Privacy Digest

News that can impact your privacy.
Login/Register
What is OpenID?
  • Log in using OpenID
  • Cancel OpenID login
  • Create new account
  • Request new password
Home Blogs MacRonin's blog
    • FAQ
    • Wishlists
    • Contact
    • Categories/RSS

Bookmark Us

Bookmark Privacy Digest 
Bookmark This Page 

Syndicate

Syndicate content
more

Advertisements

Tracking System
Tracking System
Private Detectives
Quality Security Services in California
Fleet Management
Hosting

Popular content

Last viewed:

  • Do We Need a New National Security Court? [WCL American U.]
  • Are Personal Copies of Digital Music Files "Unauthorized" or Not?
  • Obama Issues Limits on ‘State Secrets Privilege’
  • Zeus botnet dealt a blow as ISP Troyak knocked out
  • Redbox, Movie Studios, and Subversion of First Sale
  • Ohio data theft deepens - Stolen device has information on 1.1 million people and businesses
  • Free Speech and Net Neutrality: Separating Fact from Fiction

tags in Topics

Activists Alert Anonymity Companies Congress Copyright Court (US) Databases Data Mining Editorial EFF Entertainment Exploits Fourth Amendment Government Hmmm ID Infrastructure Law Enforcement Laws Politics Privacy Remember Reports Rights Security Spin Zone Surveillance Telecommunications Tracking
more tags

View blog authority
Congressional Research
Broadcast Flag

Considering Privacy in the Data Storage Cloud While in Sunny Madrid

Submitted by MacRonin on November 10, 2009 - 6:35pm
  • Activists
  • CDT
  • Companies
  • Databases
  • Editorial
  • Hmmm
  • Infrastructure
  • Privacy
  • Remember
  • Security
  • Standards
  • World

Considering the Cloud in Sunny Madrid: Via CDT - PolicyBeta.

Last week, I attended the 31st International Conference of Data Protection and Privacy Commissioners in Madrid. Government data privacy officials representing 46 countries were there, as well as hundreds of lawyers, corporate privacy officers and advocates from around the globe.

There were plenary sessions and panels on every possible privacy issue but at the center of much of the discussion were the complex and seemingly unanswerable questions about global data flows in an era of cloud computing: What is the right way to protect privacy in an Internet cloud where data flows don’t respect borders? When consumers from around the world place their data in a social networking site based in the United States, which data protection laws should apply? Who should be accountable for data privacy and security when data is collected by one entity and then stored with cloud providers offering storage, processing and software as a service? When those cloud providers move data from server to server, often in multiple jurisdictions, which data protection rules apply and which country may assert jurisdiction over the data when other substantive legal questions arise?

Even in the European Union, where the data controller remains accountable for privacy and security pursuant to the European Data Protection Directive, there is a growing consensus that the Directive’s underlying assumption that data has a fixed location is making the Directive increasingly difficult to apply. There seems to be a growing agreement that there needs to be some international standards or binding instrument that will help to reconcile conflicting data protection regimes.

With this background, the main order of business at the closed session of the data protection commissioners was to consider and adopt the resolution “International Standards on the Protection of Personal Data and Privacy,” which some would like to constitute as the basis for a binding international agreement on data privacy; just this morning an English translation of the final resolution went online. Peter Hustinx, the European Data Protection Supervisor, made clear in remarks at an earlier panel that the document was not intended to address the question of which law applied to data as it moved from one country to another, but rather would define a set of principles and rights that would guarantee the effective and internationally uniform protection of privacy and facilitate the international flows of personal data needed in a globalized world. But there appears to be considerable disagreement as to what such standards will mean in practice. According to the Spanish data commissioner who led the effort, the standards are “soft law” intended to guide the development of privacy protections in countries without protection and build consensus toward a future binding agreement.

However, many others have expressed doubt that such an agreement is either possible or appropriate. And some have criticized the standards as too closely aligned with the European Directive rather than taking the best from other data protection frameworks. In any event, it’s an important start to a needed conversation.

Read Original Article:(Via CDT - PolicyBeta.)

Bookmark/Search this post with:
  • Twitter Twitter
  • Digg Digg
  • StumbleUpon StumbleUpon
  • Technorati Technorati
  • del.icio.us del.icio.us
  • Facebook Facebook
  • Furl Furl
  • LinkedIn LinkedIn
  • Yahoo Yahoo
  • MacRonin's blog
  • Add new comment

Recent blog posts

  • FBI Hoaxes Boost Online Fraud
  • NetFlix Cancels Recommendation Contest After Privacy Lawsuit
  • Advertising - Instant Ads Set the Pace on the Web
  • Best Practices for Government Datasets: Wrap-Up
  • TJX Hacking Conspirator Gets 4 Years
  • The Beginning of the End of Data Retention
  • Wanted: Trust Detector
  • Wikibooks Cryptography Textbook
  • Feds: TSA Worker Tried to Sabotage Terror Database
  • Hi-tech governments growing keener on snooping, says report
more

Performancing Metrics

Compilation © Copyright 1997-2010 Paul Hardwick, with Web Hosting provided by MacRonin.com.