SlideShare a Scribd company logo
Ovations Group - Introducing the Protection of Personal Information (PoPI) act and achieving compliance
OVERVIEW
OUR APPROACH

OUR OFFERINGS
CONCLUSION
DO YOUR POLICIES
AND PROCEDURES
ENABLE DATA
PRIVACY?
DID YOU KNOW:
THE PROTECTION OF PERSONAL INFORMATION
(POPI) ACT WILL HAVE AN IMPACT ON ALMOST
EVERY COMPANY OPERATING IN SA?
THE POPI ACT WILL

ESTABLISH A
CODE OF CONDUCT
FOR CONFIDENTIAL
HANDLING OF
PERSONAL
INFORMATION
7

CONDITIONS

FOR LAWFUL
PROCESSING OF PERSONAL INFORMATION

Collection of data
Processing limitations
Retention of data
Deletion of information
Data security
Data subject participation
Notification
COLLECTION OF DATA

Information must be
collected directly from
the individual
Exceptions:
– Public records
– Consent given to a third party
– Law enforcement
COLLECTION OF DATA
The person must be
aware of the purpose
for collecting their
personal information
and give consent
There is additional
consent needed
to store and process
data outside of South
Africa
PROCESSING LIMITATIONS
Businesses are not permitted to process
personal information of children under 18
PROCESSING
LIMITATIONS
Unless specifically
permitted, you are
NOT ALLOWED to
process information
about…

Religious or
philosophical beliefs
PROCESSING
LIMITATIONS
Unless specifically
permitted, you are
NOT ALLOWED to
process information
about…

Trade union
membership
or political
opinions
PROCESSING
LIMITATIONS
Unless specifically
permitted, you are
NOT ALLOWED to
process information
about…

Health, sexual
life or biometric
details
PROCESSING
LIMITATIONS
Unless specifically
permitted, you are
NOT ALLOWED to
process information
about…

Race or ethnic origin
PROCESSING
LIMITATIONS
Unless specifically
permitted, you are
NOT ALLOWED to
process information
about…

Criminal Behaviour
RETENTION OF DATA

Information must
NOT be kept any
longer than is
necessary for
processing
DELETION OF INFORMATION

Data must be
destroyed as
soon as possible
It must be
impossible for
data to ever be
recovered or
reconstructed
DATA SECURITY

Technical and
organisational
security
measures to
prevent data
loss or
damage, or
unlawful access
to personal
information are
essential.
DATA SUBJECT PARTICIPATION
A person must be able to:

Find who has their data
Request a copy of all
personal information held
by an organisation
Request amendments or
deletion of their data,
and receive proof this
has been done

******
****
ENFORCEMENT

Official complaint process
Punishment up to 10 years
imprisonment and/or fine
up to R10 million
Civil action may also be
taken
OVERVIEW
OUR APPROACH

OUR OFFERINGS
CONCLUSION
OUR APPROACH

We can help you define a strategy
and roadmap to become compliant
with the POPI Act.
We provide a complete and holistic
execution that interweaves the key
areas of PEOPLE

PROCESSES
TECHNOLOGY
PROCESS DIAGRAM
Our transformational approach focusing on
enablement of people, process and technology.

INSIGHT

•
•
•
•

People understanding
Skills and capacity
Process capability
Technology availability
and capability

Current
state

TRANSFORMATION
ROADMAP

Design the business
response to ensure
effective and efficient
compliance

POPI vision
and strategy

ENABLEMENT

Prioritised investment
route map based on
business and IT
considerations in support
of defined architecture

People education
Process compliance
Technology capability
PROCESS DIAGRAM
Our transformational approach focusing on
enablement of people, process and technology.

INSIGHT

•
•
•
•

People understanding
Skills and capacity
Process capability
Technology availability
and capability

Current
state

TRANSFORMATION
ROADMAP

Design the business
response to ensure
effective and efficient
compliance

POPI vision
and strategy

ENABLEMENT

Prioritised investment
route map based on
business and IT
considerations in support
of defined architecture

People education
Process compliance
Technology capability
PROCESS DIAGRAM
Our transformational approach focusing on
enablement of people, process and technology.

Current
state

Status of
Enablement

Business and
compliance risks

POPI vision
and strategy

Business architecture

Information systems architecture

Technology architecture

People enablement

People education
Process compliance
Technology capability

Business
and risk
considerations

Costs and time
considerations
OVERVIEW
OUR APPROACH

OUR OFFERINGS
CONCLUSION
STRATEGY

POPI Strategy and
Implementation
Roadmap

Business case
development
TRAINING AND EDUCATION

POPI Act and
Implications
customised for
implemented
solutions
CHANGE & COMMUNICATION

Strategy & Planning
Development &
execution of awareness
campaigns
DATA

Data Audits,
Security &
Management
PROCESS & CONTENT
Process Solution Design &
Automation

Records Management
assessment, design &
enablement
Security policy enablement
Content archival solutions

Content Governance
Document destruction services
OVERVIEW
OUR APPROACH

OUR OFFERINGS
CONCLUSION
LET US HELP YOU
BECOME COMPLIANT
Ovations is equipped to transform your
business to comply with the Protection of
Personal Information Act.

More Related Content

PDF
Opportunities and benefits of POPI
PPTX
PPSX
POPI Act compliance presentation
PPTX
PDF
Cor concepts information governance-protection-of-personal-information-act-popi
PPTX
The Protection of Personal Information Act: A Presentation
PPTX
POPI Seminar FINAL
PPTX
Protection of Personal Information Bill (POPI)
Opportunities and benefits of POPI
POPI Act compliance presentation
Cor concepts information governance-protection-of-personal-information-act-popi
The Protection of Personal Information Act: A Presentation
POPI Seminar FINAL
Protection of Personal Information Bill (POPI)

What's hot (18)

PPTX
The Protection of Personal Information Act 4 of 2013
PPTX
The Popi Act 4 of 2013 - Implications for iSCM
PPTX
Popi act presentation
PDF
Practical steps to take in preparation for the Protection of Personal Informa...
PDF
Personal Data Protection Law
PDF
Uchi data local presentation 2020
PPTX
Privacy and Protection of Personal Information law seminar
PDF
Werksmans presentations on popi
PDF
Introduction to EU General Data Protection Regulation: Planning, Implementati...
PPTX
Clyrofor popia readiness webinar
PPT
Personal Data Protection in Malaysia
PDF
Personal Data Protection Act - Employee Data Privacy
PDF
Documents, documents and more documents - is it time to spring clean? - Ahmor...
PPT
Data Protection Act
PPTX
EU GDPR (training)
PPT
Data Protection Act
PPTX
Intercity technology - GDPR your training toolkit
The Protection of Personal Information Act 4 of 2013
The Popi Act 4 of 2013 - Implications for iSCM
Popi act presentation
Practical steps to take in preparation for the Protection of Personal Informa...
Personal Data Protection Law
Uchi data local presentation 2020
Privacy and Protection of Personal Information law seminar
Werksmans presentations on popi
Introduction to EU General Data Protection Regulation: Planning, Implementati...
Clyrofor popia readiness webinar
Personal Data Protection in Malaysia
Personal Data Protection Act - Employee Data Privacy
Documents, documents and more documents - is it time to spring clean? - Ahmor...
Data Protection Act
EU GDPR (training)
Data Protection Act
Intercity technology - GDPR your training toolkit
Ad

Viewers also liked (6)

PDF
POPI and Email Marketing
PPTX
Personal data protection in the EU
PPTX
What changes with the EU Data Protection Regulation for Gambling Companies
PPT
What changes for Internet of Things technologies with the EU Data Protection ...
PPTX
Legal issues of the Internet of Things
PDF
2017 02-05 en-eu-data-security_v2
POPI and Email Marketing
Personal data protection in the EU
What changes with the EU Data Protection Regulation for Gambling Companies
What changes for Internet of Things technologies with the EU Data Protection ...
Legal issues of the Internet of Things
2017 02-05 en-eu-data-security_v2
Ad

Similar to Ovations Group - Introducing the Protection of Personal Information (PoPI) act and achieving compliance (20)

PPTX
Ritz 4th-july-gdpr
PDF
How the EU-GDPR May Affect Your Website
PPTX
Iron Mountain® Policy Center Solution Enterprise Edition
PPTX
12th July GDPR event slides
PDF
EBC0033 Legal Whitepaper Nov 2015
PDF
Is your business GDPR ready?
PPTX
GDPR: Your Journey to Compliance
PDF
GDPR Consultancy Services UK GDPR consultant DPP.pdf
PPTX
How will GDPR affect your business - Marketing Fox & Birkett Long
PPTX
Understanding the EU's new General Data Protection Regulation (GDPR)
PDF
[Webinar Slides] Data Privacy for the IM Practitioner - Practical Advice for ...
PDF
Living with gdpr
PDF
The Personal Data Protection Act challenge in Singapore
PDF
What's Next - General Data Protection Regulation (GDPR) Changes
PDF
Whos role is it anyway
PPTX
ABCON-AGM-2021-Final-2.pptx
PDF
Personal Data Protection Singapore - Pdpc corporate-brochure
PPTX
21. SKOJ - Prepoznavanje vplivnežev v organizacijah_Michael Nord, IABC
Ritz 4th-july-gdpr
How the EU-GDPR May Affect Your Website
Iron Mountain® Policy Center Solution Enterprise Edition
12th July GDPR event slides
EBC0033 Legal Whitepaper Nov 2015
Is your business GDPR ready?
GDPR: Your Journey to Compliance
GDPR Consultancy Services UK GDPR consultant DPP.pdf
How will GDPR affect your business - Marketing Fox & Birkett Long
Understanding the EU's new General Data Protection Regulation (GDPR)
[Webinar Slides] Data Privacy for the IM Practitioner - Practical Advice for ...
Living with gdpr
The Personal Data Protection Act challenge in Singapore
What's Next - General Data Protection Regulation (GDPR) Changes
Whos role is it anyway
ABCON-AGM-2021-Final-2.pptx
Personal Data Protection Singapore - Pdpc corporate-brochure
21. SKOJ - Prepoznavanje vplivnežev v organizacijah_Michael Nord, IABC

Recently uploaded (20)

PPTX
HR Introduction Slide (1).pptx on hr intro
PDF
Elevate Cleaning Efficiency Using Tallfly Hair Remover Roller Factory Expertise
PDF
pdfcoffee.com-opt-b1plus-sb-answers.pdfvi
PDF
Laughter Yoga Basic Learning Workshop Manual
PDF
How to Get Funding for Your Trucking Business
PPTX
ICG2025_ICG 6th steering committee 30-8-24.pptx
PDF
Business model innovation report 2022.pdf
PDF
WRN_Investor_Presentation_August 2025.pdf
PDF
SIMNET Inc – 2023’s Most Trusted IT Services & Solution Provider
PDF
Ôn tập tiếng anh trong kinh doanh nâng cao
DOCX
unit 2 cost accounting- Tender and Quotation & Reconciliation Statement
PDF
Reconciliation AND MEMORANDUM RECONCILATION
PDF
Dr. Enrique Segura Ense Group - A Self-Made Entrepreneur And Executive
PPTX
Dragon_Fruit_Cultivation_in Nepal ppt.pptx
PDF
Deliverable file - Regulatory guideline analysis.pdf
PPTX
Lecture (1)-Introduction.pptx business communication
DOCX
Business Management - unit 1 and 2
PPT
Chapter four Project-Preparation material
PDF
Power and position in leadershipDOC-20250808-WA0011..pdf
PPTX
CkgxkgxydkydyldylydlydyldlyddolydyoyyU2.pptx
HR Introduction Slide (1).pptx on hr intro
Elevate Cleaning Efficiency Using Tallfly Hair Remover Roller Factory Expertise
pdfcoffee.com-opt-b1plus-sb-answers.pdfvi
Laughter Yoga Basic Learning Workshop Manual
How to Get Funding for Your Trucking Business
ICG2025_ICG 6th steering committee 30-8-24.pptx
Business model innovation report 2022.pdf
WRN_Investor_Presentation_August 2025.pdf
SIMNET Inc – 2023’s Most Trusted IT Services & Solution Provider
Ôn tập tiếng anh trong kinh doanh nâng cao
unit 2 cost accounting- Tender and Quotation & Reconciliation Statement
Reconciliation AND MEMORANDUM RECONCILATION
Dr. Enrique Segura Ense Group - A Self-Made Entrepreneur And Executive
Dragon_Fruit_Cultivation_in Nepal ppt.pptx
Deliverable file - Regulatory guideline analysis.pdf
Lecture (1)-Introduction.pptx business communication
Business Management - unit 1 and 2
Chapter four Project-Preparation material
Power and position in leadershipDOC-20250808-WA0011..pdf
CkgxkgxydkydyldylydlydyldlyddolydyoyyU2.pptx

Ovations Group - Introducing the Protection of Personal Information (PoPI) act and achieving compliance