Part 3 Flashcards

(21 cards)

1
Q

CO’s PCUDIP

A

Protecting Consumers from Unfair Discrimination Insurance Practice Regulation

  • requires life insurers who use AI model to have a governing structure
  • requires covered life insurers to submit annual report to CO Division of Insurance that summarizes compliance with regulation’s requirements and list each individual responsible for insuring
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

FTC vs FCC

A

FTC:
- regulating and enforcement experience to best ensure net neutrality (mostly telecom)
- regulate ads and consumer protection
- ensure competition market through antitrust law
- issue administrative complaints, relief, develop rules, enforce international laws like Data Privacy Framework

FCC:
- oversight over internet service providers (basically every other market)
- oversees TV and radio communications
- fines, mediation, settlement, formal complaints

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Communications Decency Act of 1996

A

Title V of Telecoms Act

  • meant to regulate indecency and obscenity in cyberspace
  • no publisher of interactive computer service will be treated as publisher of any information provided by another info content provider

“Good Samaritan” protection from civil liability for websites that remove/restrict “offensive” 3rd party content from their sites

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Individual Rights under HIPAA

A
  • corrections
  • notifications on how HI is used/shared
  • permissions (individuals can choose how used/shared)
  • request restrictions on how HI is used/disclosed
  • request REPORT on why/when HI is used/disclosed
  • file complaints with provider/ health insurer or office of civil rights if they believe the rights are violated
  • portability of health coverage, continuous coverage between jobs, coverage of employees with preexisting conditions
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Entities the FTC does NOT regulate

A

banks, insurance companies, non-profits, transportation, communications common carriers, air carriers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

CFPB enforcement actions and general responsibilities

A
  • rulemaking, supervision, enforcement, education

enforcement: conduct investigations, issue subpoenas, hold hearings, commence civil actions vs. offenders
- public enforcement actions: state/federal court, institute administrative adjudication proceeding
- can force compensation, consumer redress, injunctive relief

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

NY Stop Hacks and Improve E-Data Security Act (SHIELD)

A
  • expands types of PI for which companies must provide consumer notice in the event of a breach
  • requires that companies develop, implement and maintain reasonable safeguards to protect the security, confidentiality, and integrity of PI
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Data Life Cycle Stages

A
  1. Collection
  2. Use
  3. Disclosure
  4. Retention
  5. Destruction
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

4 steps for info management program

A
  1. Discover
  2. Build
  3. Communicate
  4. Evolve
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

2 Key elements of CLOUD

A

Clarifying Lawful Overseas Use of Data Act (2018)

Provisions for US access to foreign stored data

  • compelled disclosure orders apply “regardless of whether such comms, records, or other info is located within the US”
  • provisions to create executive agreements for foreign access to data stored in US
    —- new mechanism for other countries to access content of communications held by US service providers
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Supreme Court decisions regarding privacy and laws on searches

A

Olmstead v. US - no warrant for wiretapping
Katz v. US - need a warrant for wiretapping (overturn Olmstead)
US v. Jones - no GPS install on vehicle
Riley v. California - need warrant for phone search
Carpenter v. US - need warrant for phone site records

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

US Discovery Rule vs Foreign Laws

A

US
- requires disclosure of all non-privileged info relevant to claims or defenses in cases

Foreign
- place greater emphasis on protection of PD and records privacy as a fundamental right
- EU nations subject to stricter restrictions under GDPR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Hague Convention

A

On taking of evidence

  • protects against cross-border data production
  • requesting party must demonstrate why it must be used
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Discovery Request

A

in law enforcement or national security investigations, organizations may face requests or orders to produce information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Exceptions to the ECPA

A
  • party to the call
  • ordinary course of business
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

GLBA

A

Gramm-Leach-Bailey Act 1999

  • requires financial institutions to EXPLAIN info sharing practices to consumers to safeguard sensitive data

address handle of non public PI by requiring financial institutions to:
- respect consumers’ privacy
- establish appropriate administrative, technical, physical safeguards standard
- securely store PFI
- notice of data sharing policies
- give right to opt-out of some sharing of PI

Violations: fines, prison time, can be considered deceptive trade practice

17
Q

EU-US Data Privacy Framework

A

2023 - European Commission adopted adequacy decision for the EU-US data privacy framework

  • created a new binding safeguard to address concerns about prior mechanisms
  • limit access to EU data by US intelligence services to what is “necessary and proportionate”
  • establish Data Protection Review Court to which EU individuals have access
18
Q

What are the regulatory bodies protecting employee privacy?

A
  • department of labor
  • equal employment and opportunity commission
  • FTC
  • consumer financial protection bureau (CFPB)
  • national labor relations board
19
Q

MSCM

A

mobile service commercial messages

Commercial electronic mail messages transmitted directly to wireless device used by subscriber of commercial mobile service

20
Q

Civil Rights Act

A

bars discrimination in employment due to race, color, religion, sex, and national origin

20
Q

What must an attorney redact from court findings EXCEPT:

A
  • last 4 of SSN
  • last 4 of bank account number
  • initials (if a minor)
  • year of birth