Latest Posts › General Data Protection Regulation (GDPR)

Share:

International Data Flows - How to Prepare for the New EU SCCs

The last few years have witnessed remarkable changes in the privacy world.  The GDPR, the CCPA, the invalidation of the EU-US Privacy Shield framework and the related obligations resulting from the Schrems II decision - to...more

The Data & Brexit Digest - Data protection representatives

With the UK unambiguously out of the EU, this fourth and final installment of our Data & Brexit Digest explores the topic of appointed representatives under Article 27. What is an Article 27 representative? The...more

The Data & Brexit Digest – Drafting tips for contracts and policies

With the UK now unambiguously out of the EU, the EU General Data Protection Regulation (2016/679) (“EU GDPR”) has been replaced by the United Kingdom General Data Protection Regulation (“UK GDPR”). In this third instalment of...more

The Data & Brexit Digest - What is the source of the UK’s post Brexit Data Protection Law and how should you reference it?

This second instalment of our Brexit & Data Digest outlines the main sources of data protection law in the UK following the end of the Brexit transition period, and how the EU GDPR may continue to have relevance for companies...more

Personal Data and the UK-EU Trade and Cooperation Agreement: UK gets special “third country” status for up to 6 months

In spite of the holiday period, few will have missed the fact that the UK and the EU concluded a Trade and Cooperation Agreement on 24 December 2020. The Agreement provides a framework under which trade will take place...more

Data issues when acquiring assets from an insolvent vendor

Recent M&A deals the teams have worked on involving insolvent corporates have highlighted the challenges which exist around the transfer of customer lists and databases, which are often a significant asset for the...more

Are you a controller, a processor or a joint controller? Should you care? New EDPB guidelines on this perennial data protection...

On 2 September 2020, the European Data Protection Board (“EDPB”) published draft guidelines on the concepts of controller, joint controllers and processor, which – as explained below - play a crucial role within GDPR...more

Are you a controller, a processor or a joint controller? Should you care? New EDPB guidelines on this perennial data protection...

On 2 September 2020, the European Data Protection Board (“EDPB”) published draft guidelines on the concepts of controller, joint controllers and processor, which – as explained below - play a crucial role within GDPR...more

Can Companies Record Customer Service Calls in the EU?

It depends on the country. Many EU countries have laws that address whether a company can record a call without obtaining the consent of the caller....more

Cyber Security Trends: Tips from recent UK enforcement activity – Part 6

From the ICO’s standpoint, the steps you elect to take post-breach and the speed with which you implement them are key. Demonstrating readiness to learn lessons from a breach incident by making investments in post-breach...more

Cyber Security Trends: Tips from recent UK enforcement activity – Part 5

In this part of our briefing series, we look at how individual reactions to a data breach can shift the dial from a regulator’s perspective. Recent decisions have shown that the ICO will look behind a company’s public...more

Cyber Security Trends: Tips from recent UK enforcement activity - Part 4

When the regulator has decided to investigate your organisation following a data breach, the remit for the investigation will be wide-ranging and go beyond the narrow circumstances of the breach. Recent decisions shed useful...more

Cyber Security Trends: Tips from recent UK enforcement activity – Part 3

Key to recent ICO decisions has been the ICO’s assessment of the extent and quality of communications with affected individuals and the regulator itself. It is clear the ICO sees certain behaviours (such as the setting up of...more

Cyber Security Trends: Tips from recent UK enforcement activity – Part 2

In this part of our briefing series, we cover how prior regulatory enforcement action affects the assessment of sanctions and some pitfalls associated with undertaking internal security audits.  Who is this relevant for?...more

Cyber Security Trends: Tips from recent UK enforcement - Part 1

What insights into cyber security norms can organisations glean from the UK ICO’s recent enforcement decisions, most of which have been released since the GDPR came into force? Final fines are still awaited on the UK’s...more

Hotels and GDPR

We are now over a year on from the major changes made to the European data protection regime by the GDPR so it is time to revisit what the changes mean now for the hospitality sector and investment in it, given increased...more

Cookies and Adtech: ICO publishes an ambitious recipe for compliance

The interaction between the General Data Protection Regulation (2016/679) (“GDPR”) and the Privacy and Electronic Communications (EC Directive) Regulations 2003 (as amended) (“PECR”) has been vexing for some time now. As a...more

Data Breaches

Ready for the Inevitable? Barely a day goes by without a data breach hitting the headlines. It is becoming a fact of life for any firm holding data that, from time to time, some of that data might be lost, stolen,...more

43 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide