Legal and ethical considerations represent fundamental aspects of occupational health assessment implementation that require careful navigation to ensure compliance with regulatory requirements while protecting employee rights and organizational interests. This comprehensive review examines the complex legal landscape governing occupational health assessments, including federal and state regulations, international standards, and emerging privacy legislation. The article explores ethical frameworks that guide responsible implementation of occupational health programs, addressing issues of informed consent, confidentiality, autonomy, and justice. Through systematic analysis of current jurisprudence, regulatory guidance, and ethical principles, this review demonstrates how organizations can develop comprehensive compliance strategies that balance legitimate business interests with employee protection. The integration of legal requirements and ethical considerations provides a framework for implementing occupational health assessments that are both effective and morally defensible while minimizing legal liability and enhancing employee trust and participation.
Introduction
The implementation of occupational health assessment programs occurs within a complex legal and ethical environment that significantly influences program design, execution, and outcomes. Organizations must navigate multiple layers of regulation including federal occupational safety and health requirements, privacy legislation, anti-discrimination laws, and state-specific mandates while simultaneously addressing fundamental ethical principles that govern medical practice and human research (Schulte et al., 2019). The intersection of these legal and ethical considerations creates both opportunities and challenges for organizations seeking to implement effective health assessment programs.
Contemporary occupational health assessment practices increasingly rely on sophisticated data collection and analysis techniques that raise novel legal and ethical questions. Traditional legal frameworks developed for simpler assessment methods may not adequately address issues arising from continuous monitoring, predictive analytics, and artificial intelligence applications (Mittelstadt, 2019). Similarly, established ethical principles require reinterpretation and application in contexts involving big data, automated decision-making, and personalized interventions.
The global nature of modern organizations adds additional complexity to legal and ethical considerations, as multinational companies must comply with varying regulatory requirements across jurisdictions while maintaining consistent ethical standards. International standards and frameworks provide guidance for harmonizing approaches across different legal systems, but significant variation remains in how different countries approach privacy protection, employee rights, and occupational health regulation (Iavicoli et al., 2018). Understanding these considerations is essential for developing comprehensive and compliant occupational health assessment programs.
Legal Framework for Occupational Health Assessment
Federal Regulatory Requirements
The Occupational Safety and Health Act of 1970 establishes the foundational legal framework for workplace health assessment in the United States, creating the Occupational Safety and Health Administration (OSHA) with broad authority to regulate workplace safety and health conditions. OSHA standards require employers to maintain safe and healthful workplaces and provide specific requirements for medical surveillance in certain industries and for exposure to particular hazards (OSHA, 2019). These requirements establish minimum standards for occupational health assessment programs while allowing employers flexibility in implementation approaches.
The Americans with Disabilities Act (ADA) significantly influences occupational health assessment practices by restricting when and how employers may conduct medical examinations and inquiries. The ADA distinguishes between pre-employment, post-offer, and current employee medical assessments, with different legal standards applying to each category (EEOC, 2020). Employers must ensure that health assessments are job-related and consistent with business necessity, particularly when dealing with current employees. The ADA also requires reasonable accommodations for employees with disabilities, which may affect how assessment results are interpreted and acted upon.
The Genetic Information Nondiscrimination Act (GINA) prohibits employers from requesting, requiring, or purchasing genetic information about employees and their family members, with limited exceptions for voluntary wellness programs that meet specific requirements. GINA’s provisions significantly impact occupational health assessment design, particularly regarding family medical history questions and genetic testing (EEOC, 2016). Violations of GINA can result in significant penalties and legal liability, making compliance essential for any comprehensive health assessment program.
State and Local Regulatory Variations
State workers’ compensation laws create additional legal requirements and opportunities for occupational health assessment programs. These laws typically require employers to provide medical treatment for work-related injuries and illnesses, creating incentives for prevention-oriented health assessments (Spieler & Burton, 2012). Some states have specific requirements for medical surveillance programs in high-risk industries, while others provide workers’ compensation premium discounts for employers who implement comprehensive safety and health programs.
State privacy laws add another layer of legal complexity, particularly with the emergence of comprehensive privacy legislation such as the California Consumer Privacy Act (CCPA) and similar laws in other states. These laws may apply to employee health data in certain circumstances, requiring additional protections and employee rights regarding data collection, use, and sharing (Pardau, 2018). Organizations must carefully analyze state privacy requirements to ensure compliance with applicable provisions.
Local ordinances and regulations may impose additional requirements, particularly in jurisdictions with strong labor protections or specific health concerns. Some cities and counties have enacted “ban the box” legislation that restricts pre-employment health inquiries, while others have specific requirements for workplace wellness programs or health screenings (Rodriguez & Avery, 2016). Organizations must conduct comprehensive legal reviews to identify all applicable requirements at federal, state, and local levels.
Industry-Specific Regulations
Certain industries face additional regulatory requirements that significantly impact occupational health assessment implementation. The Department of Transportation (DOT) imposes specific medical certification requirements for commercial drivers, including regular physical examinations and drug testing (FMCSA, 2021). These requirements create mandatory health assessment programs with specific protocols and documentation requirements.
Healthcare organizations must comply with additional regulations including those from the Centers for Disease Control and Prevention (CDC) regarding infection control and employee health programs. The Joint Commission and other accrediting bodies may impose specific requirements for employee health assessments as conditions of accreditation (Joint Commission, 2020). These industry-specific requirements often exceed general OSHA standards and may require specialized expertise for compliance.
Nuclear industry workers face comprehensive health assessment requirements under Nuclear Regulatory Commission (NRC) regulations, including pre-employment examinations, periodic assessments, and specialized monitoring for radiation exposure. Similarly, employees in certain chemical manufacturing facilities may be subject to specific medical surveillance requirements under OSHA’s substance-specific standards (NRC, 2019). These industry-specific programs often serve as models for comprehensive occupational health assessment in other sectors.
Privacy and Data Protection Laws
Health Insurance Portability and Accountability Act (HIPAA)
HIPAA’s privacy and security rules significantly impact occupational health assessment programs, particularly when healthcare providers are involved in conducting assessments or when assessments are integrated with employee health plans. While HIPAA generally does not apply directly to employers acting in their capacity as employers, it may apply when employers provide healthcare services or when covered entities such as occupational health clinics are involved (HHS, 2018). Understanding HIPAA’s application requires careful analysis of the specific roles and relationships involved in health assessment programs.
The HIPAA Privacy Rule establishes standards for the protection of individually identifiable health information, including requirements for patient authorization, minimum necessary use and disclosure, and individual rights regarding their health information. When HIPAA applies to occupational health assessments, organizations must implement comprehensive privacy protection measures and provide required notices and rights to employees (Rothstein, 2017). Violations of HIPAA can result in significant civil and criminal penalties.
HIPAA’s Security Rule requires appropriate administrative, physical, and technical safeguards to protect electronic protected health information. These requirements may apply to occupational health assessment systems that store or transmit health information subject to HIPAA protection. Organizations must conduct risk assessments and implement security measures proportionate to the sensitivity and volume of health information involved (Appari & Johnson, 2010).
State Privacy Legislation
The California Consumer Privacy Act (CCPA) and its successor, the California Privacy Rights Act (CPRA), establish comprehensive privacy rights that may apply to employee health information in certain circumstances. While these laws provide exemptions for certain employment-related information, the scope of these exemptions is limited and subject to ongoing interpretation (Pardau, 2018). Organizations with California employees must carefully analyze whether their occupational health assessment programs fall within applicable exemptions or require compliance with CCPA/CPRA requirements.
Other states have enacted or are considering comprehensive privacy legislation that may impact occupational health assessment programs. Virginia’s Consumer Data Protection Act and Colorado’s Privacy Act include provisions that may apply to employee data in certain circumstances (Rossow & Bailey, 2021). The patchwork of state privacy laws creates compliance challenges for multi-state employers who must navigate varying requirements and employee rights.
International privacy laws such as the European Union’s General Data Protection Regulation (GDPR) apply to organizations that process personal data of EU residents, including employee health information. GDPR’s requirements for lawful basis, data minimization, purpose limitation, and individual rights significantly impact how occupational health assessments can be designed and implemented for EU employees (Voigt & Von dem Bussche, 2017). The extraterritorial reach of GDPR means that many US-based organizations must comply with its requirements.
Emerging Privacy Technologies and Regulations
Biometric privacy laws in states such as Illinois, Texas, and Washington impose specific requirements for the collection and use of biometric information, which may be involved in occupational health assessments. The Illinois Biometric Information Privacy Act (BIPA) requires specific consent procedures and imposes significant penalties for violations, while Texas and Washington laws provide somewhat different approaches (Rosenbach v. Six Flags, 2019). Organizations using biometric technologies in health assessments must carefully comply with applicable biometric privacy requirements.
Emerging technologies such as artificial intelligence and machine learning raise novel privacy concerns that existing legal frameworks may not adequately address. Algorithmic decision-making based on health assessment data may implicate fairness and discrimination concerns, while the opacity of some AI systems creates challenges for providing required notices and individual rights (Barocas & Selbst, 2016). Organizations must anticipate how emerging privacy regulations may impact their use of advanced technologies in occupational health assessment.
Ethical Principles in Occupational Health Assessment
Fundamental Bioethical Principles
The principle of autonomy requires that individuals have the right to make informed decisions about their own healthcare, including participation in occupational health assessments. In the employment context, autonomy may be compromised by power imbalances between employers and employees, making it essential to implement robust informed consent processes that truly respect individual choice (Beauchamp & Childress, 2019). Organizations must carefully consider whether employee participation is truly voluntary or whether economic pressures effectively coerce participation.
Informed consent in occupational health assessment requires clear communication about the purpose, procedures, risks, benefits, and alternatives to participation. Employees must understand how their health information will be used, shared, and protected, as well as the potential consequences of participation or non-participation (Kaye et al., 2015). Dynamic consent processes that allow employees to modify their preferences over time may enhance autonomy by providing ongoing control over participation.
The principle of beneficence requires that occupational health assessments be designed to promote employee wellbeing and avoid harm. This principle supports the implementation of evidence-based assessment programs that have demonstrated effectiveness in improving health outcomes (Pronk, 2014). However, beneficence must be balanced against other ethical considerations, and organizations must carefully evaluate whether the potential benefits of assessment programs justify any risks or burdens imposed on employees.
Justice and Fairness Considerations
The principle of justice requires fair distribution of the benefits and burdens of occupational health assessment programs. This principle raises questions about which employees should be included in assessment programs, how assessment results should be used, and how the costs and benefits of programs should be allocated (Daniels, 2008). Justice considerations are particularly important when assessment programs target specific employee groups or when results may affect employment opportunities or working conditions.
Distributive justice concerns arise when occupational health assessment programs are not equally available to all employees or when the benefits of programs disproportionately accrue to certain groups. For example, wellness programs that provide financial incentives may be more accessible to higher-income employees who can more easily afford to participate in health-promoting activities (Schmidt et al., 2016). Organizations must consider how to design programs that promote equitable access and outcomes across diverse employee populations.
Procedural justice requires fair processes for implementing and managing occupational health assessment programs. This includes transparent policies and procedures, consistent application of requirements, and fair processes for addressing concerns or complaints (Colquitt et al., 2001). Employees must have confidence that assessment programs are administered fairly and that their rights and interests are protected throughout the process.
Confidentiality and Privacy Ethics
Confidentiality represents a fundamental ethical obligation in healthcare relationships that extends to occupational health assessment contexts. Healthcare providers conducting occupational health assessments have professional and ethical obligations to protect patient confidentiality, which may create tensions with employer expectations for access to health information (Brandt-Rauf & Brandt-Rauf, 2012). Clear agreements about the scope and limits of confidentiality are essential for managing these competing obligations.
The concept of privacy extends beyond confidentiality to include broader notions of informational self-determination and control over personal information. Privacy ethics in occupational health assessment must address not only who has access to health information but also how that information is collected, used, analyzed, and stored (Tavani, 2016). Employees have reasonable expectations that their health information will be treated with appropriate respect and protection.
Balancing transparency and privacy creates ongoing challenges in occupational health assessment implementation. While transparency about program purposes, procedures, and outcomes is important for building trust and ensuring accountability, excessive transparency may compromise individual privacy (O’Neill, 2002). Organizations must carefully consider how to provide appropriate transparency while protecting sensitive health information.
Implementation Compliance Strategies
Legal Risk Assessment and Management
Comprehensive legal risk assessment is essential for identifying potential compliance challenges and developing appropriate mitigation strategies. This assessment should examine all applicable federal, state, and local laws and regulations, as well as relevant case law and regulatory guidance (Spieler & Burton, 2012). Organizations should engage qualified legal counsel with expertise in employment law, healthcare regulation, and privacy to ensure thorough risk assessment.
Risk management strategies should address identified legal risks through appropriate policies, procedures, training, and monitoring systems. This may include developing comprehensive privacy policies, implementing data security measures, establishing clear consent processes, and creating audit and oversight mechanisms (Rothstein, 2017). Regular legal compliance reviews should be conducted to ensure ongoing adherence to applicable requirements.
Documentation and record-keeping requirements vary across different legal frameworks and must be carefully managed to ensure compliance while protecting employee privacy. Organizations must maintain appropriate records to demonstrate compliance with applicable requirements while implementing retention and destruction policies that minimize privacy risks (OSHA, 2019). Electronic record-keeping systems should incorporate appropriate access controls and audit trails.
Organizational Policy Development
Comprehensive organizational policies should address all aspects of occupational health assessment implementation, including program objectives, procedures, privacy protections, employee rights, and compliance requirements. These policies should be developed in consultation with legal counsel, healthcare professionals, human resources specialists, and employee representatives to ensure comprehensive coverage and practical implementation (Schulte et al., 2019).
Policy development should address specific requirements for different types of assessments, employee populations, and legal jurisdictions. This may require separate policies for pre-employment assessments, periodic health screenings, return-to-work evaluations, and fitness-for-duty examinations (EEOC, 2020). Policies should also address special considerations for employees in safety-sensitive positions or those exposed to specific workplace hazards.
Training and communication strategies are essential for ensuring effective policy implementation. All personnel involved in occupational health assessment programs should receive appropriate training on legal requirements, ethical principles, and organizational policies (Joint Commission, 2020). Regular refresher training should be provided to address changes in legal requirements and organizational policies.
Vendor Management and Third-Party Relationships
Many organizations rely on third-party vendors to provide occupational health assessment services, creating additional legal and ethical considerations. Vendor selection should include careful evaluation of vendor qualifications, compliance capabilities, and data protection measures (Mittelstadt, 2019). Organizations remain responsible for ensuring that vendor services comply with applicable legal and ethical requirements.
Contractual arrangements with vendors should address specific compliance requirements, including privacy protection, data security, reporting obligations, and audit rights. Business associate agreements may be required under HIPAA when vendors have access to protected health information (HHS, 2018). Contracts should also address liability allocation and indemnification for compliance failures.
Ongoing vendor oversight and monitoring are essential for ensuring continued compliance and quality performance. This may include regular audits, performance reviews, compliance certifications, and incident reporting requirements (Appari & Johnson, 2010). Organizations should maintain the capability to terminate vendor relationships if compliance or performance issues cannot be adequately resolved.
Employee Rights and Protections
Informed Consent and Voluntary Participation
Meaningful informed consent requires that employees receive comprehensive information about occupational health assessment programs in language they can understand. This information should include the purpose and procedures of assessments, potential risks and benefits, how information will be used and shared, and the consequences of participation or non-participation (Beauchamp & Childress, 2019). Consent processes should be designed to promote understanding and voluntary decision-making rather than merely satisfying legal requirements.
The voluntary nature of participation may be compromised by employment relationships and economic pressures, requiring special attention to consent process design. Organizations should carefully consider whether assessments are truly voluntary or whether they should be characterized as mandatory for certain positions or circumstances (Kaye et al., 2015). When assessments are mandatory, organizations should provide clear justification based on job-relatedness and business necessity.
Withdrawal of consent and ongoing consent management create additional challenges in occupational health assessment programs. Employees should have the right to withdraw consent and discontinue participation in voluntary programs, although this right may be limited for mandatory assessments related to safety-sensitive positions (Pronk, 2014). Organizations should implement systems for managing consent preferences and responding to withdrawal requests.
Data Access and Correction Rights
Employees have various rights regarding access to their health assessment information, depending on applicable legal frameworks. HIPAA provides patients with rights to access their medical records, while state privacy laws may provide additional rights regarding personal information (HHS, 2018). Organizations should establish clear processes for responding to employee requests for access to their health assessment information.
The right to request correction of inaccurate health information is important for ensuring data quality and protecting employee interests. Organizations should implement processes for investigating and responding to correction requests, including procedures for documenting disagreements when corrections are not made (Rothstein, 2017). Medical professionals involved in health assessments should follow professional standards for record correction and amendment.
Data portability rights under some privacy laws allow individuals to obtain their personal information in machine-readable formats that can be transferred to other organizations. While these rights may not apply broadly to employee health information, organizations should consider how to respond to requests for health assessment data in portable formats (Voigt & Von dem Bussche, 2017).
Anti-Discrimination Protections
The Americans with Disabilities Act provides comprehensive protections against disability discrimination that significantly impact occupational health assessment programs. Employers must ensure that health assessments do not result in discriminatory treatment of employees with disabilities and that reasonable accommodations are provided when needed (EEOC, 2020). Assessment results should be evaluated in light of essential job functions and business necessity requirements.
Genetic information discrimination protections under GINA require careful attention to the scope of health assessments and the types of information collected. Organizations must avoid requesting or using genetic information in employment decisions, with limited exceptions for voluntary wellness programs that meet specific requirements (EEOC, 2016). Training for personnel involved in health assessments should emphasize GINA compliance requirements.
Other protected characteristics under federal and state civil rights laws may also be implicated in occupational health assessment programs. Organizations should ensure that assessment programs do not have disparate impacts on protected groups and that any differences in treatment are justified by legitimate business reasons (Rodriguez & Avery, 2016). Regular monitoring and analysis of assessment outcomes may help identify potential discriminatory effects.
International Perspectives and Standards
European Union Data Protection Framework
The General Data Protection Regulation (GDPR) establishes comprehensive privacy protections for personal data processing that significantly impact occupational health assessment programs involving EU employees. GDPR requires organizations to identify a lawful basis for processing personal data, with specific provisions addressing employee data and sensitive health information (Voigt & Von dem Bussche, 2017). The regulation’s emphasis on data minimization and purpose limitation requires careful consideration of what health information is collected and how it is used.
GDPR’s individual rights provisions provide employees with extensive rights regarding their personal data, including rights to access, rectification, erasure, portability, and objection to processing. These rights must be balanced against legitimate business interests and legal requirements for occupational health assessment (Article 29 Working Party, 2017). Organizations must implement systems and procedures to respond to individual rights requests within required timeframes.
The appointment of Data Protection Officers (DPOs) may be required for organizations that engage in large-scale processing of health data or systematic monitoring of employees. DPOs have specific responsibilities for ensuring GDPR compliance and serving as contact points for data protection authorities and individuals (GDPR Article 37-39). Organizations subject to GDPR requirements should carefully evaluate whether DPO appointment is required for their occupational health assessment programs.
International Labour Organization Standards
The International Labour Organization (ILO) provides guidance and standards for occupational safety and health that influence approaches to health assessment worldwide. ILO Convention 155 on Occupational Safety and Health establishes general principles for workplace health protection that support comprehensive health assessment programs (ILO, 2001). These standards emphasize the importance of worker participation, consultation, and rights protection in occupational health programs.
ILO recommendations regarding workers’ health surveillance provide specific guidance for implementing occupational health assessment programs. These recommendations emphasize the importance of medical confidentiality, voluntary participation where possible, and worker rights regarding health information (ILO, 1985). While not legally binding, ILO standards influence national legislation and organizational policies in many countries.
The ILO’s recent work on the future of work and digital labor platforms addresses emerging issues in occupational health assessment, including the use of artificial intelligence and algorithmic management. These developments provide guidance for organizations implementing technology-enhanced health assessment programs while protecting worker rights and dignity (ILO, 2019).
Cross-Border Data Transfer Requirements
Organizations operating across multiple jurisdictions must navigate complex requirements for transferring employee health data across borders. GDPR’s restrictions on international data transfers require adequate protection for personal data transferred outside the European Economic Area, which may be achieved through adequacy decisions, standard contractual clauses, or binding corporate rules (GDPR Chapter V). These requirements significantly impact multinational organizations implementing global occupational health assessment programs.
Other countries have implemented or are considering data localization requirements that restrict the transfer of personal data outside their borders. China’s Cybersecurity Law and Data Security Law impose specific requirements for cross-border data transfers that may affect occupational health assessment programs (Sacks, 2021). Organizations must carefully analyze applicable data transfer requirements in each jurisdiction where they operate.
International agreements and frameworks such as the APEC Privacy Framework and various mutual recognition arrangements provide mechanisms for facilitating cross-border data flows while maintaining privacy protections. Organizations should evaluate whether these frameworks provide appropriate mechanisms for their specific cross-border data transfer needs (APEC, 2015).
Conclusion
Legal and ethical considerations represent fundamental constraints and opportunities that shape the design, implementation, and outcomes of occupational health assessment programs. The complex regulatory environment requires organizations to navigate multiple layers of federal, state, and local requirements while addressing industry-specific regulations and emerging privacy legislation. Successful compliance requires comprehensive risk assessment, policy development, and ongoing monitoring to ensure adherence to evolving legal requirements.
Ethical principles provide essential guidance for implementing occupational health assessment programs that respect employee autonomy, promote beneficence, ensure justice, and protect privacy and confidentiality. These principles must be operationalized through robust consent processes, fair program design, transparent communication, and appropriate data protection measures. The tension between individual rights and organizational interests requires careful balancing to achieve outcomes that serve both employee wellbeing and legitimate business objectives.
International perspectives and standards add additional complexity for multinational organizations that must comply with varying legal requirements while maintaining consistent ethical standards across jurisdictions. The increasing globalization of business operations requires sophisticated approaches to compliance that address cross-border data transfers, varying privacy protections, and different cultural expectations regarding employee rights and organizational responsibilities.
Future developments in occupational health assessment technology will continue to challenge existing legal and ethical frameworks, requiring ongoing adaptation and evolution of compliance strategies. Organizations must remain vigilant about emerging risks and opportunities while maintaining commitment to fundamental principles of employee protection and organizational responsibility. The successful integration of legal compliance and ethical practice provides the foundation for occupational health assessment programs that achieve their intended benefits while respecting employee rights and maintaining public trust.
References
- APEC Privacy Framework. (2015). APEC Privacy Framework 2015. Asia-Pacific Economic Cooperation Secretariat. https://www.apec.org/Publications/2017/08/APEC-Privacy-Framework-(2015)
- Appari, A., & Johnson, M. E. (2010). Information security and privacy in healthcare: Current state of research. International Journal of Internet and Enterprise Management, 6(4), 279-314. https://doi.org/10.1504/IJIEM.2010.035624
- Article 29 Working Party. (2017). Opinion 2/2017 on data processing at work. European Commission. https://ec.europa.eu/justice/article-29/documentation/opinion-recommendation/files/2017/wp249_en.pdf
- Barocas, S., & Selbst, A. D. (2016). Big data’s disparate impact. California Law Review, 104(3), 671-732. https://doi.org/10.15779/Z38BG31
- Beauchamp, T. L., & Childress, J. F. (2019). Principles of biomedical ethics (8th ed.). Oxford University Press.
- Brandt-Rauf, S. I., & Brandt-Rauf, P. W. (2012). History of occupational medicine: Relevance of Imhotep and the Edwin Smith papyrus. British Journal of Industrial Medicine, 44(2), 68-70. https://doi.org/10.1136/oem.44.2.68
- Colquitt, J. A., Conlon, D. E., Wesson, M. J., Porter, C. O., & Ng, K. Y. (2001). Justice at the millennium: A meta-analytic review of 25 years of organizational justice research. Journal of Applied Psychology, 86(3), 425-445. https://doi.org/10.1037/0021-9010.86.3.425
- Daniels, N. (2008). Just health: Meeting health needs fairly. Cambridge University Press.
- Equal Employment Opportunity Commission. (2016). Genetic information discrimination. U.S. Equal Employment Opportunity Commission. https://www.eeoc.gov/laws/types/genetic.cfm
- Equal Employment Opportunity Commission. (2020). ADA enforcement guidance: Disability-related inquiries and medical examinations of employees under the Americans with Disabilities Act. U.S. Equal Employment Opportunity Commission. https://www.eeoc.gov/policy/docs/guidance-inquiries.html
- Federal Motor Carrier Safety Administration. (2021). Medical examination requirements. U.S. Department of Transportation. https://www.fmcsa.dot.gov/medical/driver-medical-requirements/medical-examination-requirements
- Health and Human Services. (2018). Summary of the HIPAA privacy rule. U.S. Department of Health and Human Services. https://www.hhs.gov/hipaa/for-professionals/privacy/laws-regulations/index.html
- Iavicoli, I., Leso, V., Beezhold, D. H., & Shvedova, A. A. (2018). Nanotechnology in agriculture: Opportunities, toxicological implications, and occupational risks. Toxicology and Applied Pharmacology, 329, 96-111. https://doi.org/10.1016/j.taap.2017.05.025
- International Labour Organization. (1985). Occupational health services recommendation (No. 171). International Labour Organization. https://www.ilo.org/dyn/normlex/en/f?p=NORMLEXPUB:12100:0::NO::P12100_ILO_CODE:R171
- International Labour Organization. (2001). Safety and health at work: A vision for sustainable prevention. International Labour Organization. https://www.ilo.org/wcmsp5/groups/public/—ed_protect/—protrav/—safework/documents/publication/wcms_118385.pdf
- International Labour Organization. (2019). Work for a brighter future: Global Commission on the Future of Work. International Labour Organization. https://www.ilo.org/weso-greening/documents/WCMS_662410/lang–en/index.htm
- Joint Commission. (2020). Environment of care standards. The Joint Commission. https://www.jointcommission.org/standards/standard-faqs/hospital-and-hospital-clinics/environment-of-care-ec/
- Kaye, J., Whitley, E. A., Lund, D., Morrison, M., Teare, H., & Melham, K. (2015). Dynamic consent: A patient interface for twenty-first century research networks. European Journal of Human Genetics, 23(2), 141-146. https://doi.org/10.1038/ejhg.2014.71
- Mittelstadt, B. (2019). Principles alone cannot guarantee ethical AI. Nature Machine Intelligence, 1(11), 501-507. https://doi.org/10.1038/s42256-019-0114-4
- Nuclear Regulatory Commission. (2019). Occupational dose limits for adults. U.S. Nuclear Regulatory Commission. https://www.nrc.gov/reading-rm/doc-collections/cfr/part020/part020-1201.html
- Occupational Safety and Health Administration. (2019). General duty clause. U.S. Department of Labor. https://www.osha.gov/laws-regs/oshact/section5-duties
- O’Neill, O. (2002). Autonomy and trust in bioethics. Cambridge University Press.
- Pardau, S. L. (2018). The California Consumer Privacy Act: Towards a European-style privacy regime in the United States? Journal of Tech Law & Policy, 23, 68-114. https://doi.org/10.2139/ssrn.3275607
- Pronk, N. P. (2014). Best practice design principles of worksite health and wellness programs. ACSM’s Health & Fitness Journal, 18(1), 42-46. https://doi.org/10.1249/FIT.0000000000000012
- Rodriguez, M., & Avery, D. (2016). Inclusive leadership: Building relationships and developing trust. In The Oxford handbook of diversity and work (pp. 330-348). Oxford University Press.
- Rosenbach v. Six Flags Entertainment Corp. (2019). 129 N.E.3d 1197 (Ill. 2019). https://courts.illinois.gov/Resources/a0f4c12e-d7b0-4bb6-87a8-6330e5c7a5c6/129782.pdf
- Rossow, J., & Bailey, J. (2021). State comprehensive privacy law comparison. International Association of Privacy Professionals. https://iapp.org/resources/article/state-comparison-table/
- Rothstein, M. A. (2017). Occupational safety and health law (8th ed.). West Academic Publishing.
- Sacks, S. (2021). China’s emerging data privacy system and GDPR. Center for Strategic and International Studies. https://www.csis.org/analysis/chinas-emerging-data-privacy-system-and-gdpr
- Schmidt, H., Voigt, K., & Emanuel, E. J. (2016). The ethics of not participating in a wellness program. American Journal of Bioethics, 16(3), 1-3. https://doi.org/10.1080/15265161.2015.1120794
- Schulte, P. A., Guerin, R. J., Schill, A. L., Bhattacharya, A., Cunningham, T. R., Pandalai, S. P., … & Stephenson, C. M. (2019). Considerations for incorporating “well-being” in public policy for workers and workplaces. American Journal of Public Health, 105(8), e31-e44. https://doi.org/10.2105/AJPH.2015.302616
- Spieler, E. A., & Burton Jr, J. F. (2012). The lack of correspondence between work-related disability and receipt of workers’ compensation benefits. American Journal of Industrial Medicine, 55(6), 487-505. https://doi.org/10.1002/ajim.22037
- Tavani, H. T. (2016). Ethics and technology: Controversies, questions, and strategies for ethical computing (5th ed.). John Wiley & Sons.
- Voigt, P., & Von dem Bussche, A. (2017). The EU General Data Protection Regulation (GDPR): A practical guide. Springer International Publishing.