Detailed Table of Contents:
1: Privacy and Business Today 3
Privacy Today 3
Privacy Questions 5
What is Web Privacy? 8
Data Ownership 9
Privacy Acronyms 11
Legal Angles 14
Privacy Positives 16
Privacy Paradoxes 17
The Privacy Landscape 20
Privacy Policies and Statements 22
What's Next? 24
Chapter List
2: Privacy Incidents and Their Costs 27
Defining "Privacy Incident" 27
The Costs of a Privacy Incident 28
Scrutiny and Glare 28
Settlement Costs 30
Coping Costs 32
Opportunity Costs 33
Cost Limits and Gaps 34
Fines and Other Costs 37
Types of Privacy Incident 39
Security Breach 39
Policy Violation 43
Policy Change 45
Policy Criticism 47
Consumer Costs 49
Aggravation 49
Identity Theft 49
Loss of Privacy 51
Chapter List
3: Web Privacy Principles 55
Basic Privacy Principles 55
Early U.S. Laws 56
The HEW Report 57
The OECD Guidelines 59
Data Controller 61
Transborder Data Flows 62
Fair Information Practice Principles 64
Notice/Awareness 65
Choice/Consent 67
Access/Participation 67
Integrity/Security 68
Enforcement/Redress 69
Options for Opting 69
Chapter List
4: Privacy Laws 75
Children's Online Privacy Protection Act 75
What COPPA Requires 78
COPPA Implications 79
COPPA Safe Harbor 81
Gramm-Leach-Bliley 82
G-L-B Definitions 82
G-L-B and Pretexting 84
G-L-B Implications 84
G-L-B Response 86
Health Insurance Portability and Accountability Act 86
What is HIPAA? 87
Web Site Implications 89
Broader Implications 91
Other Laws 93
Chapter List
5: Privacy Laws Worldwide 97
Global Considerations 97
Data Protection in the E.U. 98
The E.U. Data Protection Directive 99
U.S./E.U. Safe Harbor 101
1. Notice 102
2. Choice 102
3. Onward Transfer 103
4. Security 103
5. Data Integrity 103
6. Access 103
7. Enforcement 104
The Value of Safe Harbor 105
Other Safe Harbors 105
Chapter List
6: Policies, Notices and Statements 109
Privacy Disclosures 109
Statement, Notice or Policy? 110
Practical Steps 111
The Better Business Bureau Online 111
TRUSTe 111
The Direct Marketing Association 113
The OECD 113
IAPO 113
Practical Issues 114
Mapping Data Flows 114
Web Specific Issues 118
From Data to Policy and Back 119
High-Level Policy 121
Internal v. External 122
From Policies Down to Procedures 123
From General to Online 124
From External to Internal 124
From Content Management to Privacy 125
Privacy Strategy 126
Chapter List
7: Strategy and Incident Response 129
A Typical Privacy Scenario 129
Reality Check 130
The Incident Meeting 131
Privacy Investigator 132
Problem Solving 134
Lessons Learned 137
Enter the CPO 139
CPO Roles and Reporting 140
Twin Roles 142
Action Plan: Knowing, Saying, Doing 144
Tips and Turf Wars 145
The Privacy Team 147
Privacy Incident Response 148
The Privacy Incident Response Team 148
The Privacy Incident Response Plan 150
Seven Incident Response Steps 151
Privacy Preparedness 152
Chapter List
8: Privacy and Email 157
The Tangled Email Web 157
The Spam Factor 158
The Economics of Spam 159
Spam Filters and Block Lists 161
The Size of Spam 165
Email and Privacy 167
Email Headers 169
Spam and Privacy 172
The Anti-Spam Perspective 174
Responsible Email 175
Six Email Resolutions 176
The Append Issue 177
Problems With Email 179
Filtering Problems 179
You've Got Bogus Email 180
Email Precautions 181
Let's Test Again 182
Use the Right Software 182
Know Your Audience 184
Chapter List
9: Tools, Seals, Techniques 189
Free Assistance 189
Commercial Privacy Products 190
PrivacyRight 190
IDcide 191
Watchfire 191
Zero Knowledge Systems 192
Privacy Council 192
Platform for Privacy Preferences Project 193
P3P in Internet Explorer 6 194
Other P3P Software 196
P3P in Practice 197
P3P Action Plan 199
Privacy Statements and P3P 200
Privacy Seals 201
How Privacy Seals Work 201
TRUSTe 203
BBBOnLine 204
Email Privacy Technology 204
Trusted Senders? 205
Chapter List
10: Summing Up 211
Great Exposure 211
The Blame Game 212
Final Checklist 215
Chapter List
Sources 219
Model Privacy Statements and Policy Generators 219
Privacy Principles 219
Privacy Laws 220
Privacy Tools 220
Privacy and Online Organizations 221
European Union and International 221
Agencies in E.U. and other countries 222
General Security & Data Protection Links 223
Recommended Reading 224
Chapter List
|