POPIA enforcement notice

Home/Tag:POPIA enforcement notice

Department of Basic Education enforcement action | Consent

The Information Regulator issued an enforcement notice against the Department of Basic Education (DBE) on the issue of consent under POPIA on 6 November 2024. The DBE has a long-standing practice of publishing matric results in newspapers, but this practice [...]

SAPS enforcement action | security compromise part 2

In less than 18 months, the information regulator has cracked down on SAPS security compromise. This investigation stems from a security compromise where sensitive details, including personal information, were leaked on WhatsApp. The leaked information reportedly included details related to [...]

FT Rams Consulting enforcement notice | email direct marketing

The Information Regulator issued an enforcement notice against FT Rams Consulting for non-compliance with section 69 of POPIA - the section that deals with direct marketing. This FT Ram Consulting enforcement notice follows a complaint from a data subject who [...]

Enforcement Notice from the Information Regulator: what now?

The information regulator may send you a POPIA enforcement notice after investigating you and finding that you have contravened POPIA by failing to lawfully process personal information. In comparison, the information regulator may send you an infringement notice if it [...]

Dis-Chem enforcement notice | data breach

The information regulator issued a Dis-Chem enforcement notice to Dis-Chem Pharmacies for non-compliance with the Protection of Personal Information Act (POPIA). In April 2022, an unauthorised party gained access to more than 3 million data subjects' records from Dis-Chem's database. [...]

DoJ enforcement notice 1 | Security measures

The information regulator issued an enforcement notice to the Department of Justice (DoJ) for contravening the Protection of Personal Information Act (POPIA). The regulator found that the DoJ breached POPIA by failing to secure the personal information of over 250,000 [...]

SAPS enforcement action | security compromise part 1

The information regulator issued its first enforcement notice to SAPS. After conducting an independent investigation, the regulator found that SAPS breached several conditions for the lawful processing of personal data. The regulator also found that SAPS failed to notify the [...]

Draft POPIA Rules for the Enforcement Committee

The Information Regulator published a notice calling for comments on the draft POPIA Rules for the Enforcement Committee (Committee). The draft Rules outline the Procedure that the Enforcement Committee must follow when the regulator refers a POPIA complaint to them [...]

How to make the Information Regulator happy with your organisation

Picture yourself sitting on your couch at home, causally flicking through channels. The Information Regulator and data protection are the last things on your mind; and yet there you are, stumbling onto a press conference the Information Regulator is doing. [...]

Information regulator establishes enforcement committee

The information regulator has finally established the enforcement committee (committee). The Protection of Personal Information Act (POPIA) provides for the establishment of an Enforcement Committee (see section 93). The committee has a key role to play in supporting the information [...]