DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Office of the Privacy Commissioner for Bermuda Issues Data Breach Guide

Posted on September 16, 2021 by Dissent

Odia Kagan of Fox Rothschild writes:

The Office of the Privacy Commissioner for Bermuda has issued a helpful guide on the various types of harm that could be caused by a data breach.

The office also referred to the Future of Privacy Forum research on potential harms.

Read more here,

In their guidance, the Bermuda privacy commissioner’s office writes, in part:

PIPA section 44(3)(g), authorises the Commissioner to order an organisation that has suffered a breach of security “to provide specific information to persons in the event of a breach [of security] which is likely to cause significant harm to individuals.” [Emphasis added]

PIPA sections 47(1)(a) and (b) state that a person commits an office – or, in other words, is breaking the law – if they use, authorise use of, or gain access to personal information “in a manner that is inconsistent with this Act and is likely to cause harm to an individual or individuals.” [Emphasis added]

The guidance then goes on to describe different kinds of harms, drawing up on the scholarly typology of harms by  Daniel Solove and Danielle Citron and a categorical framework provided by Future of Privacy Forum (FPF).

It is so great to see thoughtful scholarly and advocacy work having an impact on a country’s approach to privacy and breach notification.

Category: Commentaries and AnalysesFederalLegislationNon-U.S.Of Note

Post navigation

← T-Mobile, customers diverge on forum to transfer data breach suits
Airport Store Operator Negligence Caused Huge Damages in 2020 Hack, Class Action Lawsuit Alleges →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Alleged Geisinger hacker will defend himself pro se.
  • Tallahassee Memorial Healthcare reveals it was also impacted by Cerner/Legacy Oracle cyberattack
  • Hospital cyberattack investigation complete, no formal review needed
  • Largest Ever Seizure of Funds Related to Crypto Confidence Scams
  • IMPACT: 170 patients harmed as a result of Qilin’s ransomware attack on NHS vendor Synnovis
  • DOJ’s Data Security Program: Key Compliance Considerations for Impacted Entities
  • UBS reports data leak after cyber attack on provider, client data unaffected
  • Scania confirms insurance claim data breach in extortion attempt
  • Cybersecurity takes a big hit in new Trump executive order
  • Episource notifying 5.4 million patients of cyberattack in January

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • DOJ’s Data Security Program: Key Compliance Considerations for Impacted Entities
  • 23andMe fined £2.31 million for failing to protect UK users’ genetic data
  • DOJ Seeks More Time on Tower Dumps
  • Your household smart products must respect your privacy – including your air fryer
  • Vermont signs Kids Code into law, faces legal challenges
  • Data Categories and Surveillance Pricing: Ferguson’s Nuanced Approach to Privacy Innovation
  • Anne Wojcicki Wins Bidding for 23andMe

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.
Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report