ISO 22307 Financial Services Privacy Impact Assessment Program

Description

Program Overview:

Rapid advances in computer systems and networking allow financial institutions to record, store, and retrieve vast amounts of consumer data with more speed and efficiency than ever before.

These advances enable financial services companies to acquire and process consumer data in ways that were previously out of reach to many due to the cost or to the specialized knowledge and training necessary to build and use these technologies.

Advanced data processing, storage, collection, and retrieval technology is now available to all sectors of business and government.

These capabilities raise concerns about the privacy of individuals in these large networked information technology environments. Furthermore, regulated industries such as financial services, law, and policy now place additional conditions on how personal information is collected, stored, shared and used.

The financial services community recognizes how important it is to protect and not abuse their customers’ privacy, not just because it is required by law, but also because as systems are developed or updated, there is an opportunity to enhance business processes and to provide improved services to customers.

In this course, we will explore the requirements set forth by ISO 22307:2008 on how Financial Services should conduct its Privacy Impact Assessment

 

Learning Objectives of the Program:

• Describes the privacy impact assessment activity in general

• Defines the common and required components of a privacy impact assessment, regardless of business systems affecting financial institutions, and

• Provides informative guidance to educate the reader on privacy impact assessments.

• Provides and understanding of the processes involved in a impact assessment

 

Program Structure and Outline

STRUCTURE:

Presentation materials, Video, Case Scenarios, Exercises

 

OUTLINE:

Overview

• Importance of Data Protection

• RA 10173 Brief

• Emerging Risks in Data Protection

Clause 1: SCOPE

Clause 2: Normative References 

Clause 3: Terms and Definitions 

Clause 4: Abbreviations Clause

Clause 5: PIA Requirements

• Overview of PIA Requirements

• PIA General Process Requirements

• PIA Specific Financial Process Requirements

Annex A: PIA FAQ’s

• General

• FAQ’s specific to Financial PIA Requirements

Annex B: Determination of PIA Starting Point

Annex C: Questionnaire for PIA Objectives (Checklist)

Annex D: Questionnaire for PIA Procedures

Annex E: Questionnaire on the adequacy of Internal Controls & Procedures

Annex F: PIA Questionnaire for assessing privacy impacts for retail financial systems

1. F1: General

2. F2: Basic Areas for Financial Institutions

 

Speaker:

Mr. Kama Neson Ganeson

Trainer and Consultant

 

Schedule:

May 3, 2024 (Friday)

9:00 AM – 5:00 PM

 

Training Fee:

Member Institution – P 2,800.00

Non-Member Institution – P 3,920.00

**VAT inclusive

REGISTER HERE!