https://www.miningweekly.com

Get your small business ready for POPI

13th July 2015

  

Font size: - +

This article has been supplied.

Sage Pastel Accounting  (0.06 MB)

Company Announcement - As if you needed something new to worry about, a piece of legislation called the Protection of Personal Information recently came into effect in South Africa. This data privacy law means that it’s more important than ever for you to ensure that your data and information systems are secure from breaches and leaks. POPI essentially seeks to protect people’s privacy by regulating the ways in which their personal information is stored, managed and processed. In addition to complying with a range of rules that govern how you obtain and use customers’ personal information, you also need to take reasonable steps to secure it. You might face a fine if this data is stolen or leaked.

Personal information includes employee and customer data such as cellphone numbers, ID numbers, and personal addresses.

Preparing your business
If you have not started doing so already, now is the time to align your data security policy with the criteria of the Act. Here is a step-by-step guide:

  • Identify existing customer information and who has access to it.
  • Review the processes through which you collect and process personal information.
  • Compare your company’s privacy policy with POPI’s requirements and revise it if necessary.
  • Ensure that all the departments that are affected by POPI are trained to work according to the rules set out in your newly reviewed privacy policy. 

The information you collected and stored before POPI is also subject to the new Act, so it might be necessary to securely discard it if you cannot migrate it onto technology platforms that meet the law’s requirements. In practice, your core business solutions probably keep customer data in well-identified locations such as structured databases, so it is relatively easy to meet the POPI Act’s requirement to “apply reasonable security measures” to safeguard the information. This would include common sense rules such as protecting customer data with strong passwords and encryption, and restricting access to the most sensitive data to the people who need it. Managing unstructured information such as call centre voice logs, Word documents, and paper-based documentation might be more challenging.

Keep it in the cloud
One way to handle POPI is to use cloud applications provided by a reputable service provider. Most major service providers and software companies will already have data security standards and technology in place that meets POPI’s needs. This is more secure and usually cheaper than trying to handle all the information security yourself - a good provider will have strong encryption, high-end firewalls, and other solutions in place. But be sure to ask each provider about compliance and look carefully at how your providers based in other countries manage and secure your data.

The biggest challenges will be around culture, company policy, and end-user behaviour, since the enabling technology is fairly simple to implement. The challenge isn’t encrypting data or enforcing strong passwords, but getting your employees to understand why they need to follow security policies that may seem annoying and time-consuming.

To watch Creamer Media's latest video reports, click here
 

Edited by Creamer Media Reporter

Article Enquiry

Email Article

Save Article

Feedback

To advertise email advertising@creamermedia.co.za or click here

Showroom

ABB Electrification
ABB Electrification

Electrifying the world in a safe, smart, and sustainable way, ABB Electrification is a global technology leader in electrical distribution and...

VISIT SHOWROOM 
Environmental Impact Management Services
Environmental Impact Management Services

EIMS is an independent specialised environmental consulting firm offering the full spectrum of environmental management services across all sectors...

VISIT SHOWROOM 

Latest Multimedia

sponsored by

Option 1 (equivalent of R125 a month):

Receive a weekly copy of Creamer Media's Engineering News & Mining Weekly magazine
(print copy for those in South Africa and e-magazine for those outside of South Africa)
Receive daily email newsletters
Access to full search results
Access archive of magazine back copies
Access to Projects in Progress
Access to ONE Research Report of your choice in PDF format

Option 2 (equivalent of R375 a month):

All benefits from Option 1
PLUS
Access to Creamer Media's Research Channel Africa for ALL Research Reports, in PDF format, on various industrial and mining sectors including Electricity; Water; Energy Transition; Hydrogen; Roads, Rail and Ports; Coal; Gold; Platinum; Battery Metals; etc.

Already a subscriber?

Forgotten your password?

MAGAZINE & ONLINE

SUBSCRIBE

RESEARCH CHANNEL AFRICA

SUBSCRIBE

CORPORATE PACKAGES

CLICK FOR A QUOTATION







sq:0.058 0.86s - 113pq - 2rq
Subscribe Now