<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>

<channel>
	<title>Michalsons Attorneys</title>
	<atom:link href="http://www.michalsonsattorneys.com/feed" rel="self" type="application/rss+xml" />
	<link>http://www.michalsonsattorneys.com</link>
	<description>Technology law with Insight</description>
	<pubDate>Fri, 03 Sep 2010 09:15:08 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Consumer Protection Act services</title>
		<link>http://www.michalsonsattorneys.com/consumer-protection-act-services/2930</link>
		<comments>http://www.michalsonsattorneys.com/consumer-protection-act-services/2930#comments</comments>
		<pubDate>Sun, 29 Aug 2010 21:20:42 +0000</pubDate>
		<dc:creator>John Giles</dc:creator>
		
		<category><![CDATA[Consumer Protection]]></category>

		<category><![CDATA[consumer protection act]]></category>

		<guid isPermaLink="false">http://www.michalsonsattorneys.com/?p=2930</guid>
		<description><![CDATA[Are you ready for the commencement of the Consumer Protection Act?  Do you comply?  Are you addressing the risks related to the Consumer Protection Act?
We offer the following Consumer Protection Act services in line with our view that compliance is a process.  Each step leads to the next.
(Step 1 - Awareness) Be aware of the issues [...]]]></description>
			<content:encoded><![CDATA[<p>Are you ready for the commencement of the Consumer Protection Act?  Do you comply?  Are you addressing the risks related to the Consumer Protection Act?</p>
<p>We offer the following <strong>C</strong><strong>onsumer Protection Act services</strong> in line with our view that <a href="http://www.michalsons.com/compliance-is-a-process/3867" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.michalsons.com/compliance-is-a-process/3867?referer=');">compliance is a process</a>.  Each step leads to the next.</p>
<h3>(<span>Step 1 - Awareness</span>) Be aware of the issues and applicable law</h3>
<p>We can help you to be aware of and learn about consumer protection and the law that requires it.  We do this by:</p>
<ol>
<li>Conducting a seminar called <a href="http://www.michalsonsattorneys.com/the-impact-of-the-consumer-protection-act-on-your-organisation/2831" target="_blank">The Impact of the Consumer Protection Act on your organisation</a>?</li>
<li>Providing online legal guidance on consumer protection on <a href="http://www.michalsons.com/category/privacy" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.michalsons.com/category/privacy?referer=');">Online Legal…</a>.</li>
<li><img class="alignright size-full wp-image-2949" title="madeasy" src="http://www.michalsonsattorneys.com/wp-content/uploads/2010/08/madeasy.jpg" alt="madeasy" width="200" height="285" />Providing you with a book called <strong>The Consumer Protection Act made easy</strong>. The book will give you the background information that you need to know and will get you up-to-speed fast.  It will reduce your overall cost of compliance.  To get it in eBook form go to <a title="CPA eBook" href="http://etrader.kalahari.net/referral.asp?linkid=5&amp;partnerid=7309&amp;sku=38043951" target="_blank" onclick="pageTracker._trackPageview('/outgoing/etrader.kalahari.net/referral.asp?linkid=5_amp_partnerid=7309_amp_sku=38043951&amp;referer=');">Kalahari</a>.   <strong>To order</strong> a copy send an email to <a title="Please invoice me for The Consumer Protection Act Made Easy" href="CPAbook@michalsons.com" target="_blank">CPAbook@michalsons.com</a> and state the number of copies you require, the address to which you want them delivered, and a contact telephone number.  They cost R180 each.  We will confirm your order and send you an invoice.  We can hand deliver the book to you, if we are going to meet.  Or we can post it to you by registered mail at a cost of R25 and it takes about 5 days.  We offer discounts if you order multiple copies.</li>
</ol>
<p>We make you aware by applying our experience and knowledge to your specific circumstances.</p>
<h3>(<span>Step 2 - Assessment</span>) Assess, determine the gap, and find solutions</h3>
<p>We can conduct a Consumer Protection Act readiness assessment to determine whether your organisation is ready for the Consumer Protection Act.  It will be conducted by an experienced attorney (or a team of attorneys or other CPA consultants) with a detailed cross-departmental  <strong>report and recommendations</strong>.  You will receive a detailed report that states specially how ready your specific organisation is.   It will customised for your specific circumstances.</p>
<p>We offer the following <strong>types of assessments</strong>:</p>
<ol>
<li>Readiness desktop analysis with informed officer (2-3 hours)</li>
<li>Detailed assessment after interview with each section head</li>
<li>Full role accountability mapping exercise incl. individual employees</li>
</ol>
<h3>(<span>Step 3 - Solutions</span>) Implement solutions</h3>
<p>We can help you implement various solutions.  For example, we can:</p>
<ol>
<li><a href="http://www.michalsonsattorneys.com/review-of-agreement-for-cpa-compliance/2816">Review your documents </a>to ensure that they comply with the Consumer Protection Act</li>
<li><a href="http://www.michalsonsattorneys.com/convert-documents-into-plain-language/1692">Convert your documents</a> into plain language</li>
<li>Make sure your <a href="http://www.michalsons.com/promotional-competitions/2432" onclick="pageTracker._trackPageview('/outgoing/www.michalsons.com/promotional-competitions/2432?referer=');">promotional competitions comply with the Consumer Protection Act</a></li>
<li>Tell you what happens <a href="http://www.michalsons.com/when-a-retailer-displays-the-wrong-price/3723" onclick="pageTracker._trackPageview('/outgoing/www.michalsons.com/when-a-retailer-displays-the-wrong-price/3723?referer=');">when a retailer displays the wrong price</a>.</li>
</ol>
<h3><strong>(</strong><strong><span>Step 4 - Review</span></strong><strong>) Ongoing review</strong></h3>
<p>We support you to review your situation on an ongoing basis and ensure that you continue to comply.</p>
<h3>The benefits</h3>
<p>Our  consumer protection services will help you to:</p>
<ol>
<li>Identify the sections of the Consumer Protection Act that are relevant to you</li>
<li>Determine the impact of the Consumer Protection Act on your business</li>
<li>Focus on the activities that are critical to your business</li>
<li>Prioritise your next steps</li>
<li>Fast track your consumer protection compliance efforts</li>
<li>Get clarity on where you are and where you need to be</li>
<li>Determine the gap between your reality and compliance (usually a gap analysis)</li>
<li>Determine whether there is anything you should be doing in preparation for the commencement of the Consumer Protection Act</li>
<li>Find solutions to fill the gap - determining what solutions you need</li>
</ol>
<p>Through our consumer protection services you either get assurance that you comply or we help you to find solutions to ensure that you comply.  We will also point you to material that you can read to get up to speed.</p>
<h3>Get a proposal from us</h3>
<p>For more information or a proposal, please contact <a title="CPA Services" href="cpa@michalsons.com" target="_blank">cpa@michalsons.com</a>.</p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.michalsonsattorneys.com%2Fconsumer-protection-act-services%2F2930&amp;linkname=Consumer%20Protection%20Act%20services" onclick="pageTracker._trackPageview('/outgoing/www.addtoany.com/share_save?linkurl=http_3A_2F_2Fwww.michalsonsattorneys.com_2Fconsumer-protection-act-services_2F2930_amp_linkname=Consumer_20Protection_20Act_20services&amp;referer=');"><img src="http://www.michalsonsattorneys.com/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.michalsonsattorneys.com/consumer-protection-act-services/2930/feed</wfw:commentRss>
		</item>
		<item>
		<title>Bevan Lane</title>
		<link>http://www.michalsonsattorneys.com/bevan-lane/2913</link>
		<comments>http://www.michalsonsattorneys.com/bevan-lane/2913#comments</comments>
		<pubDate>Thu, 12 Aug 2010 14:46:39 +0000</pubDate>
		<dc:creator>Lance Michalson</dc:creator>
		
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.michalsonsattorneys.com/?p=2913</guid>
		<description><![CDATA[Bevan Lane (not an Attorney)
Bevan is an information security professional.
He has the following qualifications:

Bachelor of Commerce degree
Certified Information Security Manager (CISM)
Certified Information Systems Security Professional (CISSP)
Certified in the Governance of IT (CGEIT)
Certified Information Systems Auditor (CISA)
Certified as a lead auditor on the ISO 27001 standard by the British Standards Institute (BSI).

He is presently enrolled in [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Bevan Lane </strong>(not an Attorney)</p>
<p>Bevan is an information security professional.</p>
<p>He has the following qualifications:</p>
<ul>
<li>Bachelor of Commerce degree</li>
<li>Certified Information Security Manager (CISM)</li>
<li>Certified Information Systems Security Professional (CISSP)</li>
<li>Certified in the Governance of IT (CGEIT)</li>
<li>Certified Information Systems Auditor (CISA)</li>
<li>Certified as a lead auditor on the ISO 27001 standard by the British Standards Institute (BSI).</li>
</ul>
<p>He is presently enrolled in an Information Security Masters Program.</p>
<p>Bevan worked for PricewaterhouseCoopers (PwC) for 10 years where he gained extensive experience within the IT forensics, IT audit and Information Security consulting fields.</p>
<p>Since leaving PricewaterhouseCoopers he has been consulting for a variety of clients in terms of Information Security issues and performing reviews and assisting clients with development of policies.</p>
<p>Lance Michalson and Bevan have worked closely with one another on various information security related matters for the last 10 years, with Bevan supplementing Lance&#8217;s legal knowledge with his information security technical skills.</p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.michalsonsattorneys.com%2Fbevan-lane%2F2913&amp;linkname=Bevan%20Lane" onclick="pageTracker._trackPageview('/outgoing/www.addtoany.com/share_save?linkurl=http_3A_2F_2Fwww.michalsonsattorneys.com_2Fbevan-lane_2F2913_amp_linkname=Bevan_20Lane&amp;referer=');"><img src="http://www.michalsonsattorneys.com/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.michalsonsattorneys.com/bevan-lane/2913/feed</wfw:commentRss>
		</item>
		<item>
		<title>Who&#8217;s Who Legal</title>
		<link>http://www.michalsonsattorneys.com/whos-who-legal/42</link>
		<comments>http://www.michalsonsattorneys.com/whos-who-legal/42#comments</comments>
		<pubDate>Sun, 08 Aug 2010 11:32:14 +0000</pubDate>
		<dc:creator>John Giles</dc:creator>
		
		<category><![CDATA[Accolades]]></category>

		<guid isPermaLink="false">http://www.michalsonsattorneys.com/?p=42</guid>
		<description><![CDATA[




Lance Michalson has been included in the 2010 edition of International Who&#8217;s Who of Internet and e-Commerce lawyers. He was also included in the 2008 and 2009 editions.

 

]]></description>
			<content:encoded><![CDATA[<div class="mceTemp">
<dl id="attachment_43" class="wp-caption alignleft" style="width: 281px;">
<dt class="wp-caption-dt"><a href="http://www.michalsonsattorneys.com/wp-content/uploads/2008/09/whoswho.gif"><img class="size-medium wp-image-43" title="whoswho" src="http://www.michalsonsattorneys.com/wp-content/uploads/2008/09/whoswho.gif" alt="Who's Who Legal" width="271" height="38" /></a></dt>
</dl>
</div>
<p><a href="http://www.whoswholegal.com/profiles/27156/0/Michalson/lance-michalson/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.whoswholegal.com/profiles/27156/0/Michalson/lance-michalson/?referer=');">Lance Michalson</a> has been included in the 2010 edition of International <a href="http://www.whoswholegal.com/" target="_self" onclick="pageTracker._trackPageview('/outgoing/www.whoswholegal.com/?referer=');">Who&#8217;s Who</a> of Internet and e-Commerce lawyers. He was also included in the 2008 and 2009 editions.</p>
<div class="mceTemp">
<dl id="attachment_43" class="wp-caption alignright" style="width: 281px;"> </dl>
</div>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.michalsonsattorneys.com%2Fwhos-who-legal%2F42&amp;linkname=Who%26%238217%3Bs%20Who%20Legal" onclick="pageTracker._trackPageview('/outgoing/www.addtoany.com/share_save?linkurl=http_3A_2F_2Fwww.michalsonsattorneys.com_2Fwhos-who-legal_2F42_amp_linkname=Who_26_238217_3Bs_20Who_20Legal&amp;referer=');"><img src="http://www.michalsonsattorneys.com/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.michalsonsattorneys.com/whos-who-legal/42/feed</wfw:commentRss>
		</item>
		<item>
		<title>Privacy Training</title>
		<link>http://www.michalsonsattorneys.com/privacy-training/2900</link>
		<comments>http://www.michalsonsattorneys.com/privacy-training/2900#comments</comments>
		<pubDate>Sun, 08 Aug 2010 08:05:38 +0000</pubDate>
		<dc:creator>Lance Michalson</dc:creator>
		
		<category><![CDATA[Clients]]></category>

		<category><![CDATA[Privacy]]></category>

		<guid isPermaLink="false">http://www.michalsonsattorneys.com/?p=2900</guid>
		<description><![CDATA[There are several reasons by training is important:
Firstly, the Protection of Personal Information Bill (&#8221;POPI&#8221;) requires that &#8220;appropriate, reasonable&#8221; measures be taken to protect information from loss, damage or unlawful access (as does the Payment Card Industry Data Security Standard and ISO 27001).
This implicitly requires companies to set up training programs to help employees understand what those measures are (security [...]]]></description>
			<content:encoded><![CDATA[<p><strong>There are several reasons by training is important:</strong></p>
<p><strong></strong>Firstly, the <strong>Protection of Personal Information Bill </strong>(&#8221;POPI&#8221;) requires that &#8220;<strong>appropriate, reasonable</strong>&#8221; measures be taken to protect information from loss, damage or unlawful access (as does the <a href="http://en.wikipedia.org/wiki/Payment_Card_Industry_Data_Security_Standard" onclick="pageTracker._trackPageview('/outgoing/en.wikipedia.org/wiki/Payment_Card_Industry_Data_Security_Standard?referer=');">Payment Card Industry Data Security Standard</a> and<a href="http://en.wikipedia.org/wiki/ISO/IEC_27001" onclick="pageTracker._trackPageview('/outgoing/en.wikipedia.org/wiki/ISO/IEC_27001?referer=');"> ISO 27001)</a>.</p>
<p>This implicitly requires companies to set up training programs to help employees understand what those measures are (security experts often say that <strong>staff (&#8221;insiders&#8221;) are the biggest threat to PI</strong>, and the list of breaches maintained by the <a href="http://www.privacyrights.org/" onclick="pageTracker._trackPageview('/outgoing/www.privacyrights.org/?referer=');">Privacy Rights Clearinghouse</a> is dotted with incidents resulting from employee mistakes).</p>
<p>This is particularly important as section 21 of POPI requires the company to notify the Regulator and data subject of security breaches.</p>
<p>Secondly <strong>King 3</strong> says that the board is responsible for the company&#8217;s compliance with applicable laws. This includes privacy laws. It is implicitly required that the board and management understand the context and requirements of POPI.</p>
<p><strong>Different audiences we focus on:</strong></p>
<ul>
<li>Senior management (where we focus on creating an awareness of privacy requirements under POPI, NCA, CPA and other laws)</li>
<li>Marketing department (with a focus on direct marketing issues)</li>
<li>Security (focusing on data warehousing etc with reference to information security implications)</li>
<li>Call centre agents</li>
<li>Staff.</li>
</ul>
<p><strong>Our training program:</strong></p>
<ul>
<li>is aimed at raising awareness amongst employees of their privacy responsibilities under the company Privacy Policy and how to reduce the risk of a privacy breach;</li>
<li>is aimed at integrating information-handling practices into day-to-day business activities;</li>
<li>includes setting up campaigns (e.g. posters, email) as well as &#8220;role-based&#8221; training.  This means that our programs are aimed at different audiences as different audiences have different needs on what they should be doing</li>
<li>We focus on giving  practical steps and outcomes rather than just a summary of the law;</li>
<li>We try hard to contextualise our training and make a big effort to explain why people are attending and why things need to change (if things do need to change);</li>
<li>Includes webinars and face to face training.</li>
</ul>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.michalsonsattorneys.com%2Fprivacy-training%2F2900&amp;linkname=Privacy%20Training" onclick="pageTracker._trackPageview('/outgoing/www.addtoany.com/share_save?linkurl=http_3A_2F_2Fwww.michalsonsattorneys.com_2Fprivacy-training_2F2900_amp_linkname=Privacy_20Training&amp;referer=');"><img src="http://www.michalsonsattorneys.com/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.michalsonsattorneys.com/privacy-training/2900/feed</wfw:commentRss>
		</item>
		<item>
		<title>Privacy FAQ</title>
		<link>http://www.michalsonsattorneys.com/privacy-faq/2895</link>
		<comments>http://www.michalsonsattorneys.com/privacy-faq/2895#comments</comments>
		<pubDate>Sun, 08 Aug 2010 06:58:54 +0000</pubDate>
		<dc:creator>Lance Michalson</dc:creator>
		
		<category><![CDATA[Clients]]></category>

		<category><![CDATA[Privacy]]></category>

		<guid isPermaLink="false">http://www.michalsonsattorneys.com/?p=2895</guid>
		<description><![CDATA[What impact will the new privacy bill have on my business?

the way you manage information: in terms of the the Protection of Personal Information Bill (&#8221;POPI&#8221;), you will now have to classify what information you hold constitutes &#8220;personal information&#8221; (PI). King 3 also requires  companies to identify what &#8220;records&#8221; and &#8220;sensitive&#8221; information they hold. You [...]]]></description>
			<content:encoded><![CDATA[<p><strong>What impact will the new privacy bill have on my business?</strong></p>
<ul>
<li>the way you manage information: in terms of the the Protection of Personal Information Bill (&#8221;POPI&#8221;), you will now have to classify what information you hold constitutes &#8220;personal information&#8221; (PI). King 3 also requires  companies to identify what &#8220;records&#8221; and &#8220;sensitive&#8221; information they hold. You can therefore &#8216;kill three birds with one stone&#8217;  when doing a PI classification.  There will be different handling criteria for PI and non PI.</li>
<li>you will have to notify third parties of breaches of their personal info due to a privacy breach.</li>
<li>If you want more information on how POPI will affect you, read <a href="http://www.onlinelegal.co.za/protection-of-personal-information-bill-the-implications-for-you/3041" onclick="pageTracker._trackPageview('/outgoing/www.onlinelegal.co.za/protection-of-personal-information-bill-the-implications-for-you/3041?referer=');">here</a> and attend one of our <a href="http://www.michalsonsattorneys.com/how-will-the-ppi-bill-affect-you/2586">webinars</a>.</li>
</ul>
<p><strong>When will the new privacy bill be promulgated?</strong></p>
<ul>
<li>sometime during 2010.</li>
</ul>
<p><strong>Are there other South Africa legislation that regulates privacy in South Africa?</strong></p>
<ul>
<li>It is envisaged that POPI will be the primary legislation dealing with the protection of information. This does not mean that it will necessarily be the only one. However, any other Act will have to comply with the principles set out in POPI. Existing legislation will therefore have to be amended (a huge number of Acts will have to be dealt with in consequential amendments when POPI is enacted) to ensure compatibility and any new legislation will have to comply from the start. According to the SA Law Commission which drafted POPI, the following is envisaged in respect of the most important pieces of legislation that has been  identified: The privacy provisions in the <a href="http://www.internet.org.za/ect_act.html#PROTECTION_OF_PERSONAL_INFORMATION" onclick="pageTracker._trackPageview('/outgoing/www.internet.org.za/ect_act.html_PROTECTION_OF_PERSONAL_INFORMATION?referer=');">Electronic Communications and Transactions Act</a> will fall away in instances of duplication. Sections in the <a href="http://www.acts.co.za/promotion_of_access_to_information_act_2000.htm" onclick="pageTracker._trackPageview('/outgoing/www.acts.co.za/promotion_of_access_to_information_act_2000.htm?referer=');">Promotion of Access to Information Act</a> dealing with a person&#8217;s own personal information (as opposed to third party information and general information) will fall away and be dealt with in POPI. The <a href="http://www.ncr.org.za/" onclick="pageTracker._trackPageview('/outgoing/www.ncr.org.za/?referer=');">National Credit Act</a> (&#8221;NCA&#8221;) and the <a href="http://www.michalsonsattorneys.com/category/consumer-protection">Consumer Protection Act</a> (&#8221;CPA&#8221;) will have to be amended to comply with all the privacy principles or the sections dealing with privacy removed and dealt with in POPI. An arrangement to this effect is already in place with the DTI in so far as the NCA is concerned (the NCA was enacted before the PPI draft was available) and consultation regarding the CPB will still have to take place.</li>
</ul>
<p><strong>How is sensitive information like a persons &#8220;race&#8221; protected through the new privacy bill when it is required to submit this information for employment equity purposes?</strong></p>
<ul>
<li>&#8220;Protected&#8221; is misleading. If it constitutes &#8220;personal information&#8221; it has to be processed ito PPI</li>
</ul>
<p><strong>How should personal information be protected by organisations?</strong></p>
<ul>
<li>First, conduct a <a href="http://www.michalsonsattorneys.com/privacy-impact-assessment/1579">privacy impact assessment</a>;</li>
<li>Secondly, develop an inward facing privacy policy in place describing how the company deals with employee, company and third party PI;</li>
<li> Thirdly, develop an outward facing privacy policy on your website describing how the company deals with 3rd party PI it collect through the website;</li>
<li>Fourthly, put appropriate technology in place to protect PI.</li>
</ul>
<p><strong>What is the difference between privacy and security?</strong></p>
<ul>
<li>Information security is distinct from the concept of privacy, although the two concepts often overlap.  &#8220;Privacy&#8221; involves the protection of a person&#8217;s personal information by inter alia limiting the amount and kind of personal information gathered, notifying the person of the ways in which the person&#8217;s information is used or disclosed, obtaining the person&#8217;s consent to such use and disclosure and providing means for a person to review and update his own personal information.  The concept of privacy also entails that a person&#8217;s private information will be kept secure against loss, theft, modification, unauthorised access, use or disclosure.  Because the concept of privacy therefore encompasses security, but not vice versa, it is possible to have security without privacy.  However, it is not possible to have privacy without security.  Privacy is therefore broader than security.  There is however a considerable overlap between privacy compliance and security obligations.</li>
</ul>
<p><strong>How much would it cost to ensure compliance with POPI? </strong>One has to factor in the cost of:</p>
<ul>
<li>a <a href="http://www.michalsonsattorneys.com/privacy-impact-assessment/1579">privacy impact assessment</a>;</li>
<li>the identification of PI;</li>
<li>drafting and implementation of policies, training and technology.</li>
</ul>
<p><strong>What type of organisations will be affected most by the privacy bill?</strong></p>
<ul>
<li>All companies, but in particular companies that deal with a lot of sensitive PI such as banks, insurance companies and other companies in the financial services sector and companies that deal with medical information: medical aids etc&#8230;</li>
</ul>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.michalsonsattorneys.com%2Fprivacy-faq%2F2895&amp;linkname=Privacy%20FAQ" onclick="pageTracker._trackPageview('/outgoing/www.addtoany.com/share_save?linkurl=http_3A_2F_2Fwww.michalsonsattorneys.com_2Fprivacy-faq_2F2895_amp_linkname=Privacy_20FAQ&amp;referer=');"><img src="http://www.michalsonsattorneys.com/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.michalsonsattorneys.com/privacy-faq/2895/feed</wfw:commentRss>
		</item>
		<item>
		<title>IT Goods and Services Audit</title>
		<link>http://www.michalsonsattorneys.com/it-goods-and-services-audit/2888</link>
		<comments>http://www.michalsonsattorneys.com/it-goods-and-services-audit/2888#comments</comments>
		<pubDate>Thu, 05 Aug 2010 11:55:37 +0000</pubDate>
		<dc:creator>Lance Michalson</dc:creator>
		
		<category><![CDATA[Audits]]></category>

		<category><![CDATA[Clients]]></category>

		<category><![CDATA[Goods or Services]]></category>

		<guid isPermaLink="false">http://www.michalsonsattorneys.com/?p=2888</guid>
		<description><![CDATA[This audit deals with the acquisition, management and disposal of IT goods and services.
Principle 5.4 of King III states that &#8220;The board should monitor and evaluate significant IT investments and expenditure.&#8221;
IT investment and expenditure includes the acquisition, management and disposal of IT goods or services.
Types of IT goods or services, include (amongst others):

IT infrastructure,
applications,
peripherals,
the rental [...]]]></description>
			<content:encoded><![CDATA[<p>This audit deals with the acquisition, management and disposal of <a href="http://www.michalsonsattorneys.com/acquiring-ict-goods-or-services/2249">IT goods and services</a>.</p>
<p>Principle 5.4 of King III states that &#8220;<em>The board should monitor and evaluate significant IT investments and expenditure</em>.&#8221;</p>
<p>IT investment and expenditure includes the acquisition, management and disposal of IT goods or services.</p>
<p>Types of IT goods or services, include (amongst others):</p>
<ul type="disc">
<li>IT infrastructure,</li>
<li>applications,</li>
<li>peripherals,</li>
<li>the rental of goods,</li>
<li>the purchase of goods,</li>
<li>software,</li>
<li>cloud-computing,</li>
<li>application service provider (ASP) services,</li>
<li>Software as a Service (SaaS),</li>
<li>Platform as a Service (PaaS),</li>
<li>on-demand computing and hardware,</li>
<li>support and maintenance services,</li>
<li>consulting services and professional services,</li>
<li>hosting services,</li>
<li>design and development services,</li>
<li>temporary employment services.</li>
</ul>
<p>Our IT Goods and Services audit assesses you current governance practices relating to IT goods and services. This includes reviewing key contracts to inter alia establish whether:</p>
<ul>
<li>the rights and obligations of all parties have been clearly defined and agreed in writing;</li>
<li>the agreement has been drafted in <a href="http://www.michalsonsattorneys.com/category/plain-language">plain language</a> and should not include legal or technical jargon;</li>
<li>they contain the alternative dispute resolution clause recommended by King III.</li>
</ul>
<p>It also includes establishing whether good vendor management procedures are  followed.  They include:</p>
<ul class="unIndentedList">
<li> The escalation of issues</li>
<li> The notification of breaches of the agreement</li>
<li> The transfer of services on termination of the relationship</li>
</ul>
<p>The audit also seeks to ascertain whether information security and sustainability have been addressed as part of the disposal of IT goods.  For example,</p>
<ul type="disc">
<li>the company should scrub hard      drives before disposing of them.</li>
<li>the company should consider      the impact on the environment before disposing of print cartridges.</li>
</ul>
<p>For further information please contact <a href="mailto: info@michalsons.com">info@michalsons.com</a></p>
<p>If you want to find out more about information management go to <a href="http://www.michalsons.com/category/information-management" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.michalsons.com/category/information-management?referer=');">Online Legal</a>.</p>
<p>Click <a href="http://www.michalsons.com/test-your-awareness-of-technology-laws/1493" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.michalsons.com/test-your-awareness-of-technology-laws/1493?referer=');">here</a> to test your awareness of Technology Laws.</p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.michalsonsattorneys.com%2Fit-goods-and-services-audit%2F2888&amp;linkname=IT%20Goods%20and%20Services%20Audit" onclick="pageTracker._trackPageview('/outgoing/www.addtoany.com/share_save?linkurl=http_3A_2F_2Fwww.michalsonsattorneys.com_2Fit-goods-and-services-audit_2F2888_amp_linkname=IT_20Goods_20and_20Services_20Audit&amp;referer=');"><img src="http://www.michalsonsattorneys.com/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.michalsonsattorneys.com/it-goods-and-services-audit/2888/feed</wfw:commentRss>
		</item>
		<item>
		<title>Access to Information Audit</title>
		<link>http://www.michalsonsattorneys.com/access-to-information-audit/2885</link>
		<comments>http://www.michalsonsattorneys.com/access-to-information-audit/2885#comments</comments>
		<pubDate>Thu, 05 Aug 2010 11:38:16 +0000</pubDate>
		<dc:creator>Lance Michalson</dc:creator>
		
		<category><![CDATA[Access to Information]]></category>

		<category><![CDATA[Audits]]></category>

		<category><![CDATA[Clients]]></category>

		<guid isPermaLink="false">http://www.michalsonsattorneys.com/?p=2885</guid>
		<description><![CDATA[You must comply with the Promotion of Access to Information Act 2 of 2000 (PAIA), because it applies to all organisations.
PAIA as a lot of practical implications. Click here to understand what they are.
In terms of PAIA all private bodies (entities mentioned above as defined in PAIA) and public bodies (mainly state departments and state [...]]]></description>
			<content:encoded><![CDATA[<p>You must comply with the Promotion of Access to Information Act 2 of 2000 (PAIA), because it applies to all organisations.</p>
<p>PAIA as a lot of practical implications. Click <a href="http://www.michalsons.com/access-to-information-the-practical-implications/3366" onclick="pageTracker._trackPageview('/outgoing/www.michalsons.com/access-to-information-the-practical-implications/3366?referer=');">here</a> to understand what they are.</p>
<p>In terms of PAIA all private bodies (entities mentioned above as defined in PAIA) and public bodies (mainly state departments and state administrations as defined in PAIA) must give access to their records if a party requests a record in terms of PAIA.</p>
<p>We perform a GAP analysis establish whether your current processes and procedures comply with the requirements of PAIA.</p>
<p>For further information please contact <a href="mailto: accessaudit@michalsons.com">accessaudit@michalsons.com</a></p>
<div>
<p>If you want to find out more about monitoring go to <a href="http://www.michalsons.com/category/monitoring" onclick="pageTracker._trackPageview('/outgoing/www.michalsons.com/category/monitoring?referer=');">Online Legal</a>.</p>
<p>Click <a href="http://www.michalsons.com/test-your-awareness-of-technology-laws/1493" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.michalsons.com/test-your-awareness-of-technology-laws/1493?referer=');">here</a> to test your awareness of Technology Laws.</div>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.michalsonsattorneys.com%2Faccess-to-information-audit%2F2885&amp;linkname=Access%20to%20Information%20Audit" onclick="pageTracker._trackPageview('/outgoing/www.addtoany.com/share_save?linkurl=http_3A_2F_2Fwww.michalsonsattorneys.com_2Faccess-to-information-audit_2F2885_amp_linkname=Access_20to_20Information_20Audit&amp;referer=');"><img src="http://www.michalsonsattorneys.com/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.michalsonsattorneys.com/access-to-information-audit/2885/feed</wfw:commentRss>
		</item>
		<item>
		<title>Records Governance Audit</title>
		<link>http://www.michalsonsattorneys.com/records-governance-audit/1563</link>
		<comments>http://www.michalsonsattorneys.com/records-governance-audit/1563#comments</comments>
		<pubDate>Thu, 05 Aug 2010 07:20:19 +0000</pubDate>
		<dc:creator>Lance Michalson</dc:creator>
		
		<category><![CDATA[Audits]]></category>

		<category><![CDATA[Information Management]]></category>

		<guid isPermaLink="false">http://www.michalsonsattorneys.com/?p=1563</guid>
		<description><![CDATA[This audit focuses on compliance with the requirements for records creation, capture, management, access, retention and destruction originating from regulatory and best practice requirements.
This necessitates a review of the company&#8217;s current practices in respect of each of the following areas:

Record Keeping Function (Processes &#38; Control)
Record Keeping Policy Statements
Roles and Responsibilities
Record Creation and Record Keeping (Active and [...]]]></description>
			<content:encoded><![CDATA[<p>This audit focuses on compliance with the requirements for records creation, capture, management, access, retention and destruction originating from regulatory and best practice requirements.</p>
<p>This necessitates a review of the company&#8217;s current practices in respect of each of the following areas:</p>
<ul>
<li>Record Keeping Function (Processes &amp; Control)</li>
<li>Record Keeping Policy Statements</li>
<li>Roles and Responsibilities</li>
<li>Record Creation and Record Keeping (Active and Inactive Records)</li>
<li>Record Maintenance (Safe Keeping)</li>
<li>Record Disposal</li>
<li>Record Access (Security, privacy, confidentiality and legal liability)</li>
<li>Monitoring and Reporting (Implementation and evaluation)</li>
<li>Scanned images of paper documents</li>
</ul>
<p>Each of these areas comprise one of the building blocks (modules) of our records governance audit.</p>
<p>Our approach entails undertaking a high level (broad but shallow) audit of the existing state of records governance . We  utilise our Record Keeping Compliance Framework which assesses the company&#8217;s  record keeping practices against South African legal requirements, standards and best practice while taking into account organisational strategies and objectives. The audit will further highlight the risks posed in terms of non-compliance.</p>
<p>There is a specific focus on &#8220;records&#8221;. There are several statutes in South Africa which require organisations to keep &#8220;records&#8221;.  The ability to separate business records (both electronic and paper), from non-essential records is at the heart of the matter.  It is critical that organisations be able to separate the &#8220;wheat&#8221; from the &#8220;chaff&#8221; and identify their records as this allows organisations to amongst others maintain control over their storage requirements, storage costs and speed up the compliance process in the event that a record is required to satisfy a statutory or legal requirement (e.g. discovery of documents in legal proceedings) at some future date.</p>
<p>Our deliverables could include the following (to be delivered in consultation with you):</p>
<ul>
<li>Delivering a high level<strong> GAP Analysis Report</strong> detailing your current status, ideal status and legal and compliance gaps;</li>
<li>The Report will highlight risks and make recommendations in the form of an <strong>Action Plan</strong>.</li>
</ul>
<p>Where necessary, we recommend solutions which would ensure compliance with South African regulatory requirements and implement best practice where sound business practice, rather than a legal requirement, dictate that risk be managed.</p>
<p>For further information please contact <a href="mailto:rimaudit@michalsons.com.">recordsgovaudit@michalsons.com</a></p>
<p>If you want to find out more about information management go to <a href="http://www.michalsons.com/category/information-management" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.michalsons.com/category/information-management?referer=');">Online Legal</a>.</p>
<p>Click <a href="http://www.michalsons.com/test-your-awareness-of-technology-laws/1493" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.michalsons.com/test-your-awareness-of-technology-laws/1493?referer=');">here</a> to test your awareness of Technology Laws.</p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.michalsonsattorneys.com%2Frecords-governance-audit%2F1563&amp;linkname=Records%20Governance%20Audit" onclick="pageTracker._trackPageview('/outgoing/www.addtoany.com/share_save?linkurl=http_3A_2F_2Fwww.michalsonsattorneys.com_2Frecords-governance-audit_2F1563_amp_linkname=Records_20Governance_20Audit&amp;referer=');"><img src="http://www.michalsonsattorneys.com/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.michalsonsattorneys.com/records-governance-audit/1563/feed</wfw:commentRss>
		</item>
		<item>
		<title>Consumer Protection Act Audit</title>
		<link>http://www.michalsonsattorneys.com/consumer-protection-act-audit/2410</link>
		<comments>http://www.michalsonsattorneys.com/consumer-protection-act-audit/2410#comments</comments>
		<pubDate>Thu, 05 Aug 2010 07:15:41 +0000</pubDate>
		<dc:creator>Jana Van Zyl</dc:creator>
		
		<category><![CDATA[Audits]]></category>

		<category><![CDATA[Consumer Protection]]></category>

		<guid isPermaLink="false">http://www.michalsonsattorneys.com/?p=2410</guid>
		<description><![CDATA[
The Consumer Protection Act (CPA) has been signed into law and will become operative on 24 October 2010. The CPA will have huge implications for your standard business terms and conditions, policies and other documents. The CPA introduces many obligations on vendors which vendors may probably not even be aware of because it was never [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-2054" style="margin: 10px;" title="Jana van Zyl" src="http://www.michalsonsattorneys.com/wp-content/uploads/2009/11/jana_van_zyl_001.jpg" alt="Jana van Zyl" width="150" height="150" /></p>
<p>The <a title="Consumer Protection Act" href="http://www.acts.co.za/consumer_protection_act_2008/index.htm" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.acts.co.za/consumer_protection_act_2008/index.htm?referer=');">Consumer Protection Act</a> (CPA) has been signed into law and will become operative on 24 October 2010. The CPA will have huge implications for your standard business terms and conditions, policies and other documents. The CPA introduces many obligations on vendors which vendors may probably not even be aware of because it was never before required by law. These include for example:</p>
<ul class="unIndentedList">
<li> A vendor must bring certain clauses to a customer&#8217;s attention;</li>
<li> Very specific requirements when selling goods voetstoots;</li>
<li> Warranty against defective goods for 6 months;</li>
<li> Liability for gross negligence.</li>
</ul>
<p>It is imperative that you as Vendor understand what you may and may not include in your terms and other documents. To accomplish this, we can perform a two leg exercise to your existing documents. We</p>
<ol type="1">
<li><strong>Audit</strong> your existing documents to determine whether they <strong>comply </strong>with the      provisions of the CPA; and</li>
<li><strong>Draft or redraft</strong> appropriate clauses where your existing documents do not comply.</li>
</ol>
<p>We can also provide advice or an opinion<strong> </strong>on various clauses independently like warranty, indemnity, liability, delivery and any others.</p>
<p>We will help you to:</p>
<ol type="1">
<li>Assess where you are;</li>
<li>Determine the gap between your actual position and      compliance;</li>
<li>Fill the gap to ensure that your documents comply.</li>
</ol>
<p>Through the audit you either get assurance that you comply or we help you to comply.</p>
<p>The deliverables are:</p>
<ol type="1">
<li>a written report on the audit including a report on all      aspects where your existing documents do not comply and the implications      of non - compliance. It entails a clause by clause examination and      references to the applicable section in the CPA;</li>
<li>redrafted or new clauses to ensure compliance.</li>
</ol>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.michalsonsattorneys.com%2Fconsumer-protection-act-audit%2F2410&amp;linkname=Consumer%20Protection%20Act%20Audit" onclick="pageTracker._trackPageview('/outgoing/www.addtoany.com/share_save?linkurl=http_3A_2F_2Fwww.michalsonsattorneys.com_2Fconsumer-protection-act-audit_2F2410_amp_linkname=Consumer_20Protection_20Act_20Audit&amp;referer=');"><img src="http://www.michalsonsattorneys.com/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.michalsonsattorneys.com/consumer-protection-act-audit/2410/feed</wfw:commentRss>
		</item>
		<item>
		<title>Web site Audit</title>
		<link>http://www.michalsonsattorneys.com/web-site-audit/1584</link>
		<comments>http://www.michalsonsattorneys.com/web-site-audit/1584#comments</comments>
		<pubDate>Thu, 05 Aug 2010 07:01:39 +0000</pubDate>
		<dc:creator>Lance Michalson</dc:creator>
		
		<category><![CDATA[Audits]]></category>

		<category><![CDATA[Web Sites]]></category>

		<guid isPermaLink="false">http://www.michalsonsattorneys.com/?p=1584</guid>
		<description><![CDATA[In this audit we ascertain the extent to which the organisation&#8217;s web site complies with applicable law. The benefits include:

Grow your business by building trust with the visitors to your web site
Avoid legal problems, difficulties, and disputes by managing your legal risks
Avoid costly litigation
Avoid fines and imprisonment by complying with the laws related to web [...]]]></description>
			<content:encoded><![CDATA[<p>In this audit we ascertain the extent to which the organisation&#8217;s web site complies with applicable law. The benefits include:</p>
<ul class="unIndentedList">
<li>Grow your business by building trust with the visitors to your web site<strong></strong></li>
<li><strong>Avoid legal problems, difficulties, and disputes </strong>by managing<strong> </strong>your legal risks</li>
<li>Avoid costly litigation</li>
<li><strong>Avoid </strong>fines and imprisonment by complying<strong> </strong>with the laws related to web sites and electronic transactions</li>
<li>Follow <strong>best practice</strong></li>
</ul>
<p>We focus on, amongst others, issues around:</p>
<ol>
<li>the design of the web site (different issues flow from whether it was developed and designed in-house or by an outside advertising agency or website developer),</li>
<li>copyright,</li>
<li>the contractual terms - terms and conditions and privacy policies,</li>
<li>so-called web site &#8220;linking&#8221; and &#8220;framing&#8221;,</li>
<li>trade marks,</li>
<li>domain names,</li>
<li>security,</li>
<li>payment mechanisms,</li>
<li>consumer protection, and</li>
<li>the processing of personal information - privacy and data protection.</li>
</ol>
<p>We review the web site (including the current terms and conditions and privacy policy) and perform a GAP analysis where we assess the extent to which an organisation is &#8220;compliant&#8221; with applicable law.  We often have to ask various questions to gather additional information related to the web site that we require to conduct the audit.   Where necessary, we recommend solutions which would ensure compliance with South African regulatory requirements and implement best practice where sound business practice, rather than a legal requirement, dictate that the risk be managed.</p>
<p>The deliverable is a written <strong>web site audit report</strong>.  The audit report includes a table setting out:</p>
<ul>
<li>The compliance or risk issue</li>
<li>Our observation or the current status</li>
<li>Whether the web site is compliant or not</li>
<li>Whether there is a risk or not</li>
<li>Our suggested recommendation or control</li>
</ul>
<p>The report also includes an action plan to ensure that the audit results in action being taken that adds value to the web site and the web site owner.</p>
<p>For further information please contact <a href="mailto: websiteaudit@michalsons.com">websiteaudit@michalsons.com</a></p>
<p>If you want to find out more about web site related issues, go to <a href="http://www.michalsons.com/category/web-sites" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.michalsons.com/category/web-sites?referer=');">Online Legal</a>.</p>
<p>Click <a href="http://www.michalsons.com/test-your-awareness-of-technology-laws/1493" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.michalsons.com/test-your-awareness-of-technology-laws/1493?referer=');">here</a> to test your awareness of Technology Laws.</p>
<a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.michalsonsattorneys.com%2Fweb-site-audit%2F1584&amp;linkname=Web%20site%20Audit" onclick="pageTracker._trackPageview('/outgoing/www.addtoany.com/share_save?linkurl=http_3A_2F_2Fwww.michalsonsattorneys.com_2Fweb-site-audit_2F1584_amp_linkname=Web_20site_20Audit&amp;referer=');"><img src="http://www.michalsonsattorneys.com/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share/Bookmark"/></a>]]></content:encoded>
			<wfw:commentRss>http://www.michalsonsattorneys.com/web-site-audit/1584/feed</wfw:commentRss>
		</item>
	</channel>
</rss>
