Legal updates and opinions
News / News
Information Regulator issues Guidelines for the development of Codes of Conduct effective 1 March 2021
by Ahmore Burger-Smidt, Director and Head of Data Privacy Practice and member of Competition Law Practice; and Dimakatso Khumalo, Candidate Attorney
- On 22 February 2021, the South African Information Regulator (“Regulator“) published Guidelines to develop Codes of Conduct (“Guidelines“) under the Protection of Personal Information Act No. 4 of 2013 (“POPIA“).
- It is probable that organisations which fall within the same industry will encounter similar or even identical data protection issues. Codes of Conduct provide such organisations with useful guidance on industry-standard approaches to these issues. By developing and implementing Codes of Conduct, organisations are in a better position to demonstrate to individuals that it takes their data protection rights seriously. This, in turn, may persuade those individuals to do business with that organisation rather than with its competitors.
- The South African economy is saturated by a plethora of industries/industry sectors, and professional and vocational bodies (“industry bodies“). All these industry bodies have distinct and unique ways of managing their business, profession or vocation to an extent that there is not a one size fits all compliance approach across all industries. As a consequence, industry specific dynamics ought to inform the way forward considering the impact of POPIA industry members. The conditions and implementation for the lawful processing of personal information under POPIA will undoubtedly be influenced by the distinct features that each of these industry bodies possess. The members of these industry bodies are expected to collect different personal information of their clients as well as employees in order to conduct their business.
- The Guidelines (once effected) envisage to direct and assist relevant bodies, including bodies or class of bodies of specified industries, professions, or vocations, to draft their own Codes of Conduct with the aim ofcompliance with the provisions of POPIA. The Guidelines establish a standard that the Regulator will apply when evaluating Codes of Conduct for approval and also afford to those industries, considering the implementation of a code of conduct, a practical guide to clearly address the aspects that the Regulator deems important.
- The Guidelines will assist relevant bodies to prepare and submit for approval Codes of Conduct to the Regulator. It aims to provide a step by step process guidance. It is clear from the guidelines that industry bodies should conduct consultation with their stakeholders and decide on their own procedures and processes to be followed in dealing with, not only complaints, but also with overall compliance with POPIA through more specific and tailored compliance mechanisms. Simply put, the Codes of Conduct serve as a Roadmap to Compliance.
- These industry bodies will therefore benefit tremendously from Codes of Conduct which are more specific and professional orientated, and which target the unique aspects of the profession they are regulating, while remaining compliant with the provisions of POPIA.
- The guidelines can be downloaded and reviewed in order to consider what impact they will have on you organisation
Latest News
Generative AI: It’s magic but fraught with legal risks
and Hlonelwa Lutuli, Candidate Attorney The use and beneficial application of generative AI in the workplace is increasing at an [...]
The correct approach to Section 138(5)(a) of the LRA: rescission or re-enrolment?
On 27 May 2023, as a direct response to Labour Appeal Court's judgement of Mohube v Commission for Conciliation, Mediation and [...]
Hand over the tax records! Section 35 and 46 of PAIA unconstitutional
and Siyabonga Galela, Candidate Attorney On 30 May 2023, the Constitutional Court handed down its ruling in the matter of [...]
Numerical Targets: No jobs will be lost!
The publication of the Employment Equity Regulations on 12 May 2023 has been the subject of much public controversy. [...]
Certificate of need in the healthcare sector: not needed
The National Health Act or NHA[1] makes provision for a system of licensing referred to as a certificate of [...]
The FSCA publishes exemptions for Crypto Assets Financial Service Providers
Siphosethu Zazela, Candidate Attorney On 11 May 2023, the Financial Sector Conduct Authority ("FSCA") published notice 25 of 2023 [...]