Latest Posts › General Data Protection Regulation (GDPR)

Share:

Vital Signs: Digital Health Law Update | Spring 2024

Welcome to Vital Signs, a curated compilation of the latest legal and regulatory developments in digital health. Our lead article reports on recent developments in the U.S. Food and Drug Administration's ("FDA") regulatory...more

European Union and United States Reach New Agreement for Data Flow Across the Atlantic

On July 10, 2023, the EU Commission adopted its adequacy decision for the EU-U.S. Data Privacy Framework, concluding that the United States ensures an adequate level of protection for personal data transferred from the...more

CJEU Clarifies the Right to Compensation for GDPR Infringements Causing Non-Material Damage

In Short - The Situation: There has been uncertainty over the circumstances in which data subjects can claim compensation for "mere" infringement of their rights without specific evidence of harm. On May 4, 2023, the Court...more

English High Court Confirms Narrow Approach to Assessment of Data Breach Liability

On 31 January 2022, the English High Court delivered its judgment in Stadler v Currys Group Limited (EWHC 160 (QB)); the latest in a series of rulings which appear set to constrain the relatively nascent UK data breach claims...more

China Finalizes Data Security Law to Strengthen Regulation on Data Protection

On June 10, 2021, the Standing Committee of the 13th National People's Congress passed the long awaited People's Republic of China (China) Data Security Law ("DSL") after a final read of the third draft. The DSL, which takes...more

New Standard Contractual Clauses by the European Commission: What You Need to Know

The Background: Transfers of personal data to countries outside the European Economic Area ("EEA") must meet certain requirements under the General Data Protection Regulation ("GDPR"). If the third country does not provide an...more

China Takes Major Step Towards Finalizing National Data Regulation Regime

China recently released new drafts of its Data Security Law and its Personal Information Protection Law for public comment; when finalized the two laws will impose significant obligations on how companies collect, process,...more

Regulating Artificial Intelligence: European Commission Launches Proposals

The Development: On 21 April 2021, the European Commission ("Commission") unveiled a proposal for a "Regulation laying down harmonized rules on Artificial Intelligence" ("AI Regulation"), which sets out how AI systems and...more

Jones Day Global Privacy & Cybersecurity Update | Vol. 27

United States - Regulatory—Policy, Best Practices, and Standard - NIST Unveils Draft Guidance to Protect Critical Infrastructure - On October 22, 2020, the National Institute of Standards and Technology ("NIST")...more

No-Deal Brexit—Preventing Disruption to Data Transfers

The Situation: The European Union and United Kingdom have both warned companies to prepare for a no-deal Brexit. The Result: There is a real possibility that the Brexit Implementation Period will end on 31 December 2020...more

Ensuring International Data Flows after Schrems II

The Situation: After the invalidation of the EU-U.S. Privacy Shield by the Court of Justice of the European Union ("CJEU"), the conditions under which international data may flow from the European Union continue to remain...more

Schrems II Confirms Validity of EU Standard Contractual Clauses, Invalidates EU–U.S. Privacy Shield

The Situation: The Court of Justice of the European Union ("CJEU") has ruled that international data flows under the European Union's comprehensive data protection regime, the GDPR, can continue to be based on EU Standard...more

French Data Protection Authority Issues Draft Recommendations on Consent for Cookies

The Situation: On July 4, 2019, the French data protection authority ("CNIL") published revised guidelines on the implementation of cookies or similar tracking technologies in order to take into account the new requirements...more

Data Protection: Reducing the Risk of Disruption on a "No Deal" Brexit

The Situation: The United Kingdom is due to leave the European Union ("EU") on 31 October 2019. Negotiations between member states of the EU excluding the United Kingdom ("EU27") and the United Kingdom are ongoing, but it is...more

ECJ Rules Companies Using Social Plugins Are Joint Controllers

The Situation: Fashion ID, a German online clothing retailer, embedded on its website the Facebook "Like" button. When a user consults the website of Fashion ID, that user's personal data are transmitted to Facebook Ireland....more

Data Protection: Risk of Disruption if There Is a "No Deal" Brexit

The Situation: The UK Parliament has not approved the draft Brexit Withdrawal Agreement and Political Declaration on the future relationship of the European Union and United Kingdom. The next steps in the Brexit process are...more

Unfair Data Protection Practices May Constitute an Abuse of Market Power

The Situation: An investigation launched in 2016 by the German competition authority was meant to determine if Facebook was abusing its market position with its imposition of "misleading" data protection policies. The...more

European Data Protection Board Provides Clarifications on Territorial Scope of GDPR

The Situation: The General Data Protection Regulation has a broad territorial scope and can apply to businesses based outside the European Union. The Result: The European Data Protection Board has provided important...more

New Regulation Favors Free Flow of Non-Personal Data in the EU

With this new legislative act, the European legislature aims to remove existing data localization requirements and enable storage of data in multiple locations across the EU. On November 14, 2018, the European Parliament...more

GDPR's Potential Fines and Other Exposures Raise Cyber Insurance Coverage Questions

The Situation: The European Union's General Data Protection Regulation ("GDPR") has raised questions regarding the scope of coverage and protection afforded by current cyber policies, especially with respect to potential GDPR...more

Jones Day Global Privacy & Data Security Update | Vol. 19

On the heels of the European Union's General Data Protection law, which went into effect in May 2018, California has enacted the California Consumer Privacy Act ("CCPA")—the result of an 11th-hour compromise between...more

Italian Data Protection Decree Harmonizes National Law with GDPR Provisions

The Situation: The Legislative Decree 101/2018 ("Harmonization Decree") harmonizes the Italian data protection laws with the General Data Protection Regulation (EU) 679/2016 ("GDPR") provisions. It was enacted and became...more

Belgium Publishes Data Protection Laws Implementing GDPR

The Situation: On September 5, 2018, Belgium published two laws that implement the Belgian requirements under Regulation 21016/679, the General Data Protection Regulation ("GDPR"). The Details: The two laws include the Law...more

Connected Cars and Autonomous Driving—EU Antitrust Challenges (Part II)

The Background: The automotive industry has achieved a number of technological advances aimed at developing connected cars, automated vehicles, and ultimately autonomous driving. These innovations are expected to pose a...more

31 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide