http://www.legislation.gov.uk/ukpga/2018/12/pdfs/ukpga_20180012_en.pdf
The Privacy and Electronic Communications (EC Directive) (Amendment) Regulations (2011)
http://www.legislation.gov.uk/uksi/2011/1208/pdfs/uksi_20111208_en.pdf
Guide to 12 Principles
https://assets.publishing.service.gov.uk/government/uploads/system/uploads/attachment_data/
file/409290/12_principles_diagram_v3.pdf
UK Surveillance Commissioner
Surveillance Camera Code of Practice
https://www.gov.uk/government/uploads/system/uploads/attachment_data/file/282774/Surveil-
lanceCameraCodePractice.pdf
CCTV Checklist
https://ico.org.uk/for-organisations/resources-and-support/data-protection-self-assessment/
cctv-checklist/ (OpenConsent Spreadsheet Checklist version available upon request)
Brent
https://www.brent.gov.uk/media/16409819/cctv_scc-brent-part-2-pia-v16.pdf
Self-Assessment Tools
Automatic Number Plate Recognition
https://www.gov.uk/government/uploads/system/uploads/attachment_data/file/561633/ANPR_
SAT.pdf
Body-Worn Video
https://www.gov.uk/government/uploads/system/uploads/attachment_data/file/549594/SAT_
BWV.pdf
BSIA Planning, Design, Installation and Operation of CCTV Surveillance Systems Code of Prac-
tice and Associated Guidance
https://www.bsia.co.uk/Portals/4/Publications/109-installation-cctv-systems.pdf
Cloud
ISO 27018
Protection of Personally Identifiable Information in Cloud
https://www.iso.org/standard/61498.html
STAR Certification
https://cloudsecurityalliance.org/star/certification/#_overview
Guides
International Association of Privacy Professionals (IAPP)
GDPR Awareness Guide
https://iapp.org/media/pdf/resource_center/GDPR_AWARENESS_GUIDE._092717.pdf
Microsoft
GDPR Assessment Guide
https://assessment.microsoft.com/gdpr-compliance
Axis
Camera Hardening Guide
https://www.axis.com/files/manuals/gd_hardening_guide_70424_en_1704_lo.pdf
Additional Resources
National Institute of Standards & Technology (NIST)
Cybersecurity Framework
https://www.nist.gov/cyberframework/framework
Security and Privacy Controls for Information Systems and Organizations (SP 800-53 Rev.5
(DRAFT)
https://csrc.nist.gov/publications/detail/sp/800-53/rev-5/draft
Cornell University
Responsible Use of Video Surveillance Systems POLICY 8.1; Volume: 8, Risk Management and
Public Safety Chapter:1, Issued: April 2, 2009 Last updated: June 12, 2018
http://www.dfa.cornell.edu/sites/default/files/policy/vol8_1_0.pdf
Members List
https://icdppc.org/participation-in-the-conference/list-of-accredited-members/
Privacy Principles
Fair Information Practice Principles (FIPPs)
https://www.ftc.gov/reports/privacy-online-fair-information-practices-electronic-marketplace-fed-
eral-trade-commission
OECD Guidelines on the Protection of Privacy and the Transborder Flows of Personal Data
http://www.oecd.org/sti/ieconomy/oecdguidelinesontheprotectionofprivacyandtransborderflow-
sofpersonaldata.htm
Codes of Practice
Australian Security Industry Association Limited
CCTV Code of Ethics
https://www.asial.com.au/resources/cctv-code-of-ethics
City of Perth
CTV Surveillance Operations Code of Practice
https://www.perth.wa.gov.au/sites/default/files/documents/cctv%20code%20of%20practice.pdf
New California Privacy Law to Affect More Than Half a Million U.S. Companies
https://iapp.org/news/a/new-california-privacy-law-to-affect-more-than-half-a-million-us-companies/