Privacy & Security Services in New Brunswick
End-to-end privacy and security support for organizations in New Brunswick.
Private-sector businesses in New Brunswick are governed by Canada's federal Personal Information Protection and Electronic Documents Act, PIPEDA, with oversight from the Office of the Privacy Commissioner of Canada. New Brunswick does not have its own general private-sector privacy legislation, so the federal framework applies across the range of commercial activity in the province. PIPEDA's ten fair information principles govern how organizations collect, use, and disclose personal information, and individuals in New Brunswick whose privacy rights are affected by a private-sector organization can bring complaints directly to the federal commissioner.
New Brunswick's health sector operates under a separate and distinct framework. The Personal Health Information Privacy and Access Act, PHIPAA, governs how health information custodians in the province handle personal health information, and it has been recognized as substantially similar to PIPEDA for health information custodians. Oversight of PHIPAA sits with the Office of the Ombud for New Brunswick — a distinctive feature of the province's privacy architecture, since health-sector oversight in most provinces sits with a dedicated information and privacy commissioner rather than an ombudsman's office. PHIPAA gives individuals the right to access and request correction of their personal health information and establishes custodians' core obligations around privacy and security. General commercial activity in the province, outside the defined custodian category, remains under federal PIPEDA.
Privacy Horizon works with New Brunswick organizations to navigate this dual-framework environment precisely and practically. For PIPEDA-governed businesses, we conduct privacy impact assessments and gap analyses that benchmark current practices against what the law and the Office of the Privacy Commissioner actually require, build compliance programs suited to the organization's scale and data flows, and deliver staff and leadership training grounded in the federal framework. For health-sector custodians operating under PHIPAA, we bring familiarity with the statute and the Ombud's oversight approach. Our on-call senior advisory is available when your team needs judgment on a specific question — from a vendor agreement's privacy terms to an incident with potential breach notification implications under either regime.
Privacy & security regulation in New Brunswick
Regulator: Office of the Ombud for New Brunswick
In New Brunswick, private-sector businesses are governed by Canada's federal privacy law, PIPEDA, overseen by the Office of the Privacy Commissioner of Canada. Personal health information held by custodians is separately governed by the Personal Health Information Privacy and Access Act (PHIPAA), with oversight by the Office of the Ombud for New Brunswick.
PIPEDAPersonal Information Protection and Electronic Documents Act
PIPEDA is Canada's federal private-sector privacy law. It sets out ten fair information principles governing how organizations collect, use, and disclose personal information in the course of commercial activity. It applies wherever a province has not enacted substantially similar legislation — and, even in provinces that have (Alberta, British Columbia, Québec), it continues to apply to federally regulated businesses such as banks, airlines, and telecommunications, and to personal information that flows across provincial or national borders.
PHIPAA (New Brunswick)Personal Health Information Privacy and Access Act (New Brunswick)
New Brunswick's health-sector privacy law (SNB 2009, c. P-7.05), which gives individuals the right to access and request correction of their personal health information and sets out custodians' privacy obligations. It is deemed substantially similar to PIPEDA for health information custodians. Oversight is by the Office of the Ombud for New Brunswick. General private-sector commercial activity is governed by federal PIPEDA.
What Privacy & Security includes
From assessments to compliance programs and ongoing advisory, we provide the full range of privacy and security support organizations need under Canadian law.
Assessments
Privacy impact assessments, threat & risk assessments, and gap analysis.
Compliance Programs
Guided programs to reach and maintain compliance.
Advisory
On-call senior privacy and security guidance.
Training
Practical training for staff and leadership.
PHIPAA compliance in New Brunswick's health sector
New Brunswick's PHIPAA is the privacy law for health information custodians in the province, and its oversight mechanism — the Office of the Ombud for New Brunswick — differs from the commissioner-based model used in most other provinces. Custodians need privacy policies, consent processes, access-request procedures, and breach response frameworks that align with PHIPAA's specific requirements and the Ombud's expectations. Privacy Horizon supports New Brunswick health-sector organizations through assessments, policy development, and ongoing advisory that reflects both the letter of the statute and how it is applied in practice.
Practical PIPEDA compliance for New Brunswick businesses
For most New Brunswick businesses, PIPEDA is the governing privacy law — and compliance means building real accountability into how the organization handles personal information, not just filing a privacy policy away on a server. Privacy Horizon designs compliance programs that translate PIPEDA's principles into the day-to-day decisions your organization makes about collection, consent, retention, and disclosure. We also help organizations prepare for breach scenarios through realistic incident response planning, so that if and when an incident occurs, the assessment and notification process follows a defensible structure rather than improvised reaction.
Other services in New Brunswick
Privacy & Security elsewhere
What's Protecting Your Business from the Next Threat?
Don't wait for a breach to expose your vulnerabilities. Let Privacy Horizon secure your data, ensure compliance, and build lasting trust.

