{"id":11476,"date":"2014-06-12T08:00:45","date_gmt":"2014-06-12T06:00:45","guid":{"rendered":"https:\/\/testwp.money.sk\/novinky-a-tipy\/nezaradene\/ochrana-osobnych-udajov-z-pohladu-zakaznikov-money\/"},"modified":"2023-06-26T11:01:10","modified_gmt":"2023-06-26T09:01:10","slug":"ochrana-osobnych-udajov-z-pohladu-zakaznikov-money","status":"publish","type":"post","link":"https:\/\/www.money.sk\/novinky-a-tipy\/podnikanie\/ochrana-osobnych-udajov-z-pohladu-zakaznikov-money\/","title":{"rendered":"Ochrana osobn\u00fdch \u00fadajov z poh\u013eadu z\u00e1kazn\u00edkov Money"},"content":{"rendered":"<p>T\u00e9ma ochrany osobn\u00fdch \u00fadajov je v poslednom \u010dase medzi podnikate\u013emi ve\u013emi aktu\u00e1lna. Preto\u017ee v\u00e4\u010d\u0161inu osobn\u00fdch \u00fadajov firmy spracov\u00e1vaj\u00fa prostredn\u00edctvom softv\u00e9ru a \u010dasto s\u00fa n\u00edm a niektor\u00e9 zo syst\u00e9mov Money, pozreli sme sa na t\u00fato t\u00e9mu s Mgr. Jurajom Veverkom, advok\u00e1tom z kancel\u00e1rie Heringe\u0161 &amp; Partner, s. r. o.<!--more--><\/p>\n<p><strong>Ak\u00e9 povinnosti m\u00e1 spolo\u010dnos\u0165, ktor\u00e1 interne sprac\u00fava osobn\u00e9 \u00fadaje za \u00fa\u010delom vyhotovenia miezd pre svojich zamestnancov?<\/strong><\/p>\n<p>Ka\u017ed\u00fd zamestn\u00e1vate\u013e je povinn\u00fd sprac\u00fava\u0165 osobn\u00e9 \u00fadaje o\u00a0svojich zamestnancoch za \u00fa\u010delom vedenia person\u00e1lnej a\u00a0mzdovej agendy. Zamestn\u00e1vatelia s\u00fa v\u00a0pr\u00e1vnom postaven\u00ed prev\u00e1dzkovate\u013ea informa\u010dn\u00e9ho syst\u00e9mu mzdy a\u00a0personalistika, z\u00a0toho d\u00f4vodu s\u00fa povinn\u00ed ma\u0165 vypracovan\u00fd eviden\u010dn\u00fd list k informa\u010dn\u00e9mu syst\u00e9mu, pou\u010den\u00e9 opr\u00e1vnen\u00e9 osoby a\u00a0prijat\u00e9 bezpe\u010dnostn\u00e9 opatrenia. Za predpokladu, \u017ee\u00a0informa\u010dn\u00fd syst\u00e9m je prepojen\u00fd s\u00a0internetom, prev\u00e1dzkovate\u013e mus\u00ed ma\u0165 vypracovan\u00fd bezpe\u010dnostn\u00fd projekt, ke\u010f\u017ee v\u00a0informa\u010dnom syst\u00e9me mzdy a\u00a0personalistika je sprac\u00favan\u00e9 aj rodn\u00e9 \u010d\u00edslo zamestnancov (tzv. osobitn\u00e1 kateg\u00f3ria osobn\u00fdch \u00fadajov).<\/p>\n<p><strong>\u010co sa zmen\u00ed v\u00a0pr\u00edpade spracovania miezd externou firmou?<\/strong><\/p>\n<p>V\u00a0tomto pr\u00edpade sa postavenie zamestn\u00e1vate\u013ea nemen\u00ed, je na\u010falej prev\u00e1dzkovate\u013eom informa\u010dn\u00e9ho syst\u00e9mu mzdy a\u00a0personalistika, mus\u00ed ma\u0165 vypracovan\u00fd eviden\u010dn\u00fd list, prijat\u00e9 bezpe\u010dnostn\u00e9 opatrenia a\u00a0pou\u010den\u00e9 svoje opr\u00e1vnen\u00e9 osoby. Prib\u00fada mu v\u0161ak povinnos\u0165 uzatvori\u0165 s\u00a0externou firmou zmluvu o\u00a0sprostredkovan\u00ed, v\u00a0ktorej vymedz\u00ed najm\u00e4 v\u00a0akom rozsahu a\u00a0na ak\u00fd \u00fa\u010del je extern\u00e1 firma opr\u00e1vnen\u00e1 sprac\u00fava\u0165 osobn\u00e9 \u00fadaje v\u00a0informa\u010dnom syst\u00e9me mzdy a\u00a0personalistika v\u00a0jeho mene. Extern\u00e1 firma je povinn\u00e1 takisto pou\u010di\u0165 svoje opr\u00e1vnen\u00e9 osoby a prija\u0165 bezpe\u010dnostn\u00e9 opatrenia.<\/p>\n<p><strong>Spolo\u010dnosti zamestn\u00e1vaj\u00face viac ako 20 zamestnancov musia pod\u00e1va\u0165 mzdov\u00e9 v\u00fdkazy prostredn\u00edctvom internetu. Ako maj\u00fa zabezpe\u010di\u0165 ochranu t\u00fdchto osobn\u00fdch \u00fadajov?<\/strong><\/p>\n<p>Ka\u017ed\u00e1 spolo\u010dnos\u0165, ktor\u00e1 sprac\u00fava osobn\u00e9 \u00fadaje je povinn\u00e1 zabezpe\u010di\u0165 ich ochranu, a\u00a0za t\u00fdm \u00fa\u010delom prija\u0165 primeran\u00e9 technick\u00e9, organiza\u010dn\u00e9 a\u00a0person\u00e1lne opatrenia (tzv. bezpe\u010dnostn\u00e9 opatrenia). Existuj\u00fa dve kateg\u00f3rie bezpe\u010dnostn\u00fdch opatren\u00ed \u2013 z\u00e1kladn\u00e1 bezpe\u010dnostn\u00e1 dokument\u00e1cia a\u00a0bezpe\u010dnostn\u00fd projekt. Ak informa\u010dn\u00fd syst\u00e9m, v\u00a0ktorom s\u00fa sprac\u00favan\u00e9 osobn\u00e9 \u00fadaje je prepojen\u00fd s\u00a0internetom \u010di u\u017e priamo (po\u010d\u00edta\u010d \u2013 internet) alebo nepriamo (po\u010d\u00edta\u010d &#8211; lok\u00e1lna po\u010d\u00edta\u010dov\u00e1 sie\u0165 \u2013 internet) je prev\u00e1dzkovate\u013e povinn\u00fd ma\u0165 vypracovan\u00fd bezpe\u010dnostn\u00fd projekt, nako\u013eko mo\u017eno predpoklada\u0165, \u017ee v\u00a0informa\u010dnom syst\u00e9me s\u00fa sprac\u00favan\u00e9 osobitn\u00e9 kateg\u00f3rie osobn\u00fdch \u00fadajov (napr. rodn\u00e9 \u010d\u00edsla).<\/p>\n<p><strong>Ak\u00e9 povinnosti musia splni\u0165 extern\u00e9 \u00fa\u010dtovn\u00edcke firmy?<\/strong><\/p>\n<p>Nako\u013eko extern\u00e9 \u00fa\u010dtovn\u00edcke firmy s\u00fa sprostredkovate\u013emi, musia ma\u0165 uzatvoren\u00e9 s\u00a0prev\u00e1dzkovate\u013emi zmluvy o\u00a0sprostredkovan\u00ed, prijat\u00e9 bezpe\u010dnostn\u00e9 opatrenia a\u00a0pou\u010den\u00e9 svoje opr\u00e1vnen\u00e9 osoby o\u00a0pr\u00e1vach a\u00a0povinnostiach pri sprac\u00favan\u00ed osobn\u00fdch \u00fadajov. Z\u00e1rove\u0148 s\u00fa povinn\u00e9 zachov\u00e1va\u0165 ml\u010danlivos\u0165 o\u00a0osobn\u00fdch \u00fadajoch, ktor\u00e9 sprac\u00favaj\u00fa, a\u00a0to aj po ukon\u010den\u00ed sprac\u00favania.<\/p>\n<p><strong>Ak\u00e9 je postavenie IT firiem poskytuj\u00facich technick\u00fa podporu a\u00a0servisn\u00e9 slu\u017eby spolo\u010dnostiam?<\/strong><\/p>\n<p>Z\u00a0poh\u013eadu z\u00e1kona maj\u00fa postavenie pr\u00edjemcov, nako\u013eko IT firmy zv\u00e4\u010d\u0161a osobn\u00e9 \u00fadaje nesprac\u00favaj\u00fa, m\u00f4\u017eu im by\u0165 v\u0161ak spr\u00edstupnen\u00e9, napr. pri oprave softwaru. Zamestnanci IT firmy nie s\u00fa opr\u00e1vnen\u00e9 osoby, nevykon\u00e1vaj\u00fa spracovate\u013esk\u00e9 oper\u00e1cie s\u00a0osobn\u00fdmi \u00fadajmi, s\u00fa len povinn\u00ed zachov\u00e1va\u0165 ml\u010danlivos\u0165 o\u00a0osobn\u00fdch \u00fadajoch s\u00a0ktor\u00fdmi pr\u00eddu do styku, a\u00a0to aj po z\u00e1niku ich pracovn\u00e9ho pomeru.<\/p>\n<p><strong>Vymedzenie z\u00e1kladn\u00fdch pojmov<\/strong><\/p>\n<p><strong>Dotknut\u00e1 osoba<\/strong><\/p>\n<p>Dotknutou osobou je ka\u017ed\u00e1 fyzick\u00e1 osoba, ktorej sa osobn\u00e9 \u00fadaje t\u00fdkaj\u00fa. Dotknutou osobou m\u00f4\u017ee by\u0165 ka\u017ed\u00fd z\u00a0n\u00e1s, sta\u010d\u00ed ak sa prejete po n\u00e1mest\u00ed, ktor\u00e9 je monitorovan\u00e9 kamerov\u00fdm syst\u00e9mom, alebo ste si nak\u00fapili tovar prostredn\u00edctvom e-shopu, alebo sa zapojili do s\u00fa\u0165a\u017ee prostredn\u00edctvom vyplnen\u00e9ho formul\u00e1ru.<\/p>\n<p><strong>Prev\u00e1dzkovate\u013e<\/strong><\/p>\n<p>Prev\u00e1dzkovate\u013eom je ka\u017ed\u00fd (jednotlivec, firma, \u017eivnostn\u00edk), kto sprac\u00fava osobn\u00e9 \u00fadaje vo vlastnom mene, na \u00fa\u010del a\u00a0za podmienok, ktor\u00e9 si vopred ur\u010dil. Ka\u017ed\u00fd zamestn\u00e1vate\u013e sprac\u00fava osobn\u00e9 \u00fadaje o\u00a0svojich zamestnancoch za \u00fa\u010delom vedenia person\u00e1lnej a\u00a0mzdovej agendy, je teda prev\u00e1dzkovate\u013eom informa\u010dn\u00e9ho syst\u00e9mu mzdy a\u00a0personalistika. Ak zamestn\u00e1vate\u013e monitoruje svojich zamestnancov prostredn\u00edctvom kamerov\u00e9ho syst\u00e9mu, je prev\u00e1dzkovate\u013eom informa\u010dn\u00e9ho syst\u00e9mu kamerov\u00fd syst\u00e9m. Ak si spolo\u010dnos\u0165 zapisuje do knihy do\u0161lej a\u00a0odoslanej po\u0161ty osobn\u00e9 \u00fadaje odosielate\u013eov a\u00a0pr\u00edjemcov kore\u0161pondencie je prev\u00e1dzkovate\u013eov informa\u010dn\u00e9ho syst\u00e9mu do\u0161lej a\u00a0odoslanej po\u0161ty. Ak podnikate\u013e vystavuje fakt\u00fary fyzick\u00fdm osob\u00e1m, je prev\u00e1dzkovate\u013eom informa\u010dn\u00e9ho syst\u00e9mu \u00fa\u010dtovn\u00edctvo. Ak spolo\u010dnos\u0165 vedie knihu n\u00e1v\u0161tev, do ktorej zapisuje osobn\u00e9 \u00fadaje n\u00e1v\u0161tev, je prev\u00e1dzkovate\u013eom informa\u010dn\u00e9ho syst\u00e9mu kniha n\u00e1v\u0161tev. Ak spolo\u010dnos\u0165 monitoruje priestory pr\u00edstupn\u00e9 verejnosti (napr. chodn\u00edk pred ich budovou) je prev\u00e1dzkovate\u013eom \u010fal\u0161ieho informa\u010dn\u00e9 syst\u00e9mu kamerov\u00fd syst\u00e9m.<\/p>\n<p><strong>Sprostredkovate\u013e<\/strong><\/p>\n<p>Sprostredkovate\u013e je ten, kto sprac\u00fava osobn\u00e9 \u00fadaje v\u00a0mene prev\u00e1dzkovate\u013ea, a\u00a0to tak, ako mu ur\u010d\u00ed prev\u00e1dzkovate\u013e v\u00a0zmluve o\u00a0sprostredkovan\u00ed. Ako pr\u00edklad mo\u017eno uvies\u0165 extern\u00e9 \u00fa\u010dtovn\u00edcke firmy, ktor\u00e9 spolo\u010dnostiam ved\u00fa \u00fa\u010dtovn\u00edctvo a\u00a0sprac\u00favaj\u00fa v\u00a0informa\u010dnom syst\u00e9me osobn\u00e9 \u00fadaje fyzick\u00fdch os\u00f4b alebo SBS, ktor\u00e1 str\u00e1\u017ei priestory spolo\u010dnosti a zapisuje osobn\u00e9 \u00fadaje do knihy n\u00e1v\u0161tev alebo ktor\u00e1 m\u00e1 na starosti kamerov\u00e9 syst\u00e9my spolo\u010dnosti. Do 01.07.2015 prev\u00e1dzkovatelia a\u00a0sprostredkovatelia musia uzatvori\u0165 zmluvu o\u00a0sprostredkovan\u00ed s\u00a0n\u00e1le\u017eitos\u0165ami ur\u010den\u00fdmi v z\u00e1kone, \u010di u\u017e vo forme novej zmluvy alebo dodatku k\u00a0u\u017e existuj\u00facej zmluve.<\/p>\n<p><strong>Opr\u00e1vnen\u00e1 osoba<\/strong><\/p>\n<p>Typick\u00fdm pr\u00edkladom opr\u00e1vnenej osoby je administrat\u00edvny zamestnanec. T\u00ed zamestnanci, ktor\u00ed v\u00a0r\u00e1mci svojej pracovnej \u010dinnosti sprac\u00favaj\u00fa osobn\u00e9 \u00fadaje musia by\u0165 zo strany svojho zamestn\u00e1vate\u013ea (prev\u00e1dzkovate\u013ea resp. sprostredkovate\u013ea) pou\u010den\u00ed o\u00a0svojich pr\u00e1vach a\u00a0povinnostiach pri sprac\u00favan\u00ed osobn\u00fdch \u00fadajov. Zamestnanec sa stane d\u0148om pou\u010denia opr\u00e1vnenou osobou a\u00a0n\u00e1sledne m\u00f4\u017ee sprac\u00fava\u0165 osobn\u00e9 \u00fadaje, av\u0161ak len sp\u00f4sobom a\u00a0v rozsahu ako je uveden\u00e9 v\u00a0pou\u010den\u00ed.<\/p>\n<p><strong>Osobn\u00fd \u00fadaj<\/strong><\/p>\n<p>Osobn\u00fdm \u00fadajom je ak\u00fdko\u013evek \u00fadaj t\u00fdkaj\u00faci sa \u00a0fyzickej osoby, na z\u00e1klade ktor\u00e9ho je dan\u00e1 fyzick\u00e1 osoba indentifikovan\u00e1 alebo indentifikovate\u013en\u00e1. O\u00a0osobn\u00fdch \u00fadajoch mo\u017eno hovori\u0165 len v\u00a0s\u00favislosti s\u00a0fyzick\u00fdmi osobami \u2013 jednotlivcami. Za osobn\u00e9 \u00fadaje nemo\u017eno pova\u017eova\u0165 len meno, priezvisko, rodn\u00e9 \u010d\u00edslo, adresu, fotografiu, ale v\u00a0niektor\u00fdch pr\u00edpadoch aj ak\u00fako\u013evek inform\u00e1ciu o\u00a0fyzickej osobe, na z\u00e1klade ktorej ju sme schopn\u00ed identifikova\u0165, napr. farba vlasov, inform\u00e1cia o\u00a0hodink\u00e1ch na ruke, inform\u00e1cia o\u00a0vzdelan\u00ed.<\/p>\n<p><strong>Bezpe\u010dnostn\u00fd projekt<\/strong><\/p>\n<p>Bezpe\u010dnostn\u00fd projekt je jedna z\u00a0dvoch kateg\u00f3rii bezpe\u010dnostn\u00fdch opatren\u00ed, ktor\u00fd mus\u00ed ma\u0165 vypracovan\u00fd ka\u017ed\u00fd prev\u00e1dzkovate\u013e a\u00a0sprostredkovate\u013e, ktor\u00fd sprac\u00fava tzv. osobitn\u00fa kateg\u00f3riu osobn\u00fdch \u00fadajov (napr. rodn\u00e9 \u010d\u00edslo, \u00fadaje t\u00fdkaj\u00face sa zdravia) a\u00a0ktor\u00e9ho informa\u010dn\u00fd syst\u00e9m je prepojen\u00fd s\u00a0internetom. Pritom nie je rozhoduj\u00face, \u010di informa\u010dn\u00fd syst\u00e9m je prepojen\u00fd priamo (po\u010d\u00edta\u010d \u2013 internet) alebo nepriamo (po\u010d\u00edta\u010d \u2013 lok\u00e1lna po\u010d\u00edta\u010dov\u00e1 sie\u0165 \u2013 internet), alebo \u010di sa prep\u00e1ja len pr\u00edle\u017eitostne.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>T\u00e9ma ochrany osobn\u00fdch \u00fadajov je v poslednom \u010dase medzi podnikate\u013emi ve\u013emi aktu\u00e1lna. Preto\u017ee v\u00e4\u010d\u0161inu osobn\u00fdch \u00fadajov firmy spracov\u00e1vaj\u00fa prostredn\u00edctvom softv\u00e9ru a \u010dasto s\u00fa n\u00edm a &#8230;<\/p>\n","protected":false},"author":2,"featured_media":11477,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":""},"categories":[29,5],"tags":[544,958,874],"class_list":["post-11476","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-legislativa","category-podnikanie","tag-money","tag-ochrana-osobnych-udajov","tag-zakaznici"],"acf":[],"_links":{"self":[{"href":"https:\/\/www.money.sk\/novinky-a-tipy\/wp-json\/wp\/v2\/posts\/11476","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.money.sk\/novinky-a-tipy\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.money.sk\/novinky-a-tipy\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.money.sk\/novinky-a-tipy\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.money.sk\/novinky-a-tipy\/wp-json\/wp\/v2\/comments?post=11476"}],"version-history":[{"count":1,"href":"https:\/\/www.money.sk\/novinky-a-tipy\/wp-json\/wp\/v2\/posts\/11476\/revisions"}],"predecessor-version":[{"id":13064,"href":"https:\/\/www.money.sk\/novinky-a-tipy\/wp-json\/wp\/v2\/posts\/11476\/revisions\/13064"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.money.sk\/novinky-a-tipy\/wp-json\/wp\/v2\/media\/11477"}],"wp:attachment":[{"href":"https:\/\/www.money.sk\/novinky-a-tipy\/wp-json\/wp\/v2\/media?parent=11476"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.money.sk\/novinky-a-tipy\/wp-json\/wp\/v2\/categories?post=11476"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.money.sk\/novinky-a-tipy\/wp-json\/wp\/v2\/tags?post=11476"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}