Privacy Matters Now – Second Quarter 2011

Subscribe to our email list

In this issue:

    • Privacy Matters Now
    • Firm News

 

Privacy Matters Now

For the past year, we have been advising clients to review their privacy policies and procedures as the time has been coming where the standards of data protection and accountability will increase. That time has arrived. “Privacy by Design,” a concept developed by our Canadian friends up north, has become the mantra for making the protection of personally identifiable information (“PII”) part of the integral operation of a business. Last week, Senator John Kerry announced that he will be introducing privacy legislation, the “Commercial Privacy Bill of Rights Act of 2011,” for Senate approval. Materially, the proposed Act expands the definition of information that is covered and provides the Federal Trade Commission (the “FTC”) with rulemaking and enforcement authority. Thus, businesses that are covered by the Act will face severe penalties for failure to comply.

The Act defines the information that is covered as PII as well as “unique identifier information” (“UII”) and “any information collection in connection with PII or UII that may be used to identify an individual.” This broad definition includes geographical addresses, email addresses that include the name of the individual (i.e. john.smith@mymail.com), personal telephone numbers, and credit card numbers. Additionally, and as is significant for any business that conducts online marketing or business, unique personal identifiers such as cookies, user ID’s, processor serial numbers or device serial numbers, if used to identify a specific individual, as well as biometric data (fingerprints and retinal scans), birth dates, and places of birth, are all considered to be covered information under the Act. Evidently, almost all information that is normally collected by a business that sells to consumers will be covered by the Act.

The Act will apply to “covered entities,” which are defined as “any person that collects, uses, transfers or maintains covered information concerning more than 5,000 individuals during any consecutive 12 month period.” It requires opt-in and opt-out options for specific types of transactions, reasonable access by individuals to their “covered information,” and limits access of third parties to “covered information” unless the individual has agreed to permit such access.

Finally, the FTC has been granted the right to issue rules on enforcement and to issue monetary penalties of up to $3 million, depending on the nature of the violation. Enforcement will be by state attorneys general, as well as by the FTC. Clearly, the government is not messing around.

The time has come for all business which collects consumer information to take privacy seriously, and to be proactive. The old adage of “an ounce of prevention is worth a pound of cure” definitely applies!

Firm News

OlenderFeldman LLP is pleased to announce that Michael J. Feldman is now a Certified Information Privacy Professional (“CIPP”) by the International Association of Privacy Professionals (“IAPP”). The IAPP is widely recognized as the leading association of privacy professionals, and Michael’s certification will bolster our services that focus on data privacy and information security issues. Our Firm can help clients (i) determine where they collect data and what types of data they maintain; (ii) develop compliance programs to mitigate risks associated with maintaining that data; (iii) respond to actual or alleged security breaches; (iv) defend against administrative or private actions, lawsuits, or claims associated with alleged non-compliance; and (v) enforce our clients’ rights with respect to alleged breaches of security and data management by outsourced vendors.

OlenderFeldman LLP and Acentris LLC will be participating in the Seventh Annual Internet Retailer Conference & Exhibition (“IRCE”) June 14th – June 17th in San Diego www.irce.com. IRCE is the world’s largest e-Commerce event, and Kurt D. Olender will be speaking on data privacy and compliance.

Be Sociable, Share!

OLENDERFELDMAN LLP IN THE NEWS

Cyberattacks On Credit-Card Systems Rise (Crains New York, 5/1/2013)

Warning: Your Small Business May Have Already Been Hacked (Yahoo! Small Business, 4/25/2013)

Will my Husband's Business Card Debt Hurt my Credit After Divorce? (Fox Business, 4/25/2013)

What Are Your Rights As A Photographer? (TechHive, 4/13/2013)

Will Lawmakers Ban Google Glass? (Fox News, 3/27/2013)

Patent Trolls Pursue Midsize Companies (Information Week, 2/5/2013)

When Should You Provide Your Social Security Number? (State Farm's Fast Tracks, November, 2012)

Q&A: Protecting Your Name and Logo (Fox Business News, 7/23/2012)

E-Discovery: Your Data, Their Cloud, and the Law (HP.com, 7/2/2012)

How To Keep Your Facebook Profile Private Yet Usable (ReadWriteWeb.com, 6/29/2012)

Don't be Stupid With an Unwanted Smartphone (Fox Business News, 6/26/2012)

Is it safe to ditch your old smartphone? (Bankrate.com, 6/26/2012)

Big Brother Is Watching: Why Social Media Policies Make Good Business Sense (Workforce.com, 6/21/2012)

Five Things Every Social Media Policy Should Do (Workforce.com, 6/21/2012)

Experts: Do-Not-Track Proposal is Lacking (ReadWriteWeb, 6/4/2012)

Shopping Around Too Tiring? Use Smartphone (Fox Business News, 5/30/2012)

Smartphone shopping apps save time, money (Bankrate.com, 5/30/2012)

Are Frequent Shopper Cards Compromising Your Privacy? (YourSecurityResource.com, 5/9/2012)

Attorney: Judge’s landmark Facebook ruling means ‘Big employer is watching’ (RawStory.com, 5/9/2012)

Pondering Google Drive: Who owns your data in the cloud? (Techworld, 5/7/2012)

Google Drive Begs the Question: Who Owns Your Data in the Cloud? (CIO.com, 5/3/2012)

What Concerns Do Mobile Devices Present for Hedge Fund Managers, and How Should Those Concerns Be Addressed? (Part Three of Three) (Hedge Fund Law Report, 4/26/2012)

What Concerns Do Mobile Devices Present for Hedge Fund Managers, and How Should Those Concerns Be Addressed? (Part Two of Three) (Hedge Fund Law Report, 4/19/2012)

What Concerns Do Mobile Devices Present for Hedge Fund Managers, and How Should Those Concerns Be Addressed? (Part One of Three) (Hedge Fund Law Report, 4/12/2012)

RFID Technology Conjures 'Big Brother' Fears over Privacy (Rigzone, 2/6/2012)

How Pinterest Uses Your Content Without Violating Copyright Laws (ReadWriteWeb, 1/31/2012)

Vast Scope of Chanel Counterfeit Ruling May Render It Useless (TechNewsWorld, 12/1/2011)

Making money off your mistakes:' Meet the creator of 'stalker porn' (The Globe and Mail, 11/11/2011)

The Man Who Makes Money Publishing Your Nude Pics (The Awl, 11/10/2011)

Lawyers on IMDB suit: 'It's going to be an uphill fight' (Entertainment Weekly, 10/19/2011)