Is it mandatory to have a Privacy Compliance Officer for companies?

Is it mandatory to have a Privacy Compliance Officer for companies?
190228_legal_privay-compliance

In order to keep up with the workplace privacy issues & personal data processing, some companies may opt to engage a Privacy Compliance Officer (or Data Protection Officer) to oversee their data protection matters on an on-going basis. Is it mandatory due to the latest Personal Data (Privacy) Ordinance (PD(P)O) update?

Although the PD(P)O does not in any way make such a hiring mandatory for employers, responsibilities of this type of officer can vary widely depending on the power and role conferred upon him/her in an organization. Some officers may simply be confined to process data access and correction requests, while others may be charged with handling everything from the collection of employee data to the security of its transmission and storage, and policy implementation of Code of Practice on Human Resource Management(*).

It doesn't matter whether or not that person is specifically given the title of Privacy Compliance Officer anyone who has the authority to handle employee data would need to comply with the Code, or else be liable to contravene its requirements, possibly leading to a breach of the PD(P)O as well. If any breach was convicted,, he or she would be personally liable together with the employing company. "

Personal data protection during recruitment
That is to say,If there's no employer-employee relationship exists, a person who gathers data solely for the purpose of administering his/her personal and family affairs is generally exempt from the requirements of the Code/PD(P)O. However, there is no such exemption applicable in the educational context, she says.

Filing in a complaint to the Privacy Commissioner
Typically, a person can file a complaint to the office of the Privacy Commissioner in case of a contravention of the Code. In some cases, where, say, a data user has disclosed personal data of a data subject imparted to him in confidence, the PD(P)O entitles the aggrieved person to seek compensation for damage, even for injury to feelings.

Although non-compliance with the Code itself does not automatically considered as a breach of the PD(P)O, such non-compliance could be taken into account by the court or the Administrative Appeals Board as evidence in deciding whether the PD(P)O has been breached. However, that the decision will always depend on the circumstances of the case.

(*)The Code of Practice on Human Resources Management
The Code of Practice on Human Resource Management, which is based on the Personal Data (Privacy) Ordinance (PD(P)O), reiterates that Hong Kong employees have the right to be informed of the use of their personal data and to expect that the data is up-to-date, secure, and kept no longer than necessary,

It exemplifies the balances between employees' personal rights and employers' business interests, provided with practical examples to elaborate on a range of foreseeable circumstances where complicated issues concerning the use of employee data might arise and where the laws - i.e. the requirements of the PD(P)O - should be abided by in relation to human resource practices.

 

Disclaimer: This article serves as the provision of general information and reference only. It is not intended to be served or interpreted as any legal advice in any occasion, at any cost. Please seek professional help if you have any relevant legal issue.

⏩⏩  需要請人?立即刊登招聘廣告!  ⏪⏪

Advertisement

Look out for further updates on our Facebook fan page!

Related Articles

  • 【eMPF積金易懶人包】甚麼是積金易?現有強積金計劃成員一定要登記加入嗎?需要繳付費用嗎?如何更改供款指示?簡單3步驟完成註冊 附強積金計劃及受託人加入積金易平台時間表

  • 【Z世代】Z世代是最難合作的一代?破除對Z世代的4大迷思 有助加強世代合作

  • 【面試最後問題】見工最後問咩問題好?問呢22個問題獲聘機會高!

  • AI賦能HR 重塑人才管理新格局

  • 職場AI時代:掌握生成式AI商業應用 提高營運效率和競爭力

  • Play 4 Performance「玩出成效」 企業培訓遊戲化 裝備員工未來技能 提高ESG意識

  • 【人力資源丨行業術語大全】「418」、「HRBP」你識幾多?15大面試、返工必學HR術語一覽!

  • 【個人私隱】HR新人睇晒全公司同事地址人工資料 仲要周圍同人講!出賣同事資料有冇違反法例?

  • 【見工面畀私人資料?|私隱專員公署查詢詳情】見工似「查家宅」被要求提供私人資料 HR教︰求職者可咁樣講 (內附公司要求檢查員工手機、閉路電視監控員工、隨意給予客戶私人電話等有否觸反法例詳情)

  • 【個人私隱|返工最癲做過乜?】公司得返自己 打工仔自爆曾全裸吹冷氣 網民:冇cam咩?

Jobs You Maybe Interested In

刊登招聘廣告
;
Follow CTgoodjobs for the latest career news, hot topics and recommended jobs!
Maybe Later Follow