Legal updates and opinions
News / News
Information Regulator issues Guidelines for the development of Codes of Conduct effective 1 March 2021
by Ahmore Burger-Smidt, Director and Head of Data Privacy Practice and member of Competition Law Practice; and Dimakatso Khumalo, Candidate Attorney
- On 22 February 2021, the South African Information Regulator (“Regulator“) published Guidelines to develop Codes of Conduct (“Guidelines“) under the Protection of Personal Information Act No. 4 of 2013 (“POPIA“).
- It is probable that organisations which fall within the same industry will encounter similar or even identical data protection issues. Codes of Conduct provide such organisations with useful guidance on industry-standard approaches to these issues. By developing and implementing Codes of Conduct, organisations are in a better position to demonstrate to individuals that it takes their data protection rights seriously. This, in turn, may persuade those individuals to do business with that organisation rather than with its competitors.
- The South African economy is saturated by a plethora of industries/industry sectors, and professional and vocational bodies (“industry bodies“). All these industry bodies have distinct and unique ways of managing their business, profession or vocation to an extent that there is not a one size fits all compliance approach across all industries. As a consequence, industry specific dynamics ought to inform the way forward considering the impact of POPIA industry members. The conditions and implementation for the lawful processing of personal information under POPIA will undoubtedly be influenced by the distinct features that each of these industry bodies possess. The members of these industry bodies are expected to collect different personal information of their clients as well as employees in order to conduct their business.
- The Guidelines (once effected) envisage to direct and assist relevant bodies, including bodies or class of bodies of specified industries, professions, or vocations, to draft their own Codes of Conduct with the aim ofcompliance with the provisions of POPIA. The Guidelines establish a standard that the Regulator will apply when evaluating Codes of Conduct for approval and also afford to those industries, considering the implementation of a code of conduct, a practical guide to clearly address the aspects that the Regulator deems important.
- The Guidelines will assist relevant bodies to prepare and submit for approval Codes of Conduct to the Regulator. It aims to provide a step by step process guidance. It is clear from the guidelines that industry bodies should conduct consultation with their stakeholders and decide on their own procedures and processes to be followed in dealing with, not only complaints, but also with overall compliance with POPIA through more specific and tailored compliance mechanisms. Simply put, the Codes of Conduct serve as a Roadmap to Compliance.
- These industry bodies will therefore benefit tremendously from Codes of Conduct which are more specific and professional orientated, and which target the unique aspects of the profession they are regulating, while remaining compliant with the provisions of POPIA.
- The guidelines can be downloaded and reviewed in order to consider what impact they will have on you organisation
Latest News
Cautionary notes for companies and influencers
Influencer advertising In 2022, even the most pessimistic advertiser is unlikely to bet on the fact that the rise in [...]
The South African Reserve Bank’s new monetary policy implementation framework
On the 8th of June 2022, the South African Reserve Bank (SARB) commenced with its 12-week transition to a new [...]
A new Covid 19 code: has anything really changed?
by Anastasia Vatalidis, Head of Labour & Employment, Sandile Tom, Director, and Benedict Ngobeni, Candidate Attorney On the heels of [...]
Affected persons are invited – again – to provide comments on The Code of Conduct for The Banking Association of SA
On 24 June 2022, the Information Regulator of South Africa (Information Regulator) published a notice in terms of section 61(2) [...]
Gerrymandering Healthcare? Certificate of need
The term "gerrymander" is used primarily in the context of shifting the boundaries or borders of voting constituencies in order [...]
Business Rescue Proceedings in South Africa
Business Rescue Proceedings A company should commence business rescue proceedings at the first signs of it being financially distressed, within [...]