| |
Wellington, New Zealand, 29 April 2008
"User centric identity management: an oxymoron or the key to getting identity management right"
(presentation and background paper)
Managing Identity in New Zealand,
Identity Conference 2008
[A video of Malcolm Crompton's presentation is available online,
along with
other presentations at the conference including those by
Sun Microsystems’ Eve Maler, Roger Clarke, Microsoft’s Stefan Brands and Dick Hardt.]
Stockholm, Sweden, 10 December 2007
"Safe to Play: The trust framework in the Connected Republic"
Public Services Summit hosted by City of Stockholm and Cisco
[This presentation started a debate around a draft white paper of the same title written by the Global Public Sector Practice, Internet Business Solutions Group and Cisco, for which IIS was the lead consultant;
the paper is open for comments
at www.TheConnectedRepublic.org]
Cambridge, Massachusetts, USA, 24 August 2007
""Future Proofed" Regulatory Frameworks for Privacy"
Plenary Speech to the Privacy Summer Symposium
York, Maine, USA, 23 August 2007
"APEC & Privacy: why bother; what’s happening in 2007"
Audio Conference hosted by the
International Association of Privacy Professionals (IAPP)
Beijing, China, 16 June 2007
"How accountability via government oversight works today in Australia"
Seminar organised by the Chinese Academy of Social Sciences
Washington DC, USA, 8 March 2007
"The APEC Privacy Framework: Creating Trust in developing Cross Border
Privacy Rules. A Progress Report" - Privacy Summit 2007, International
Association of Privacy Professionals
McLean, Virginia USA, 7 March 2007
"Privacy: Why Bother; what’s happening in Asia"
Seminar with Graduate Management Admission Council®
Brussels, Belgium, 24 October 2006
"APEC Privacy Framework: review, impact and progress"
Conference on International Transfers of Personal Data organised jointly by
the Article 29 Data Protection Working Party (Article 29 WP), the
independent EU Advisory Body on Data Protection and Privacy, and the US
Department of Commerce’s International Trade Administration
Beijing, China, 17 June 2006
"Overview of Asian Privacy Law Lessons Learned and Possible Ways
Forward" - Seminar organised by the Chinese Academy of Social Sciences
Hannover, Germany, 9 March 2006
"The Revolution of RFID - Challenges and Options for Action:
a consumer perspective" - Seminar at CeBIT 2006 to launch 'Europe's RFID
debate' hosted by the European Commission
Hanoi, Viet Nam, 20 February 2006
"APEC Information Privacy Framework (review, impact, and progress)"
APEC Symposium on Information Privacy Protection in E-Government
and E-Commerce
Vienna, Austria, 9 February 2006
"Respecting people, their individuality and their personal information:
The key to Trust in the Net, but where's the keyhole?"
High Level Research Seminar on "TRUST IN THE NET" organised by the European Commission
Stockholm, Sweden, 9 December 2005
"The Trust Cluster: Dealing Effectively with Security, Privacy, Identity
and Authentication at the Heart of Connected Government";
"Respecting people, their individuality and their personal information:
The Key to Connected Government, now and in the future"
Public Services Summit hosted by City of Stockholm and Cisco Systems
Brussels, Belgium, 2 December 2005
"TRUST & the Net: some first thoughts"
Staff Seminar on Framework 7 Research Information Society & Media Directorate-General
Manchester, UK, 29 November 2005
"Data Protection: The Next 21 years? The operating environment"
"Data Protection: The Next 21 years" - Seminar organised by the UK Information Commissioner
Mexico City, 24 November 2005
"Respect your Customers and Build Your Business: Principles for designing
privacy into software using the APEC Privacy Framework"
Encuentro PROSOFT 2005
Montreux, Switzerland, 15 September 2005
"Are comparisons possible? A Framework for assessing the performance
of data protection supervisors" (paper published in Jusletter 3, Oct 2005; presentation) -
27 thInternational Conference of Data Protection and Privacy Commissioners
• Taipei, 24 June 2005
"Trust, Security and Connected Government:
The Evolution of e-Government - From Policy to Practice"
CIO Forum for the Research, Development and Evaluation Commission, Executive Yuan
• Zürich, 4 October 2004
"Proof of ID required? Getting Identity Management Right"
Zurich Information Security Center (ZISC) of the Swiss Federal Institute of Technology
• London, 27 September 2004
"Implementing a New Privacy Regime: Reflections from Australia"
British Institute of International and Comparative Law, 2004 Data Protection Research and Policy Group Series Workshop
• Wroclaw, Poland, 15 September 2004
"Short Notices - why the Sydney resolution was adopted and progress in Australia since September 2003"
26th International Conference on Privacy and Personal Data Protection
• Washington DC, 23 June 2004
"Proof of ID required? Getting Identity Management Right"
Privacy and American Business 10th Annual National Conference
• Kingston, Ontario, 15 June 2004
"Proof of ID required? Getting Identity Management Right"
Queen's University multi-disciplinary "The Surveillance Project"
• Ottawa, 12 June 2004
"Halt! Who goes there?!
Anonymity & privacy 4 years after the dot crash & 2 years after 11 September"
Team Meeting, University of Ottawa multi-disciplinary research project "On the Identity Trail, understanding the importance of anonymity and authentication in a networked society"
• San Francisco, 9-11 June 2004
"The Future of Privacy Technology";
"Privacy on the International Stage: A Vision of the Future";
"International Privacy: Managing Privacy in a Global Organisation - Identity, HR, Security & more"
Privacy Futures, Symposium convened by the International Association of Privacy Professionals (IAPP) and TRUSTe
• Palo Alto, 8 June 2004
"Setting Public Policy" - Conference Board Council of Chief Privacy Officer
• Tivoli, Italy, April 2004
"Privacy & Identity Challenges" - IBM Identity Management Summit
• Santiago, Chile, Feb 2004
"The Nature of Modern Information Management & Its Impact on Privacy Protection"
APEC Symposium On Data Privacy Implementation Mechanisms: Developing The APEC Privacy Framework
• Seattle, May 2003
"Online security in a connected world: public and private sector collaboration" - Microsoft Government Leaders' Summit 2003
• Wellington NZ, March 2003
"Under the Gaze, Privacy Identity & New Technology" - 3rd Privacy Forum
• Washington DC, February 2003
"International Privacy: The Australian perspective"
3rd Annual Privacy Summit, International Association of Privacy Professionals
• Seattle, September 2002
"Security vs Privacy" - Internet Law & Policy Forum 2002
• New York, March 2002
"New Ground Rules for a Post 9/11 World?" - Scientific American's Summit on Preserving an Open Society in an Age of Terrorism
• The Hague, December 2000
"Building Trust in the Online Environment: Business-to-Consumer Dispute Resolution" - OECD, Hague Conference on Private International Law & International Chamber of Commerce
• Venice, September 2000
"Which rules? Integrating different tools in a global perspective"
22nd International Conference on Privacy & Data Protection
• Washington DC, September 2000
"Global Policy Makers" - Global Privacy Summit
• Toronto, April 2000
"A Socratic Dialogue by Privacy Commissioners"
Computers Freedom & Privacy Conference
• Singapore, November 1999
"Privacy Issues with Pervasive Computing"
IBM Pervasive Computing Conference
|
"Quick links"
<
Invited international presentations
<
Other publications
& speeches
<
Major publications,
reports & submissions
Malcolm blogs and comments on
OpenForum.com.au
Recent posts:
28.05.08:
"Identity Management in New Zealand, CeBIT Australia and the Merry Month of May ..."
20.04.08:
"User Centric ID management - Heading for New Zealand"
18.03.08:
"Web 2.0 & rating the Police. A Bruce Schneier perspective"
07.03.08:
"A great day for privacy: genuine privacy respecting, user centric Identity Management has hit the mainstream"
14.01.08:
"Swallows flying by: the small flock grows"
13.01.08:
"The curse of the rule maker. But there's a lesson in it"
12.01.08:
"Another swallow flew by, but who was looking?"
03.01.08:
"Privacy gains attention over the Christmas New Year break. Does a swallow or two make a Spring?"
14.12.07:
""Government 2.0" - is it Safe to Play for the citizen?"
05.12.07:
"eHealth Records – Where Are They?"
01.12.07:
"Losses of personal information, trust and privacy: This is going to change your life"
|
| |
•
“Use Cases for Identity Management in E-Government”,
Robin McKenzie, Malcolm Crompton, Colin Wallis, IEEE Security and Privacy,
vol. 6, no. 2, pp. 51-57, Mar/Apr, 2008; also published on
IEEE Computer Society's website
•
“Once more into the breach – changes to privacy law on the horizon” -
Speech by Malcolm Crompton to Australian Information Security Association chapter meeting, Melbourne, 10 April 2008
• "A Possible Way Forward: Some Themes and an Initial Proposal for a Privacy and Trust Framework" -
a working paper for the Privacy and Trust Partnership seminar & workshop, The State Library of New South Wales, Sydney, 4 December 2007
• "Privacy Challenges and New Technology: Towards the 4th way" -
Futures, A Microsoft Technology Policy Publication, Asia Pacific Region
2007 Vol 2, Issue 2, Sep 2007
• "A New Approach to Trust and Privacy in the Information Age" -
Closing Remarks by the Chair, Malcolm Crompton, at the Privacy and Trust Partnership conference convened in the Parliament House of NSW,
Sydney, 4 July 2007
• "A New Approach to Trust and Privacy in the Information Age" -
a paper for the Privacy and Trust Partnership conference convened in the Parliament House of NSW, Sydney, 4 July 2007
• "Trust and the critical role of user centric ID management"
(background paper; PDF 157KB) - Virtual Opportunity Congress IV on
Identity & Access, Brisbane, Dec 2006
• "Multi-layered notices 12 months on - the work goes on" - Privacy Law
Bulletin, Vol. 3, No 2, July 2006, LexisNexis Butterworths, Sydney
• "eHealth: Myth-Busting - Fact, Fiction and the Future" - Australian
Medical Association 2006 Annual Conference, Adelaide, 27 May 2006
• "Implementing the APEC Privacy Framework: A New Approach"
(with Peter Ford) - The Privacy Advisor, Vol 5, No 15, Dec 2005, International Association of Privacy Professionals, York, Maine, USA
• "How to hold regulators to account" - The Public Sector Informant (supplement to The Canberra Times), Nov 2005
• "Australia: State of play in a changing environment"
- Data Protection Law & Policy, Vol 2, Issue 10, October 2005, Cecile Park Publishing Limited, London UK
• "Final Report of the 2nd Technical Seminar on APEC Privacy Framework"
- Electronic Commerce Steering Group II, Document No 2005/SOM3/ECSG/021, Gyeongju, Korea, Sep 2005
• "The Networked Society: Identity, Surveillance and Privacy" (background paper; PDF 529KB)
- The Baycorp seminar for senior business, regulator, government and consumer thinkers: Setting the Scene, Aug 2005
• "If not Australia Card, what? Yes, there is a better way to an online identity solution" -
Australian eCommerce Network, Melbourne, Aug 2005
• "Multilayered privacy notices - a better way" - Privacy Law Bulletin, Vol. 2, No 1, May/June 2005, LexisNexis Butterworths, Sydney
• "Privacy Regulators: Assessing Performance"
- Data Protection Law and Policy, Vol. 2, Issue 5, May 2005, Cecile Park Publishing Limited, London UK
•
"Light Touch or Soft Touch - Reflections of a Regulator Implementing a New Privacy Regime"
- Annual Governance Network & Regulatory Institutions Network Conference, Australian National University, Canberra, 8 Dec 2004
• "Proof of ID required? Getting Identity Management Right"
- Public Lecture, University of Western Australia, Perth, 16 Nov 2004
• "Privacy in Human Genetic Research: Public Assurance & Public Trust"
- Genomics Directions: Bioethics & Beyond - a Bioethics Seminar,
Perth, 16 Nov 2004
• "Data Linkage in Western Australia" - Telethon Institute for Child Health Research, Perth, 15 Nov 2004
• "eHealth - improving patient privacy and other health outcomes in an era of rising expectations" - Department of Health South Australia Seminar, Adelaide, 22 Oct 2004
• Peer Review, Information Commissioner's Office, UK - conducted for the UK Information Commissioner, Oct 2005
•
"Proof of ID required? Getting Identity Management Right"
- A seminar in the Vital Issues Program for the Parliamentary Library, Parliament of Australia, Canberra, 4 Aug 2004
•
"Vision for Health Care" - Australian Medical Association 2004 Annual Conference, Brisbane, 30 May 2004
•
"Is a 21st Century Australia Card a recipe for increased Identity Fraud?"
- AusCERT Asia Pacific Information Technology Security Conference 2004, Brisbane, 24 May 2004
|
|
| |
|
• "Customer Lists" - Report commissioned by the Credit Union Industry Association , Dec 2005
• "Management and Integrity of Electronic Information in the Commonwealth" - Joint Committee of Public Accounts and Audit , Jan 2003
• "Introduction of ENUM to Australia" - Australian Communications
Authority, Nov 2002
• "Australian Crime Commission Establishment Bill 2002" - Joint Committee on National Crime Authority, Nov 2002
• "Review of the Direct Marketing Model Code of Practice" - Treasury,
Nov 2002
• "Interim Report of the Spam Review: The Spam Problem and How it Can be Countered" - National Office for the Information Economy, Oct 2002
• "Inquiry into the Conduct of the 2001 Federal Election" - Joint Standing Committee on Electoral Matters, July & Oct 2002
• "Protection of Human Genetic Information" - ALRC/AHEC Joint Inquiry, March & June 2002
• "Security Legislation Amendment (Terrorism) Bill 2002 and Related Bills" - Senate Legal and Constitutional Legislation Committee, Apr 2002
• "Inquiry into the Provisions of the Privacy Amendment (Private Sector) Bill 2000" - Senate Legal and Constitutional Legislation Committee, Sep 2000
• "Inquiry into E-Privacy" - Senate Select Committee on Information Technologies, July 2000
• "Inquiry into the Privacy Amendment (Private Sector) Bill 2000" -
HoR Standing Committee on Legal and Constitutional Affairs, May 2000
• "Application of the National Privacy Principles for the Fair Handling of personal health information" - report to the Attorney-General, Dec 1999
• "Review of the ANAO audit report No. 37 1998-99 on the management of Tax File Numbers" - HoR Standing Committee on Economics, Finance and Public Administration, Nov 1999
|
Links to
Submissions as Privacy Commissioner
are available at the
Office of the Federal
Privacy Commissioner's website
|
Guidelines & Speeches
published while Federal Privacy Commissioner:
< Guidelines
to assist business, government and health organisations in wide range of circumstances, from employee privacy
when using the Internet, to using Public Key Infrastructure, to compliance with the Privacy Act 1988
< Speeches
based on PowerPoint presentations
|
|
• "Light Touch or Soft Touch - Reflections of a Regulator Implementing a New Privacy Regime" -
National Institute of Governance, Canberra; and Committee for Economic Development of Australia, Melbourne, Mar 2004
• "Proof of ID required? Getting Identity Management Right" - Australian IT Security Forum, Sydney, 30 Mar 2004
• "Overview of Public Access and Privacy Issues - the Community Perspective" - Chapter 3 in Proceedings of the First Courts for the 21stCentury
Conference: Public Access, Privacy and Security, 6 November 2003, Queensland University of Technology, Brisbane, November 2003
• "Under the Gaze, Privacy Identity & New Technology" - 75th
Anniversary Congress, Union Internationale des Advocats (UIA), Sydney, 28 Oct 2002; "World Data Protection Report" - Vol. 3, Issues 4 & 5,
Apr & May 2003
• "Are we celebrating a first birthday?" - 4th Administrative Law Conference, Centre for International &
Public Law, Australian National University, Canberra, 2 Nov 2002
• "Biometrics and Privacy: The end of the world as we know it or the White Knight of Privacy?" - Conference on Biometrics - Security
and Authorisation, Biometrics Institute, Sydney, 20 Mar 2002; since published in "Privacy Law & Policy Reporter" - Vol. 9, Nos 3 & 4, Aug & Sep 2002
• "Privacy, Technology and the Healthcare Sector" - 4th Australian Financial Review Annual Health Congress, Sydney, 28 Feb 2002
• "Privacy in Australia, Privacy - Make it your Business" - Vic Department of Human Services conference, Melbourne, 26 Nov 2001
• "What is Privacy?" - Privacy and Security in the Information Age, convened by the Attorney-General of Australia, 16 Aug 2001
• "Web Seals: A Review of Online Privacy Programs" - Joint Project of the Office of the Information and Privacy Commissioner/Ontario
and the Office of the Federal Privacy Commissioner of Australia, Sept 2000
• "Introducing the National Privacy Principles - their purpose and development, Minimising Risks and
Costs of Privacy Compliance" - an IIR conference, Melbourne, 31 May 1999
|
|