Wendy J. Wagner
Cochef, groupe national Cybersécurité et protection des données; chef, Commerce international et douanes
Canada’s Privacy Commissioner Daniel Therrien released his Privacy Act Annual Report to Parliament on December 10. The report highlighted the results of an audit of the management of portable storage devices and reported data breaches by 17 federal agencies.
Federal institutions reported a record-high number of data breaches – 256 incidents were reported in 2014-2015, up from 228 reported the year before. The main cause of the data breaches was accidental disclosure. Examples include incidents in which Health Canada mailed letters to over 41,000 people showing their names in conjunction with the medical marijuana access program, and the Canada Revenue Agency accidentally sent the personal financial information of over 1,000 people to a journalist.
The Commissioner urged the agencies to increase their vigilance and implement more effective safeguard and control measures to protect the personal information of Canadians. The Commissioner’s recommendations, which the federal agencies agreed to accept and address, included:
This was the first year in which federal institutions were required to report data breaches, as compared to the previous voluntary reporting regime. It is important to note that the mandatory breach notification regime will soon be coming to the private sector. The relevant Digital Privacy Act amendments to the Personal Information Protection and Electronic Documents Act (PIPEDA) are expected to come into effect as soon as the government issues corresponding regulations that are currently being drafted.
CECI NE CONSTITUE PAS UN AVIS JURIDIQUE. L'information qui est présentée dans le site Web sous quelque forme que ce soit est fournie à titre informatif uniquement. Elle ne constitue pas un avis juridique et ne devrait pas être interprétée comme tel. Aucun utilisateur ne devrait prendre ou négliger de prendre des décisions en se fiant uniquement à ces renseignements, ni ignorer les conseils juridiques d'un professionnel ou tarder à consulter un professionnel sur la base de ce qu'il a lu dans ce site Web. Les professionnels de Gowling WLG seront heureux de discuter avec l'utilisateur des différentes options possibles concernant certaines questions juridiques précises.