Latest Publications

Share:

Implementing the NIST Privacy Framework – Identify Function

The National Institute of Standards and Technology (NIST) Privacy Framework, published in January 2020, is quickly becoming the mainstream control set for organizations to align with when assessing their data privacy posture,...more

Hidden tips related to “Do Not Sell” in the CA AG’s Online Consumer Privacy Tool

On July 19, 2021, the California Attorney General announced the launch of a new online Consumer Privacy Interactive Tool which allows consumers to directly notify businesses of potential noncompliance that do not have a “Do...more

New Proposed Laws include Safe Harbor when Aligned with NIST Privacy Framework

A new trend in privacy and cybersecurity laws is the introduction of safe harbor clauses for aligning data protection controls to recognized data privacy and cybersecurity frameworks. OHIO HB376: In July 2021, Ohio...more

Data Deletion under CPRA and GDPR, And How to Operationalize a Deletion Program

Authors: David Manek, Joe Shepley and Mark Melnychenko The California Privacy Rights Act (CPRA) which goes live January 1, 2023 introduces data retention and deletion requirements very similar to those that we see in the...more

5 Best Practices for Third Party Risk Management

Organizations are becoming increasingly reliant on external parties to manage parts of their business. The centralized knowledge, expertise, and economies of scale that third parties provide enables organizations to focus...more

Top Operational Impacts of Virginia's New Privacy Law (CDPA)

The Virginia Consumer Data Protection Act (CDPA) overwhelmingly passed both legislative chambers this month and is expected to be signed by the Governor in the coming weeks with an effective date of January 1, 2023. Best...more

New SCCs are here: what they mean and what you need to do next.

After much anticipation, the European Commission has published new Standard Contractual Clauses (SCCs). Under the General Data Protection Regulation (GDPR), when personal data of individuals in the European Economic Area...more

Privacy Considerations in Debt Refinancing and Equity Seed Funding – Are you prepared?

In an era of increased M&A transactions, organizations must understand the risks and potential liabilities associated with the personal information they obtain on their customers, vendors, and employees....more

11 Months After Schrems II - How Are Organizations Addressing Risk?

Organizations are closely tracking which of their vendors previously relied on Privacy Shield. Separately, they are preparing Transfer Impact Assessments (“TIAs”) to evaluate and address risks associated with personal data...more

Build A Data Inventory That Benefits Everyone

A data inventory is the fundamental building block for an effective privacy program.  In its simplest form, a data inventory can be thought of as a matrix which documents 1) what personal data is being collected by the...more

35 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide