Information Regulator

Insights, news or developments related to the Information Regulator in South Africa, including updates on webinars or events held by them.

Information regulator strategic plan for 2022/3 to 2026/7 – a heads up

The information regulator released the Information Regulator Strategic Plan for 2022/3 to 2026/7. The plan outlines the steps that the regulator will take to implement its vision for 2027. The regulator's key focus is to fulfil its dual mandate as [...]

Infringement notice from the information regulator: what now?

The information regulator will serve an infringement notice to a responsible party that the regulator believes has breached a provision of POPIA. No responsible party wants to receive an infringement notice or enforcement notice. It is even more intimidating than [...]

Information notice from the information regulator: what now?

If you've heard about or received an information notice from the information regulator, you may be wondering what it is and whether it's harmless. The truth is there's a lot for you to consider and action that you will need [...]

POPIA rules of procedure for complaints

The information regulator published rules on the procedure a complainant should follow to submit a complaint to them. The rules set out detailed information on how the regulator will handle complaints. In this post, we summarise the rules, enable [...]

By |2022-11-23T11:15:23+02:00October 29th, 2021|Categories: POPI and Data Protection|Tags: , , , |

Guidance note on application for prior authorisation

The information regulator issued a Guidance Note on application for Prior Authorisation (dated 11 March 2021) to guide responsible parties who are currently processing or intend to process personal information which is subject to prior authorisation to ensure compliance with [...]

Comment on the draft POPIA Amendment Regulations 2021

On 13 October 2021, the information regulator invited comments on draft regulations that will amend the POPIA regulations, 2018. The draft regulations mainly cover new proposed rules of procedure, administrative fines, and other proposed amendments to the POPIA regulations. [...]

Regulator PAIA Manual template available for download

The information regulator has published a regulator PAIA manual template for both a public and a private body. The regulator is trying to help organisations create a manual themselves quickly and easily without having to pay a service provider [...]

By |2021-10-28T15:39:00+02:00September 7th, 2021|Categories: Access to Information|Tags: , , , |

Nominate someone to be a member of the information regulator

Parliament has invited the public to nominate four people for the President to appoint as members of the information regulator. Do you want to nominate someone? Do you know anyone who might want to nominate someone? Finding the right members [...]

By |2022-12-19T12:24:19+02:00August 3rd, 2021|Categories: POPI and Data Protection|Tags: , |

Guidance note on exemptions from the conditions of POPIA

The regulator published a guidance note on exemptions from the conditions for lawful processing of personal information in terms of Section 37 and 38 of POPIA on 21 June 2021. The guidance note helps those who intend to apply for [...]

Information regulator annual performance plan for 2021 to 2022

The information regulator has published its annual performance plan for 1 April 2021 to 31 March 2022. It has also presented them in different formats to different audiences. For example, the regulator held a readiness stakeholder engagement on 15 June [...]

Guidance note on information officers and deputy information officers

The information regulator has published a guidance note on information officers and deputy information officers to provide guidance, procedures and forms to enable responsible parties to do various things required by law. To save you time, we have summarised [...]

Data breach notification: What we can learn from the Information Regulators response

Data breach notification is both good business and required by law. What can we learn from the Regulator’s media statement on the Experian breach? Not if but when Commentators on cybersecurity warn “…it is not a question of if a [...]

By |2022-11-08T07:26:28+02:00August 27th, 2020|Categories: POPI and Data Protection|Tags: , , |