SlideShare a Scribd company logo
1 of 9
Data Privacy in HR Business Process
Outsourcing (HR BPO) Industry
Brenden Brown
CSC-208-901
5/7/08
What is HR BPO?
• Business Process Outsourcing (from Wikipedia.org)
   •   Transmission of processes along with the associated operational activities and
       responsibilities, to a third party with at least a guaranteed equal service level
       and where the client contains a firm grip over the (activities of the) vendor for
       mutual long term success.


• HR Business Processes
   •   Recruiting, Talent Management
   •   Benefits
        • Pension and 401K – Retirement
        • Health and Welfare Insurance
             • Enrollment, claims administration, long-term disability, life
                 insurance, etc
   •   Payroll Administration


                            Data Privacy in HR Outsouring Industry -
                                        Brenden Brown
Data Privacy in HR BPO
Data Privacy/Security vs. Confidentiality
   – Not all personal or HR data is confidential (SSN, DoB, address, or any Personally
     Identifiable Information) since it’s the nature of the business

   – Contracts with service providers must contain provisions that address the
     use, sharing and disclosure of personal data and how the service provider keeps
     that data secure

   – Public financial services firms must have data security programs to protect
     personal information against unauthorized access - i.e. Request forms, approval
     processes, controls to review access

   – Some companies outsource part of their business functions in other countries
     that abide by a different set of laws than the U.S.

   – Employees that have access to personal data have to go through extensive
     background checks (includes credit checks, criminal history, drug test, etc) and
     sign non-disclosure agreementsin HR Outsouring Industry - they work for
                           Data Privacy with the company
                                     Brenden Brown
Data Privacy in HR BPO
Regulatory security requirements in the U.S

   – HIPPA (Health Insurance Portability and Accountability Act)
      • Business sets security standards for health information and mandates that
        covered entities must impose privacy and security restrictions on “business
        associates”

   – SAS 70 (Statement on Auditing Standards No. 70: Service Organizations)
      • Defines the professional standards used by a service auditor to assess the
         internal controls of a service organization
      • Relation to Data Privacy/Security




                            Data Privacy in HR Outsouring Industry -
                                        Brenden Brown
BPO
Benefits of Outsourcing

     Cost savings


     Opportunity cost – help focus on marketing, product
      development, advertising, etc


     Employee Benefits
         Education and focus on what it does best
         Enable your executive and mid-level management employees to focus on
          implementation of new strategically planned initiatives




          Data Privacy in HR Outsouring Industry - Brenden Brown
BPO
Detriments of Outsourcing

     Vendor’s policies with their employees may not be enforced
     Can only rely on public accounting/auditing firms to be mediator between you
      and your client
     Auditor bias?
     Your employee information might be available to unauthorized
      individuals/technology
     People lose jobs




         Data Privacy in HR Outsouring Industry - Brenden Brown
Real Life Scenario
   You’re the CEO of a company that outsourced the health insurance
    benefit administration business of your company


   You signed off and agreed to outsource the work



   Security Breach Example
       Outsourcing serivce provider transmitted your employee’s social security numbers
        through a public network, leaking 500 of your employee’s SSNs to a public
        domain (internet)


       Employees of your company are worried that their social security and identity may
        be compromised


           Data Privacy in HR Outsouring Industry - Brenden Brown
Personal Beliefs




   Data Privacy in HR Outsouring Industry - Brenden Brown
Ethical Framework Analysis
   Categorical Imperative (First and Second Formulation)
       Would you outsource the HR BP of your company if data privacy is a concern?
       Universal Adoption – what if all companies outsourced their HR BPs?
       Contradiction: Data wouldn’t be private if every business outsourced their HR
        business processes
       Outsourcing your HR BP is treating your employees personal information as a
        means to an end – gain profit
   Act Utilitarianism
       Net effect of action – good or bad?
   Rule Utilitarianism/Social Contract Theory
       System of laws and enforcing the law are put in place by government and
        businesses
       Is it with the intention to increase the greatest total happiness?


           Data Privacy in HR Outsouring Industry - Brenden Brown

More Related Content

Similar to Data Privacy in HR Business Process Outsourcing

Doherty Company Info
Doherty Company InfoDoherty Company Info
Doherty Company Infotschoepp
 
Enterprise Data World 2018
Enterprise Data World 2018Enterprise Data World 2018
Enterprise Data World 2018jadams6
 
Doherty company info
Doherty company infoDoherty company info
Doherty company infotschoepp
 
Orbis Human Capital Presentation 2010
Orbis Human Capital Presentation 2010Orbis Human Capital Presentation 2010
Orbis Human Capital Presentation 2010Yonica S. Pimentel
 
Save Money and Enhance Productivity with HR Outsourcing
Save Money and Enhance Productivity with HR OutsourcingSave Money and Enhance Productivity with HR Outsourcing
Save Money and Enhance Productivity with HR OutsourcingInsideUp
 
Everything you Need to Know about The Data Protection Officer Role
Everything you Need to Know about The Data Protection Officer Role Everything you Need to Know about The Data Protection Officer Role
Everything you Need to Know about The Data Protection Officer Role HackerOne
 
Managing Privacy Risk and Promoting Ethical Culture in the Digital Age
Managing Privacy Risk and Promoting Ethical Culture in the Digital AgeManaging Privacy Risk and Promoting Ethical Culture in the Digital Age
Managing Privacy Risk and Promoting Ethical Culture in the Digital AgePerficient, Inc.
 
DAMA Webinar: The Data Governance of Personal (PII) Data
DAMA Webinar: The Data Governance of  Personal (PII) DataDAMA Webinar: The Data Governance of  Personal (PII) Data
DAMA Webinar: The Data Governance of Personal (PII) DataDATAVERSITY
 
Security Management Practices
Security Management PracticesSecurity Management Practices
Security Management Practicesamiable_indian
 
Background Verification companies in India
Background Verification companies in IndiaBackground Verification companies in India
Background Verification companies in IndiaAbhijeetkrishna4
 
GDPR webinar for business leaders
GDPR webinar for business leadersGDPR webinar for business leaders
GDPR webinar for business leadersDeeson
 
Looking Beyond GDPR Compliance Deadline
Looking Beyond GDPR Compliance DeadlineLooking Beyond GDPR Compliance Deadline
Looking Beyond GDPR Compliance Deadlineaccenture
 
Internet security and privacy issues
Internet security and privacy issuesInternet security and privacy issues
Internet security and privacy issuesJagdeepSingh394
 
Cost benefit analysis vs confidentiality
Cost benefit analysis vs confidentialityCost benefit analysis vs confidentiality
Cost benefit analysis vs confidentialityPrithvi Ghag
 
Hr terminology - 1
Hr terminology - 1Hr terminology - 1
Hr terminology - 1Gautam Kumar
 
JMS Proposal HR Outsourcing
JMS Proposal HR OutsourcingJMS Proposal HR Outsourcing
JMS Proposal HR Outsourcingankush jolly
 
Proving GDPR Compliance
Proving GDPR ComplianceProving GDPR Compliance
Proving GDPR ComplianceArden Group
 

Similar to Data Privacy in HR Business Process Outsourcing (20)

Doherty Company Info
Doherty Company InfoDoherty Company Info
Doherty Company Info
 
Enterprise Data World 2018
Enterprise Data World 2018Enterprise Data World 2018
Enterprise Data World 2018
 
Doherty company info
Doherty company infoDoherty company info
Doherty company info
 
Data protection in HR
Data protection in HRData protection in HR
Data protection in HR
 
Orbis Human Capital Presentation 2010
Orbis Human Capital Presentation 2010Orbis Human Capital Presentation 2010
Orbis Human Capital Presentation 2010
 
Save Money and Enhance Productivity with HR Outsourcing
Save Money and Enhance Productivity with HR OutsourcingSave Money and Enhance Productivity with HR Outsourcing
Save Money and Enhance Productivity with HR Outsourcing
 
Everything you Need to Know about The Data Protection Officer Role
Everything you Need to Know about The Data Protection Officer Role Everything you Need to Know about The Data Protection Officer Role
Everything you Need to Know about The Data Protection Officer Role
 
Managing Privacy Risk and Promoting Ethical Culture in the Digital Age
Managing Privacy Risk and Promoting Ethical Culture in the Digital AgeManaging Privacy Risk and Promoting Ethical Culture in the Digital Age
Managing Privacy Risk and Promoting Ethical Culture in the Digital Age
 
DAMA Webinar: The Data Governance of Personal (PII) Data
DAMA Webinar: The Data Governance of  Personal (PII) DataDAMA Webinar: The Data Governance of  Personal (PII) Data
DAMA Webinar: The Data Governance of Personal (PII) Data
 
GDPR for your Payroll Bureau
GDPR for your Payroll BureauGDPR for your Payroll Bureau
GDPR for your Payroll Bureau
 
Security Management Practices
Security Management PracticesSecurity Management Practices
Security Management Practices
 
Background Verification companies in India
Background Verification companies in IndiaBackground Verification companies in India
Background Verification companies in India
 
GDPR webinar for business leaders
GDPR webinar for business leadersGDPR webinar for business leaders
GDPR webinar for business leaders
 
Looking Beyond GDPR Compliance Deadline
Looking Beyond GDPR Compliance DeadlineLooking Beyond GDPR Compliance Deadline
Looking Beyond GDPR Compliance Deadline
 
Internet security and privacy issues
Internet security and privacy issuesInternet security and privacy issues
Internet security and privacy issues
 
The HR Technology Selection Guide
The HR Technology Selection GuideThe HR Technology Selection Guide
The HR Technology Selection Guide
 
Cost benefit analysis vs confidentiality
Cost benefit analysis vs confidentialityCost benefit analysis vs confidentiality
Cost benefit analysis vs confidentiality
 
Hr terminology - 1
Hr terminology - 1Hr terminology - 1
Hr terminology - 1
 
JMS Proposal HR Outsourcing
JMS Proposal HR OutsourcingJMS Proposal HR Outsourcing
JMS Proposal HR Outsourcing
 
Proving GDPR Compliance
Proving GDPR ComplianceProving GDPR Compliance
Proving GDPR Compliance
 

Recently uploaded

Unit-IV- Pharma. Marketing Channels.pptx
Unit-IV- Pharma. Marketing Channels.pptxUnit-IV- Pharma. Marketing Channels.pptx
Unit-IV- Pharma. Marketing Channels.pptxVishalSingh1417
 
On National Teacher Day, meet the 2024-25 Kenan Fellows
On National Teacher Day, meet the 2024-25 Kenan FellowsOn National Teacher Day, meet the 2024-25 Kenan Fellows
On National Teacher Day, meet the 2024-25 Kenan FellowsMebane Rash
 
Dyslexia AI Workshop for Slideshare.pptx
Dyslexia AI Workshop for Slideshare.pptxDyslexia AI Workshop for Slideshare.pptx
Dyslexia AI Workshop for Slideshare.pptxcallscotland1987
 
Python Notes for mca i year students osmania university.docx
Python Notes for mca i year students osmania university.docxPython Notes for mca i year students osmania university.docx
Python Notes for mca i year students osmania university.docxRamakrishna Reddy Bijjam
 
Sociology 101 Demonstration of Learning Exhibit
Sociology 101 Demonstration of Learning ExhibitSociology 101 Demonstration of Learning Exhibit
Sociology 101 Demonstration of Learning Exhibitjbellavia9
 
How to Create and Manage Wizard in Odoo 17
How to Create and Manage Wizard in Odoo 17How to Create and Manage Wizard in Odoo 17
How to Create and Manage Wizard in Odoo 17Celine George
 
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptx
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptxHMCS Max Bernays Pre-Deployment Brief (May 2024).pptx
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptxEsquimalt MFRC
 
How to Manage Global Discount in Odoo 17 POS
How to Manage Global Discount in Odoo 17 POSHow to Manage Global Discount in Odoo 17 POS
How to Manage Global Discount in Odoo 17 POSCeline George
 
Fostering Friendships - Enhancing Social Bonds in the Classroom
Fostering Friendships - Enhancing Social Bonds  in the ClassroomFostering Friendships - Enhancing Social Bonds  in the Classroom
Fostering Friendships - Enhancing Social Bonds in the ClassroomPooky Knightsmith
 
Unit-IV; Professional Sales Representative (PSR).pptx
Unit-IV; Professional Sales Representative (PSR).pptxUnit-IV; Professional Sales Representative (PSR).pptx
Unit-IV; Professional Sales Representative (PSR).pptxVishalSingh1417
 
Food safety_Challenges food safety laboratories_.pdf
Food safety_Challenges food safety laboratories_.pdfFood safety_Challenges food safety laboratories_.pdf
Food safety_Challenges food safety laboratories_.pdfSherif Taha
 
Unit-V; Pricing (Pharma Marketing Management).pptx
Unit-V; Pricing (Pharma Marketing Management).pptxUnit-V; Pricing (Pharma Marketing Management).pptx
Unit-V; Pricing (Pharma Marketing Management).pptxVishalSingh1417
 
Understanding Accommodations and Modifications
Understanding  Accommodations and ModificationsUnderstanding  Accommodations and Modifications
Understanding Accommodations and ModificationsMJDuyan
 
Application orientated numerical on hev.ppt
Application orientated numerical on hev.pptApplication orientated numerical on hev.ppt
Application orientated numerical on hev.pptRamjanShidvankar
 
UGC NET Paper 1 Mathematical Reasoning & Aptitude.pdf
UGC NET Paper 1 Mathematical Reasoning & Aptitude.pdfUGC NET Paper 1 Mathematical Reasoning & Aptitude.pdf
UGC NET Paper 1 Mathematical Reasoning & Aptitude.pdfNirmal Dwivedi
 
ICT Role in 21st Century Education & its Challenges.pptx
ICT Role in 21st Century Education & its Challenges.pptxICT Role in 21st Century Education & its Challenges.pptx
ICT Role in 21st Century Education & its Challenges.pptxAreebaZafar22
 
Micro-Scholarship, What it is, How can it help me.pdf
Micro-Scholarship, What it is, How can it help me.pdfMicro-Scholarship, What it is, How can it help me.pdf
Micro-Scholarship, What it is, How can it help me.pdfPoh-Sun Goh
 
Activity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdfActivity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdfciinovamais
 
Basic Civil Engineering first year Notes- Chapter 4 Building.pptx
Basic Civil Engineering first year Notes- Chapter 4 Building.pptxBasic Civil Engineering first year Notes- Chapter 4 Building.pptx
Basic Civil Engineering first year Notes- Chapter 4 Building.pptxDenish Jangid
 

Recently uploaded (20)

Unit-IV- Pharma. Marketing Channels.pptx
Unit-IV- Pharma. Marketing Channels.pptxUnit-IV- Pharma. Marketing Channels.pptx
Unit-IV- Pharma. Marketing Channels.pptx
 
On National Teacher Day, meet the 2024-25 Kenan Fellows
On National Teacher Day, meet the 2024-25 Kenan FellowsOn National Teacher Day, meet the 2024-25 Kenan Fellows
On National Teacher Day, meet the 2024-25 Kenan Fellows
 
Dyslexia AI Workshop for Slideshare.pptx
Dyslexia AI Workshop for Slideshare.pptxDyslexia AI Workshop for Slideshare.pptx
Dyslexia AI Workshop for Slideshare.pptx
 
Python Notes for mca i year students osmania university.docx
Python Notes for mca i year students osmania university.docxPython Notes for mca i year students osmania university.docx
Python Notes for mca i year students osmania university.docx
 
Sociology 101 Demonstration of Learning Exhibit
Sociology 101 Demonstration of Learning ExhibitSociology 101 Demonstration of Learning Exhibit
Sociology 101 Demonstration of Learning Exhibit
 
How to Create and Manage Wizard in Odoo 17
How to Create and Manage Wizard in Odoo 17How to Create and Manage Wizard in Odoo 17
How to Create and Manage Wizard in Odoo 17
 
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptx
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptxHMCS Max Bernays Pre-Deployment Brief (May 2024).pptx
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptx
 
How to Manage Global Discount in Odoo 17 POS
How to Manage Global Discount in Odoo 17 POSHow to Manage Global Discount in Odoo 17 POS
How to Manage Global Discount in Odoo 17 POS
 
Spatium Project Simulation student brief
Spatium Project Simulation student briefSpatium Project Simulation student brief
Spatium Project Simulation student brief
 
Fostering Friendships - Enhancing Social Bonds in the Classroom
Fostering Friendships - Enhancing Social Bonds  in the ClassroomFostering Friendships - Enhancing Social Bonds  in the Classroom
Fostering Friendships - Enhancing Social Bonds in the Classroom
 
Unit-IV; Professional Sales Representative (PSR).pptx
Unit-IV; Professional Sales Representative (PSR).pptxUnit-IV; Professional Sales Representative (PSR).pptx
Unit-IV; Professional Sales Representative (PSR).pptx
 
Food safety_Challenges food safety laboratories_.pdf
Food safety_Challenges food safety laboratories_.pdfFood safety_Challenges food safety laboratories_.pdf
Food safety_Challenges food safety laboratories_.pdf
 
Unit-V; Pricing (Pharma Marketing Management).pptx
Unit-V; Pricing (Pharma Marketing Management).pptxUnit-V; Pricing (Pharma Marketing Management).pptx
Unit-V; Pricing (Pharma Marketing Management).pptx
 
Understanding Accommodations and Modifications
Understanding  Accommodations and ModificationsUnderstanding  Accommodations and Modifications
Understanding Accommodations and Modifications
 
Application orientated numerical on hev.ppt
Application orientated numerical on hev.pptApplication orientated numerical on hev.ppt
Application orientated numerical on hev.ppt
 
UGC NET Paper 1 Mathematical Reasoning & Aptitude.pdf
UGC NET Paper 1 Mathematical Reasoning & Aptitude.pdfUGC NET Paper 1 Mathematical Reasoning & Aptitude.pdf
UGC NET Paper 1 Mathematical Reasoning & Aptitude.pdf
 
ICT Role in 21st Century Education & its Challenges.pptx
ICT Role in 21st Century Education & its Challenges.pptxICT Role in 21st Century Education & its Challenges.pptx
ICT Role in 21st Century Education & its Challenges.pptx
 
Micro-Scholarship, What it is, How can it help me.pdf
Micro-Scholarship, What it is, How can it help me.pdfMicro-Scholarship, What it is, How can it help me.pdf
Micro-Scholarship, What it is, How can it help me.pdf
 
Activity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdfActivity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdf
 
Basic Civil Engineering first year Notes- Chapter 4 Building.pptx
Basic Civil Engineering first year Notes- Chapter 4 Building.pptxBasic Civil Engineering first year Notes- Chapter 4 Building.pptx
Basic Civil Engineering first year Notes- Chapter 4 Building.pptx
 

Data Privacy in HR Business Process Outsourcing

  • 1. Data Privacy in HR Business Process Outsourcing (HR BPO) Industry Brenden Brown CSC-208-901 5/7/08
  • 2. What is HR BPO? • Business Process Outsourcing (from Wikipedia.org) • Transmission of processes along with the associated operational activities and responsibilities, to a third party with at least a guaranteed equal service level and where the client contains a firm grip over the (activities of the) vendor for mutual long term success. • HR Business Processes • Recruiting, Talent Management • Benefits • Pension and 401K – Retirement • Health and Welfare Insurance • Enrollment, claims administration, long-term disability, life insurance, etc • Payroll Administration Data Privacy in HR Outsouring Industry - Brenden Brown
  • 3. Data Privacy in HR BPO Data Privacy/Security vs. Confidentiality – Not all personal or HR data is confidential (SSN, DoB, address, or any Personally Identifiable Information) since it’s the nature of the business – Contracts with service providers must contain provisions that address the use, sharing and disclosure of personal data and how the service provider keeps that data secure – Public financial services firms must have data security programs to protect personal information against unauthorized access - i.e. Request forms, approval processes, controls to review access – Some companies outsource part of their business functions in other countries that abide by a different set of laws than the U.S. – Employees that have access to personal data have to go through extensive background checks (includes credit checks, criminal history, drug test, etc) and sign non-disclosure agreementsin HR Outsouring Industry - they work for Data Privacy with the company Brenden Brown
  • 4. Data Privacy in HR BPO Regulatory security requirements in the U.S – HIPPA (Health Insurance Portability and Accountability Act) • Business sets security standards for health information and mandates that covered entities must impose privacy and security restrictions on “business associates” – SAS 70 (Statement on Auditing Standards No. 70: Service Organizations) • Defines the professional standards used by a service auditor to assess the internal controls of a service organization • Relation to Data Privacy/Security Data Privacy in HR Outsouring Industry - Brenden Brown
  • 5. BPO Benefits of Outsourcing  Cost savings  Opportunity cost – help focus on marketing, product development, advertising, etc  Employee Benefits  Education and focus on what it does best  Enable your executive and mid-level management employees to focus on implementation of new strategically planned initiatives Data Privacy in HR Outsouring Industry - Brenden Brown
  • 6. BPO Detriments of Outsourcing  Vendor’s policies with their employees may not be enforced  Can only rely on public accounting/auditing firms to be mediator between you and your client  Auditor bias?  Your employee information might be available to unauthorized individuals/technology  People lose jobs Data Privacy in HR Outsouring Industry - Brenden Brown
  • 7. Real Life Scenario  You’re the CEO of a company that outsourced the health insurance benefit administration business of your company  You signed off and agreed to outsource the work  Security Breach Example  Outsourcing serivce provider transmitted your employee’s social security numbers through a public network, leaking 500 of your employee’s SSNs to a public domain (internet)  Employees of your company are worried that their social security and identity may be compromised Data Privacy in HR Outsouring Industry - Brenden Brown
  • 8. Personal Beliefs Data Privacy in HR Outsouring Industry - Brenden Brown
  • 9. Ethical Framework Analysis  Categorical Imperative (First and Second Formulation)  Would you outsource the HR BP of your company if data privacy is a concern?  Universal Adoption – what if all companies outsourced their HR BPs?  Contradiction: Data wouldn’t be private if every business outsourced their HR business processes  Outsourcing your HR BP is treating your employees personal information as a means to an end – gain profit  Act Utilitarianism  Net effect of action – good or bad?  Rule Utilitarianism/Social Contract Theory  System of laws and enforcing the law are put in place by government and businesses  Is it with the intention to increase the greatest total happiness? Data Privacy in HR Outsouring Industry - Brenden Brown