Helping Our Clients Conduct Globally Compliant Market Research. December 14, 2016

Similar documents
Dr. Hielke Hijmans Special Advisor European Data Protection Supervisor

EVIDENCE ON THE DATA PROTECTION BILL. For the House of Commons Public Bill Committee by Open Rights Group and Chris Pounder

Bitkom views on EDPB Guidelines 3/2018 on the territorial scope of the GDPR (Article 3)

Foundation Certificate

The European Union General Data Protection Regulation (GDPR) Barmak Nassirian, Federal Director Thursday, February 22, 2018

A Modern European Data Protection Framework Safeguarding Privacy in a Connected World

European, Middle East, and Latin American Privacy and Cyber Developments For In-House Counsel

60 th UIA CONGRESS Budapest / Hungary October 28 November 1, UIA Biotechnology Law Commission Sunday, October 30, 2016

Brexit misperceptions

Privacy law overview. Engineering & Public Policy

Data Protection Bill, House of Lords second reading Information Commissioner s briefing

Rules of Origin Process (Chile)

The global diffusion of data privacy laws and their interoperability

A Modern European Data Protection Framework. Bruno Gencarelli DG JUSTICE and CONSUMERS

100+ Data Privacy Laws: Their Significance and Origins

Brexit: Securing the best legal framework for your businesses

Asian Privacy Certification

AMERICAN RECOVERY & REINVESTMENT ACT OF 2009 TITLE XIII HEALTH INFORMATION TECHNOLOGY ANALYSIS OF PRIVACY AND SECURITY REQUIREMENTS (SUBPART D)

Fragomen Privacy Notice

Latin American Culture of Privacy - Presentation

The legal framework and guidance on data protection under the. Cross-border ehealth Information Services (CBeHIS) T6.2 JAseHN draft v.2 (20.10.

MEMORANDUM. Internet Corporation for Assigned Names and Numbers. Thomas Nygren and Pontus Stenbeck, Hamilton Advokatbyrå

Privacy and Protection of Personal Data in the EU Transfers of Personal Data to third Countries

SAFE HARBOR: STAYING ALIVE?

The Challenges of ABAC Compliance in the Supply Chain From Due Diligence to 3rd-Party Audit

WEBINAR: SECONDMENT. Bryan Cave European Labour and Employment Team 17 January 2017

Customer Data Annual Privacy Agreement

WORKSHOP 1: IP INFRINGEMENT AND INTERNATIONAL FORUM SHOPPING

THE PERSONAL DATA PROTECTION BILL, 2018: A SUMMARY

16 March Purpose & Introduction

Legal Insights. Discovery under the GDPR. Introduction

Greater London Darts Organisation Handbook & Rules (County Section Only)

DocuSign Envelope ID: D3C1EE91-4BC9-4BA9-B2CF-C0DE318DB461

FINAL WORKING DOCUMENT

EIBTM 2014 TRENDS WATCH REPORT

A National Survey of Voter Attitudes January 14-17, 2019

LEGAL BASIS OBJECTIVES ACHIEVEMENTS

Tribal Government Code of Conduct

PREPARING FOR NEW PRIVACY REGIMES: PRIVACY PROFESSIONALS VIEWS ON THE GENERAL DATA PROTECTION REGULATION AND PRIVACY SHIELD

SIMON READHEAD Q.C. PRIVACY NOTICE

ANTI-BRIBERY AND CORRUPTION POLICY

FC3 (P5) International Patent Law 2 FINAL Mark Scheme 2017

Third country auditor deregistration procedures

Business Immigration. An outline of Danish immigration schemes.

ARTICLE 29 DATA PROTECTION WORKING PARTY

From: Crisafulli, Steve Sent: Tuesday, April 28, :16 PM To: Crisafulli, Steve Subject: Sine Die

Secretary of the Senate Office of Public Records 232 Hart Building Washington, DC

Will the GDPR Kibosh EU-US Discovery? November 7, 2017

Data Processing Agreement

Italy Introduces New Measures to Simplify Dual-Use Export Transactions and Sets the Sanctions Related to Trade Embargoes and Proliferating Materials

Consent for Treatment of Minors in Idaho

Cross-Border Internal Investigations: Data Protection and Employee Issues. June 11, 2014

Data Protection Policy

ANNEX RELATIONS WITH THE COMPLAINANT REGARDING INFRINGEMENTS OF EU LAW

4. COMPARISON OF THE INDIAN PATENT LAW WITH THE PATENT LAWS IN U.S., EUROPE AND CHINA

Lobbying Disclosure Act (LDA) changes made by the Honest Leadership and Open Government Act of 2007 (enacted September 14, 2007, Pub. L. No.

H 6178 S T A T E O F R H O D E I S L A N D

OUTBOUND/GLOBAL IMMIGRATION PRACTICE CLIENT BULLETIN

US-China Business Council Comments on the Draft Measures for the Compulsory Licensing of Patents

Call for evidence: EEA workers in the UK labour market

State Attorney General Investigations and Litigation. Barry H. Boise November 3, 2011

Data Processing Addendum

Appendix 1 Data Processing Agreement

SERVICE OF PROCESS AND THE TAKING OF EVIDENCE ABROAD : THE IMPACT OF ELECTRONIC MEANS ON THE OPERATION OF THE HAGUE CONVENTIONS

Mandate of the Special Rapporteur on the promotion and protection of the right to freedom of opinion and expression

FUJITSU Cloud Service K5: Data Protection Addendum

Act on the General Freedom of Movement for EU Citizens (Freedom of Movement Act/EU) of 30 July 2004 (Federal Law Gazette I, p.

Manual on sanctions related to ADS

Memorandum of Understanding. between. The Legal Aid Agency (LAA) and. Solicitors Regulation Authority (SRA)

POLICY STATEMENT. Topic: False Claims Act Date Effective: 10/13/08. X Revised New Section: Corporate Compliance Number: 10.05

Economics Summer Term Task

ANNEXES. to the. Proposal for a REGULATION OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL. on the European Union trade mark (codification)

No. ( ) for the year 2017

ECN MODEL LENIENCY PROGRAMME

ARTICLE 29 DATA PROTECTION WORKING PARTY

Consultation on the General Data Protection Regulation: CAP s evaluation of responses

Strengthening Privacy Protection through Co-Regulation

While the United States remains predominant in taking on global responsibilities, challenges

EU-China Trade Project (II) Leniency Policy and Practice

DANONE RULES OF PROCEDURE OF THE BOARD OF DIRECTORS

Is information about legal entities personal data? No. The DPA only applies to information about individuals as opposed to legal entities.

Irish Government Publishes Data Protection Bill 2018

DATA PROCESSING ADDENDUM

Application for a residence permit for a long-term third country national from outside the EU (sponsor)

The following fees must be paid in connection with the filing of a PCT application:

Bringing skilled workers into Sri Lan Is it a viable option?

How to obtain and record consent

WHAT IS A PATENT AND WHAT DOES IT PROTECT?

Wealth migration trends in 2015

International Relations MA Thesis topic proposal. Department of International Relations 2018/2019. Dr. István Csejtei.

Open Governmental Proceedings Act. A Guide to the West Virginia WEST VIRGINIA ETHICS COMMISSION. Also known as the Sunshine Law or Open Meetings Law

Proposal for a COUNCIL DECISION

Private Actions for Infringement of Competition Laws in the EU: An Ongoing Project

TERMS AND CONDITIONS OF SALE

32000D0520. Official Journal L 215, 25/08/2000 P

Information exempt from the subject access right (section 40(4) and

City Government Responsibility, Lobbying and Ethics Reform Act

DATA PROTECTION LAWS OF THE WORLD. Ukraine

Takashi Shiraishi Professor, Center for Southeast Asian Studies, Kyoto University. There are various kinds of meanings in saying "Japan in Asia".

International cooperation on the protection of personal data: Moroccan practice

Transcription:

Helping Our Clients Conduct Globally Compliant Market Research December 14, 2016

The Affordable Care Act

US Market Research Federal Affordable Care Act ObamaCare governs double-blind market research and makes it unnecessary to report payments to federal government under sunshine reporting. The Act is published into CMS (Center for Medicare and Medicaid Services) Rules followed by pharmaceutical clients: 42 CFR Parts 402 and 403 If incoming administration makes changes to the Act it may or may not change the rules: Needs to be watched carefully by the pharmaceutical and market research industry. Internal Revenue Service requires W-9 documentation and 1099 issuance for any respondent earning $600 or over in a calendar year 2016 M3 USA Corporation. All rights reserved. Globally Compliant Market Research 3

The European Union

US-EU Market Research The EU - US Privacy Shield is designed to protect the privacy rights of citizens of the European Economic Area (EEA) when their personally identifiable information (PII) is transferred to the USA. This new framework is the replacement for the invalidated Safe Harbor Framework. The Privacy Shield places stronger obligations on US organizations to protect the personal data of EEA citizens. It requires greater transparency about transfers of personal data to the US and it offers more accessible redress options in case of complaints. The European Commission (EC) and Federal Trade Commission (FTC) established the EU Privacy Shield to provide enforceable protection of EU citizen data and privacy. UK voted for BREXIT to leave EU but has not yet ratified the request which allows for a 2 year negotiating period. A separate UK US Privacy Shield may be necessary. 2016 M3 USA Corporation. All rights reserved. Globally Compliant Market Research 5

NEW EU General Data Protection Regulations (GDPR) EU has been following General Data Protection Directives which are locally implemented suggestions for data protection and privacy EU Commission passed regulations (laws) that replace the directives starting May 2018 so there is an equal understanding and implementation of data protection in Europe These laws apply to anyone who controls or processes data with personally identifiable information (PII) You can expect inquiries from clients about how EU data are protected Some of these laws apply directly to market research including o Registration with one Data Protection Authority (DPA) o Requirement to opt in and disclose how personal data will be used o Allowance to opt out at any time and be forgotten Anonymized data is the best way to stay clear of GDPR obligations 2016 M3 USA Corporation. All rights reserved. Globally Compliant Market Research 6

Loi Anti- Cadeaux & Loi Bertrand

French Market Research French Government passed Loi Anti-Cadeaux (Anti-Gift) and Loi Bertrand (Transparency) laws with reporting requirements that include honoraria payments over 10 Euro for market research with all HCPs Research must be registered with Conseil National de l'ordre des Médecins (CNOM) 30 days in advance (recommended but not required before starting research) and requires disclosure of topic, duration, and incentive sponsor is blinded If an issue is raised, corrective action is suggested but not required. Names and amounts paid to HCPs must be reported within 30 days after research is completed Fines are significant and compliance is required by the Health Care Professional and the Agency conducting the research New Annual Approval Process for Physicians being set up by CNOM 2016 M3 USA Corporation. All rights reserved. Globally Compliant Market Research 8

French Market Research Fines Payments to Healthcare Professionals is taken very seriously in France Under Loi Anti-Cadeaux Physicians who do not disclose their payments can be fined EUR 75,000 and imprisoned. Companies not registering the research the fine is multiplied by five (EUR 375,000) and business sanctions may be issued (Article L.4163-2 PHC). 2016 M3 USA Corporation. All rights reserved. Globally Compliant Market Research 9

French Market Research Fines Under Loi Bertrand Manufacturers (pharma) are required to push for the disclosures of market research honoraria and themselves can be fined (Article L.1454-3 PHC). 2016 M3 USA Corporation. All rights reserved. Globally Compliant Market Research 10

Asia Data Export Bans and Licenses

Asia Data Export Bans and Licenses Asian countries which have a personal data export ban Japan Russia China Additionally in Japan 2003 Act 57 on the Protection of Personal Information requires companies to certify data protection Licenses from the Chinese government are required to be on the Chinese internet (.cn) and conduct data collection on Chinese citizens 2016 M3 USA Corporation. All rights reserved. Globally Compliant Market Research 12

M3 is helping our clients and end clients remain compliant with healthcare market research in the US, Europe, and Asia.

How to Stay Compliant M3 uses a local model to be aware of local rules and regulations M3 maintains an ISO (International Standards Organization) certification for market research data collection (ISO26362) and an ISO certification for data protection and security (ISO27001). An executive for M3 chairs the Institute for Research Quality that certifies companies to the market research ISO standards M3 sits on the board of directors of industry associations CASRO and PMRG and sits on committees for MRA, BHBIA, EphMRA, and PBIRG so we can stay vigilant M3 has in-house counsel that participates in industry legal roundtables M3 passes our knowledge on to you to keep you and your end clients compliant with local, regional, national, and international rules, regulations, and laws. Please reach out to M3 for any questions about compliance 2016 M3 USA Corporation. All rights reserved. Globally Compliant Market Research 14

QUESTIONS?

501 Office Center Drive, Suite 410 Fort Washington, PA 19034 THANK YOU coverpeck@usa.m3.com 202-293-2288 http://research.m3.com