News & Analysis as of

Data Security Personal Data Corporate Counsel

Alston & Bird

Dutch Data Protection Authority Warns that Using AI Chatbots Can Lead to Personal Data Breaches

Alston & Bird on

On August 6th, the Dutch Data Protection Authority (DPA) issued guidance cautioning companies about the potential data protection risks associated with the use of Artificial Intelligence (AI)-powered chatbots....more

Bradley Arant Boult Cummings LLP

Can Privacy Be Bought? How Scrutiny of Meta’s Subscription Model Has Wider Implications –PART II

In Part I, we discussed the European Commission’s (“Commission”) disapproval of Meta’s “pay or consent” subscription model. In Part II, we delve into the European Commission’s findings, prior findings by the European Data...more

Hogan Lovells

Brazil’s Data Protection Authority releases guidance on data protection officer responsibilities and duties

Hogan Lovells on

On July 16, 2024, the National Data Protection Authority (ANPD) published Resolution No. 18/2024 (Resolution 18) outlining rules on the appointment, definition, duties and activities of a Data Protection Officer (DPO) in...more

A&O Shearman

Hong Kong Privacy Commissioner releases First AI-focused Personal Data Protection Framework in APAC

A&O Shearman on

As Artificial Intelligence (AI) continues to evolve and integrates into business processes, the Office of the Privacy Commissioner for Personal Data (PCPD) released its Artificial Intelligence: Model Personal Data Protection...more

Levenfeld Pearlstein, LLC

Texas, Florida, and Delaware, Oh My!: An Update On 2024 & 2025 State Data Privacy Laws

The U.S. cybersecurity and data privacy law framework continues to evolve and expand rapidly. Here, we share a summary of the eight new state data privacy and security laws that will take effect in 2024 and 2025. Businesses...more

Fisher Phillips

Here’s Why You Should Be Aware of Brazil’s Data Privacy Law + 6 Key Scenarios to Consider

Fisher Phillips on

Companies that collect or process personal data in Brazil — or from consumers in the country — should be familiar with the Brazilian General Data Protection Law, which has been the country’s main legislation on the matter...more

Cooley LLP

China Loosens Cross-Border Data Transfer Controls

Cooley LLP on

On September 28, 2023, the Cyberspace Administration of China (CAC) released draft Provisions on Regulating and Promoting Cross-Border Data Flows (see the Chinese version and the unofficial English translation) for public...more

Wilson Sonsini Goodrich & Rosati

CPPA Posts Draft Rules on Cybersecurity Audits and Risk Assessments - Significant New CCPA Compliance Requirements Likely on the...

On August 29, 2023, the California Privacy Protection Agency (CPPA) posted discussion drafts of its forthcoming regulations on cybersecurity audits and risk assessments as part of the materials for its September 8, 2023,...more

Orrick, Herrington & Sutcliffe LLP

The Consumer Health Data Amendments to the Connecticut Data Privacy Act: Six Things to Know

Connecticut is the third state to adopt consumer health data privacy protections, following Washington’s My Health My Data Act (“MHMD”) and Nevada’s new consumer health data privacy law. It is the first state, however, to...more

Cooley LLP

Irish Circuit Court Awards Damages for ‘Non-Material’ Harm Under GDPR

Cooley LLP on

On 11 July 2023, the Circuit Court of Ireland awarded 2,000 euros in compensation to a plaintiff seeking ‘non-material damage’ under Article 82 of the General Data Protection Regulation, in what is believed to be the first...more

Orrick, Herrington & Sutcliffe LLP

EU-U.S. Data Privacy Framework: Next Steps for U.S. Companies

On July 10, 2023, the European Commission formally approved the EU-U.S. Data Privacy Framework (“DPF"). You can view our brief video discussion about the DPF or read our initial update. Companies that maintained their...more

Kilpatrick

A U.S. Data Privacy Law Update: Data Transfers, Delayed CCPA Regulatory Enforcement, and Data Privacy Laws Galore!

Kilpatrick on

The pace of privacy developments in 2023 has been breathtaking. Since our recent alert regarding Iowa’s comprehensive data privacy law and Colorado’s finalized rules, there have been a number of key developments in data...more

Fisher Phillips

FAQs for Businesses as Texas Passes Consumer Privacy Legislation

Fisher Phillips on

Texas became the latest state to pass comprehensive consumer data privacy and security legislation when Governor Abbot signed the Texas Data Privacy and Security Act into law on June 18. It will require businesses to take...more

Orrick, Herrington & Sutcliffe LLP

Data Subject Access Requests from Employees: What UK Employers Need to Know About New ICO Guidance

A challenging economic situation is prompting contentious staffing decisions. The rise of hybrid work has led employers to generate more information in more places about employees. Against this backdrop, more employees are...more

Miller Nash LLP

This Is Not a Test: The Significant Impacts of the Ireland Data Protection Commission’s Meta Decision

Miller Nash LLP on

It shouldn’t come as a surprise that the European Data Protection Board (EDPB), through Ireland’s Data Protection Commission (DPC), issued another fine against a large US technology company. What may come as a surprise is the...more

Coblentz Patch Duffy & Bass

Spring / Summer 2023 Privacy Law Report - A Comprehensive Look at New Developments in Data Privacy Laws

Introduction It has been a busy start to 2023 on the data privacy front: from new privacy laws being passed in several states and going into effect in others, to increases in privacy litigation and data breaches....more

Morgan Lewis

What Businesses Should Know About State Consumer Privacy Laws

Morgan Lewis on

With the lack of comprehensive federal consumer privacy legislation, states are charting an evolving course for businesses to follow when handling data and information about their customers. Led by California, several other...more

Kilpatrick

Why “Secondary Uses” of Data Should be your Primary Concern: New Consent Requirements under California’s CCPA and Colorado’s CPA

Kilpatrick on

One internet search of the CCPA or the CPA reveals a plethora of articles outlining standard data protection requirements under those laws, from privacy notice requirements to new mandatory contractual provisions. But the...more

Faegre Drinker Biddle & Reath LLP

China SCC Measures Officially Release a Path for Outbound Personal Information Transfer

On February 24, 2023, the Cyberspace Administration of China (CAC) released the much-awaited Measures for the Standard Contract for Outbound Transfer of Personal Information (China SCC Measures) together with the issuance of...more

A&O Shearman

EDPB publishes opinion on the draft adequacy decision for the EU-US Data Privacy Framework

A&O Shearman on

The European Data Protection Board (EDPB) issued its opinion on the draft adequacy decision of the European Commission (Draft Decision) regarding the EU-US Data Privacy Framework (DPF) on 28 February 2023. The DPF is a...more

Orrick, Herrington & Sutcliffe LLP

France Cybersecurity Update: Cyber-Attacks Must Be Reported to Authorities Within 72-Hours to Benefit from Insurance Coverage

From 24 April, 2023, victims of cyber-attacks (as defined by the Criminal Code in italic text below) will have 72 hours to file a complaint with “competent authorities” if they want to obtain reimbursement under their...more

McDermott Will & Emery

European Privacy Risk Exposure

McDermott Will & Emery on

2022 was yet another eventful year in terms of GDPR compliance. The continued evolution of the enforcement landscape, with increasing number of sanctions and individuals exercising their rights required time and attention...more

Bond Schoeneck & King PLLC

What’s on the Global Horizon for Data Privacy in 2023?

Expect another year of regulatory ambiguity for international data privacy laws in 2023, as the European Commission reviews the EU-US Data Privacy Framework. European Union courts indicate increased scrutiny for behavioral...more

Bennett Jones LLP

British Columbia Employer Found Vicariously Liable for Data Breach

Bennett Jones LLP on

The Ontario Court of Appeal recently released a trilogy of decisions (Winder v. Marriott International, Inc., 2022 ONCA 815; Obodo v. Trans Union of Canada, Inc., 2022 ONCA 814; Owsianik v. Equifax Canada Co., 2022 ONCA 813)...more

Mintz - Privacy & Cybersecurity Viewpoints

“Ding Dong” -- FTC-Drizly Data Breach Settlement Will follow CEO Personally for a Decade

The Federal Trade Commission (“FTC”) announced on Monday that it is settling a case against Drizly and its CEO stemming from a 2020 data breach that impacted roughly 2.5 million consumers. The proposed order not only...more

70 Results
 / 
View per page
Page: of 3

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide