Continue reading on DataGuidance with:
Free Member
Limited ArticlesCreate an account to continue accessing select articles, resources, and guidance notes.
Already have an account? Log in
Newfoundland and Labrador: OIPC addresses PHIA compliance
The Office of the Information and Privacy Commissioner of Newfoundland and Labrador ('OIPC') released, on 23 August 2017, the second edition of its quarterly newsletter ('the Newsletter'), addressing compliance with the Personal Health Information Act 2011 ('PHIA').
In particular, the Newsletter provides guidance for health custodians on using fax or email to send and receive personal health information, in order to avoid data breaches. This includes recommendations on the use of encryption, verification of email receipts, and data minimisation. The Newsletter also outlines several decisions taken by the OIPC in the last three months in relation to privacy complaints, including a decision approving the collection of personal health information for the purpose of a fitness certificate by Morneau Shepell Ltd.
You can read the Newsletter here.