Personal Data (Privacy) Law in Hong Kong: A Practical Guide on Compliance (Third Edition)

Author / Editor
HKD798.00
In stock
Add to Wish List
With an increasing concern of personal data privacy in Hong Kong and around the world, the Office of the Privacy Commissioner for Personal Data (PCPD), Hong Kong publishes this third edition of Personal Data (Privacy) Law in Hong Kong: A Practical Guide on Compliance to provide practical guidance on the law of privacy, and the ways to protect personal data in everyday life.

This third edition will guide readers through the recent developments of personal data privacy in the local, regional and global contexts with updates on recent Administrative Appeals Board and Court decisions, and investigation reports and materials from the PCPD. In addition, some most-concerned issues are discussed, such as ethical development and use of AI, the collection and use of personal data by employers during COVID-19, data protection under work-from-home arrangements, data security measures for ICT systems, guidelines on doxxing offences and data breach handling. This book will certainly provide readers a comprehensive overview of current situation of personal data privacy issue.
ISBN
978-962-937-688-8
Pub. Date
Aug 22, 2024
Weight
1.8kg
Hardcover
596 pages
Dimension
178 x 254 mm
Hong Kong is positioned as a pivotal hub where the East delicately intertwines with the West. It is evident that digital globalisation and technological advances have brought about an unprecedented flow of data across borders, presenting unique challenges to privacy and data protection. Data security threats have grown in sophistication, with cyberattacks based on phishing, ransomware and malware happening from time to time.

This third edition of Personal Data (Privacy) Law in Hong Kong: A Practical Guide on Compliance seeks to provide legal practitioners, students and privacy enthusiasts with a comprehensive understanding of Hong Kong’s personal data privacy law, serving as a reliable resource for navigating the intricacies of our evolving landscape in this difficult area of the law.

Included in this edition are updates on recent Administrative Appeals Board and Court decisions, and investigation reports and materials such as guidance on ethical development and use of AI, the collection and use of personal data by employers during COVID-19, the protection of personal data under work-from-home arrangements, data security measures for information and communications technology systems, the implementation guidelines on doxxing offences and the guideline on data breach handling and data breach notifications.

Another highlight is that the book features three entirely new chapters that delve into the pivotal developments in the law since the last edition. These chapters explain the two-tier doxxing offences and the Commissioner’s investigation and prosecution powers under the provisions in the new Part 9A of the PDPO (Chapter 16), cross-boundary transfers of personal data from Hong Kong (Chapter 17) and the Mainland’s personal data protection regime (Chapter 18). A comprehensive comparison table is included to highlight the similarities and differences among the PDPO, the GDPR and the PIPL, enabling readers to better navigate the multifaceted regulatory frameworks governing personal data privacy.

This book will no doubt be a trustworthy companion for anyone interested in the law of privacy and personal data protection, with each chapter providing a thorough discussion of the law, offering compliance solutions and practical insights. It is hoped that the book will go beyond the boundaries of a legal manual and reach a wider community of privacy professionals to serve the bigger purpose of charting a course towards a future where society at large recognises that the protection of personal data privacy is not merely a checklist for fulfilling legal obligations, but rather a collective social responsibility and the cornerstone of the continuous success of Hong Kong.

Chapter 1      Introduction                                                                                                                             

Chapter 2      The Meaning of “Personal Data”                                                                                                

Chapter 3      The Meaning of “Collect”                                                                    

Chapter 4      The Meaning of “Data User”                                                                   

Chapter 5      Data Protection Principle 1                                                                     

Chapter 6      Data Protection Principle 2                                                                         

Chapter 7      Data Protection Principle 3                                                                                                      

Chapter 8      Data Protection Principle 4                                                                  

Chapter 9      Data Protection Principle 5                                                                  

Chapter 10    Data Protection Principle 6(a) to (d) and the Data Access Provisions in Part 5                                 

Chapter 11    Data Protection Principle 6(e) to (g) and the Data Correction Provisions in Part 5                            

Chapter 12    Exemption Provisions in Part 8                                  

Chapter 13    The Commissioner’s Statutory Duties in Investigations                                                                 

Chapter 14    Data Breach Handling and Notifications                                                                                       

Chapter 15    Criminal Offences                                                                                                                      

Chapter 16    Doxxing                                                                                                  

Chapter 17    Cross-border Transfers of Personal Data from Hong Kong                                                             

Chapter 18    An Overview of the Mainland’s Personal Information Protection Regime                                                                                

Appendix I     Selected Case Notes on Court Judgments                                          

Appendix II    Major Differences between the PIPL, the GDPR and the PDPO       

Appendix III   Checklist for Data Users in Ensuring Compliance with the Ordinance                                             

Appendix IV  Data Subject’s Rights when his Personal Data Privacy is Infringed                                                                                            

EDITORIAL COMMITTEE

 

Volume Editors

Ms Ada CHUNG Lai-ling

LL.B (Lond.), B.Soc.Sc. (HKU)

FCPA, FCCA, Accredited Mediator (HKMAAL)

Barrister-at-law (HKSAR, England and Wales and Australia)

Privacy Commissioner for Personal Data, Hong Kong, China

 

Professor Guobin ZHU

BA, MA, LL.M. (Renmin U, China), LL.M. (HKU)

PhD and Habilitation (Aix-Marseille U, France)

Titular Member of International Academy of Comparative Law

Professor, School of Law, City University of Hong Kong