Week1: Law & Data Privacy Flashcards

Structure of U.S. Law (6-9) Enforcement of Laws (3-5) Introduction to Privacy (Self-Study)

1
Q

What are the 3 Branches of the U.S. Government? & What is the role of each branch?

A

Executive Branch
Enforces laws
President, Vice President, Cabinet and Federal Agencies

Legislative Branch
Makes laws
Congress (house of representatives and senate)

Judicial Branch
Interprets the law (determines if constitutional)
Federal courts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are SOURCES of law?

A
U.S. Constitution 
State Constitutions 
Legislation 
Regulations and Rules
Common Law/Case Law 
Contract Law
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the Supreme Law in the United States?

A

The U.S. Constitution

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Where is the word “Privacy” mentioned in the U.S. Constitution?

A

The word Privacy is NOT mentioned in the U.S. Constitution

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is legislation?

A

Laws passed by federal and state legislatures.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is Common or Case Law?

A

Final decisions by judges in court cases.

Judges look at precedent (past decisions) to decide how to rule in a new case that is consistent with these past decisions.

Laws/Precedents change, as technological and societal values evolve over time

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is required to have an enforceable (legally binding) contract?

A

Offer (terms of the agreement)

Acceptance (by the person to whom the offer was made), and

Consideration (bargained for exchange (e.g., money, property or services)).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Does the U.S. Constitution always override the State Constitution?

A

No, State Constitutions can create stronger rights than those provided by the U.S. Constitution

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Do Federal Laws always override State Laws?

A

No, State Legislation may be stricter than national legislation. Federal law only override less strict state laws.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Who issues Regulations and Rules?

A

Regulations and Rules are issued by regulatory agencies (e.g., FTC and FCC) placing compliance expectations on industries

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What AMENDMENTS to the United States Constitution have been interpreted to provide privacy protection?

A
3rd Amendment (Soldiers Quartered)
4th Amendment (Search and Seizure)
5th Amendment (Self-Incrimination)
14th Amendment (Due Process)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is Jurisdiction?

A

The authority of a court to hear a particular case

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is the legal definition of “Person?”

A

Any entity with legal rights including:
Individuals (natural persons)
Corporations (legal person)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is “Preemption?”

A

A superior government’s ability to have its laws supersede those of an inferior government

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is a “Private Right of Action?”

A

The ability of an individual harmed by a violation of a law to file a lawsuit against the violator

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What are the roles and responsibilities of the Federal Trade Commission (FTC)?

A

General Authority to enforce rules against unfair and deceptive trade practices (including the power to bring deception enforcement actions where an organization has broken a privacy promise)
Statutory Responsibility for issues such as children’s online privacy and commercial email marketing.
Instrumental in developing U.S. privacy standards.

17
Q

What are the roles and responsibilities of the Federal Communications Commission (FCC)?

A

Places significant compliance regulations on and governs the communications industry, such as television, radio, and telemarketing, and more recently, with online marketing developing such laws as the Telemarketing Sales Rule and Controlling the Assault of Non-Solicited Pornography and Marketing Act (CAN-SPAM Act).

Along with the FTC, the FCC also enforces privacy laws.

18
Q

What are the roles and responsibilities of the Department of Commerce (DoC)?

A

Leading role in federal privacy policy development
Administers the Privacy Shield Framework between the United States and the EU.
The DOC works along with the FTC on the enforcement of privacy and security standards set by organizations, particularly with those having privacy self-regulatory programs.

19
Q

What are the roles and responsibilities of the Department of Health & Human Services (HHS)?

A

Creates regulations to protect the privacy and security of healthcare information.
Responsible for enforcing HIPAA laws.
The HHS shares rule-making and enforcement power with the FTC for data breaches related to medical records under the Health Information Technology for Economic and Clinical Health (HITECH) Act.

20
Q

What are the roles and responsibilities of the two agencies responsible for regulating the Banking Industry?

A

Federal Reserve Board
Responsible for enforcing provisions of specific federal financial regulatory mandates, such as the Gramm-Leach-Biley Act (or GLBA).
Consumer Financial Protection Bureau An independent bureau under the Federal Reserve, has rule-making authority for laws related to financial privacy and oversees the relationship between consumers and financial product and service providers

Office of the Comptroller of the Currency (OCC)
Independent bureau of the U.S. Department of Treasury.
Regulates and supervises all national and federal banks and savings institutions, including agencies of foreign banks.
Ensures fair access to financial services and compliance with financial privacy laws and regulations.

21
Q

What are the roles and responsibilities of the State Attorney Generals?

A

Chief legal advisor to the state government
State’s chief law enforcement officer. They may take enforcement action on a state’s unfair and deceptive practice law, HIPAA, GLBA, the Telemarketing Sales Rule and violations of breach notification laws

22
Q

What are Self- Regulatory Programs?

A

Organizations monitor privacy through internal privacy practices, frameworks/guidelines, policies and procedures created and monitored by industry groups.
Government agencies, such as the FTC, may be involved in enforcement and adjudication

23
Q

What are Trust Marks?

A

Images or logos of third party seal and certification programs that are displayed on websites to indicate that a business is a member of a professional organization or to show that it has adopted the guidelines of a program and passed a security and privacy test.
Designed to give customers confidence that they can safely engage in e-commerce transactions.

Examples include TrustArc, Norton, the Better Business Bureau, and EU-U.S. Privacy Shield

24
Q

What is Criminal Liability?

A

Court proceedings for criminal prosecution
Initiated by: Government
Burden of Proof: Beyond a Reasonable Doubt
Remedy: Fines, restitution, incarceration or death
Sources of Law: Constitutions, laws and regulations

25
Q

What is Civil Liability?

A

Disputes between individuals or organizations
Plaintiff (Private Party or Government) sues a Defendant to address a wrong
Burden of Proof: Preponderance of evidence
Remedy: Monetary Compensation or Injunctions

26
Q

What is Administrative Enforcement?

A
Adjudication by an agency
Initiated by Agency (e.g., FTC) 
Burden of Proof: Burden of Persuasion
Remedy: Actions and Fines
Sources of Law: Statutes that create agency governance
27
Q

What is a Consent Decree?

A

An Agreement between the Government Agency and offending party requiring the offending party to do a specific actions and/or pay a fine.

28
Q

Privacy Enforcement

What are the sources of law for legal liability in civil litigation?

A

Tort
Contract
Common law

29
Q

What is a Tort?

A

A tort is a civil wrong recognized by law as having the grounds for lawsuits.
The primary goal for the lawsuit is to provide relief for damages incurred and deter others from committing the same wrongs.

30
Q

What are the three general categories of a Tort and a description of each?

A

Intentional
Defendant knew or should have known that their action or inaction would cause harm

Negligent
Absence of failure to exercise proper or ordinary care. Defendant’s actions are unreasonably careless or unsafe.

Strict Liability
Defendant has legal responsibility for damages or injury even if they are not negligent or at fault (e.g. product liability)

31
Q

What are other categories of legal liability (stemming from obligations under the law) and their descriptions other than a tort?

A

Breach of Warranty
Failure of a seller to fulfill the terms of a promise, claim or representation

Misrepresentation
False statements about a particular product or service

Defamation
Untruth about another that will harm the reputation of the person or organization defamed by libel (written defamation) or slander (oral defamation)

Statutory Actions

32
Q

What federal agencies (other than those previously discussed) are responsible for enforcing or providing guidance on privacy laws and regulations?

A

Department of Homeland Security::
E-Verify Program
Rules for air traveler records (TSA)
Immigration and other border issues (Immigration and Customs Enforcement)
State Department::
Negotiates internationally with other countries on privacy issues and in multinational groups
Office for Civil Rights (HHS)::
Role in enforcing HIPAA rules
Department of Transportation::
Transportation Companies
Drones (FAA)
Internet-connected cars (National Highway Traffic Safety Administration)
Internal Revenue Service::
Privacy rules concerning tax records
Office of Management and Budget::
Interpretation of the Privacy Act of 1974
Guidance to federal agencies and their contractors

33
Q

How do states enforce privacy laws and regulations?

A

State Attorney Generals
enforce laws/statutes and
unfair and deceptive practices (e.g., inadequate data protection and security capabilities)

34
Q

What supports cross-border enforcement?

A

Cooperation between enforcement agencies, organizations and governments in more than one country/jurisdiction

OECD (Organization for Economic Cooperation and Development) - in 2007, adopted recommendations on cross-border cooperation in enforcement of laws protecting privacy

GPEN (Global Privacy Enforcement Network) – created in response to OECD recommendations. Aims to promote cross-border information sharing as well as investigation and enforcement cooperation among privacy authorities around the world.

APEC (Asia Pacific Economic Cooperation) CPEA (Cross Border Privacy Enforcement Arrangement) – share information and evidence in cross-border investigations and enforcement actions in the Asia-Pacific region.