Protecting Personally Identifiable Information (PII)
Privacy Act Training for Housing Counselors
Presented by the Office of Housing Counseling and The Office of the Chief Information Officer Privacy Program
1 August 12, 2014
Protecting Personally Identifiable Information (PII) Privacy Act - - PowerPoint PPT Presentation
Protecting Personally Identifiable Information (PII) Privacy Act Training for Housing Counselors Presented by the Office of Housing Counseling and The Office of the Chief Information Officer Privacy Program August 12, 2014 1 Protecting
1 August 12, 2014
3 2/7/2014
Please submit your text questions and comments using the Questions Panel. We will answer some of them during the webinar. You can also send questions and comments to housing.counseling@hud.gov Note: Today’s presentation is being recorded and will be provided within 48
sent out via ListServ.
4 2/7/2014
2/7/2014 5
August 12, 2014 7
August 12, 2014 8
August 12, 2014 9
August 12, 2014 10
11
August 12, 2014
12
August 12, 2014
13
August 12, 2014
14
August 12, 2014
15 August 12, 2014
Conduct Privacy Impact
Post privacy notices on agency Web
Designate an Agency Privacy Official Report annually to OMB.
16 August 12, 2014
Requires agencies to:
Report at least annually on Privacy
PIAS SORNs Privacy reviews Provide annual security/privacy
17
Data about an individual that is
Any information about an individual
August 12, 2014
18
Social Security numbers, or
Note: Sensitive PII, a subset of PII, requires additional levels of security controls.
Any group of records under the control of the Agency
August 12, 2014
19 August 12, 2014
Privacy Act Handbook
HUD’s Privacy Principle
PIH Notice 2014-10, HUD Privacy
20 August 12, 2014
21 August 12, 2014
Housing Counseling Agencies should take the following steps
22 August 12, 2014
23 August 12, 2014
24 August 12, 2014
25 August 12, 2014
26 August 12, 2014
27 August 12, 2014
28 August 12, 2014
29 August 12, 2014
30 August 12, 2014
31 August 12, 2014
32 August 12, 2014
33 August 12, 2014
34 August 12, 2014
35 August 12, 2014
36 August 12, 2014
37
HCA’s are responsible for immediately reporting any
Promptly report all suspected compromises of sensitive PII
August 12, 2014
38
Unlawfully refuses to amend a record. Unlawfully refuses to grant access to records. Fails to maintain accurate, relevant, timely and
Fails to comply with any Privacy Act provision or
August 12, 2014
The Privacy Act imposes criminal penalties:
For knowingly and willfully disclosing Privacy Act
For maintaining a System of Records without meeting
For knowingly and willfully requesting or obtaining
August 12, 2014 39
The HCA shall cooperate fully with Agency personnel
Failure to take appropriate action upon discovering
August 12, 2014 40
41 41
http://usdoj.gov/opcl/privstat.htm
http://www.whitehouse.gov/omb/memoranda_m03-22/
http://csrc.nist.gov/drivers/documents/FISMA-final.pdf
August 12, 2014
42
August 12, 2014
43 August 12, 2014