Promoting comparability in personal data breach notification reporting
Suguru Iwaya,
Elif Koksal-Oudot and
Elettra Ronchi
No 322, OECD Digital Economy Papers from OECD Publishing
Abstract:
This report provides the key findings of an OECD survey on comparability in personal data breach notification (PDBN) reporting that was implemented from June 2019 to February 2020. The main findings show a general trend towards mandatory PDBN regulation and identify internationally comparable data metrics used by privacy enforcement authorities (PEAs). The metrics include the number of reported PDBNs, data on the nature of causes, specific causes, and the types of data breached. In addition, the survey identified the types of questions suitable for internationally comparable data collections by PEAs. These include questions on sectoral application of mandatory PDBN, thresholds and timeframes for notifications to the designated authorities and data subjects, and the use of collected data for enforcement collaboration. The survey also sheds light on some of the possible challenges in improving international comparability such as lack of common standards in the industrial classifications used by PEAs.
Date: 2021-12-21
New Economics Papers: this item is included in nep-law
References: Add references at CitEc
Citations:
Downloads: (external link)
https://doi.org/10.1787/88f79eb0-en (text/html)
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:oec:stiaab:322-en
Access Statistics for this paper
More papers in OECD Digital Economy Papers from OECD Publishing Contact information at EDIRC.
Bibliographic data for series maintained by ().