The Office of the Information and Privacy Commissioner for British Columbia announced new requirements for privacy management programs and data breach reporting under the Freedom of Information and Protection of Privacy Act that entered into force Feb. 1. Covered entities are required to designate "someone responsible for privacy-related matters and the development, implementation and maintenance of privacy policies" and develop processes for privacy impact assessments and complaints. Breach reporting is required for incidents "expected to result in significant harm," as laid out in updated OIPC breach guidance.