Latest Posts › General Data Protection Regulation (GDPR)

Share:

Irish Data Protection Commission fines LinkedIn Ireland EUR 310 million for GDPR violations

On October 24, 2024, the Irish Data Protection Commission (DPC) issued a press release announcing its EUR 310 million fine of LinkedIn over the platform’s use of member personal data in breach of the EU’s General Data...more

Series 1 - The World’s First AI Regulation Is Here

Yesterday, March 13, 2024, the European Parliament approved the EU Artificial Intelligence Act (“AI Act”), a sweeping AI governance framework which presents the first comprehensive law in the world aimed at ensuring AI...more

What’s Next for AI? Six Areas to Watch in 2024

Generative AI (GenAI) surged to the forefront of corporate agendas and public policy debates last year, promising to boost productivity and innovation. What’s in store for AI in 2024?...more

Does the New EU Digital Services Act Apply to Me?

On 25 August 2023, the EU’s Digital Services Act (“DSA”) came into effect for very large online platforms and very large online search engines. The DSA becomes fully applicable to other entities within its scope on 17...more

Addressing Generative AI’s Privacy Challenge

Generative AI models access vast pools of information from a wide variety of sources, including information users add in prompts. This can include private or sensitive information, which may be used without consent and may be...more

EU Standard Contractual Clauses Need Replacing by December 27, 2022

On June 4, 2021, the European Commission (the “EC”) abolished the old Standard Contractual Clauses (the “Old SCCs”) and published a new more flexible set of clauses (the “New SCCs”) for companies that wish to export personal...more

EDPB to Provide Much Needed Clarification on New EU SCCs Scope for Importers Subject to the GDPR

The European Data Protection Board (EDPB) recently published Minutes of its last plenary meeting held in September, which sheds light on how the EDPB plans to address the biggest open issue of the new Standard Contractual...more

Navigating EU Data Transfers: Effects of Schrems II Start to Bite

Risks of non-compliance with the GDPR keep increasing with data protection authorities (DPAs) now ordering suspension of transfers of personal data to the U.S. In March, the Bavarian DPA found there was an unlawful transfer...more

Late Breach Notice In Europe Leads To Nearly €500K Fine

On 31 March 2021 the Dutch Data Protection Authority (DPA) announced that it fined the online reservation platform Booking.com €475,000 for failing to notify the DPA of a data breach within the timeline established in the...more

UK ICO Confirms Transfers Of Data To SEC In The Public Interest

The UK Information Commissioner’s Office (“ICO”) has published a letter sent to the U.S. Securities and Exchange Commission. The ICO confirms that it is possible for SEC regulated UK firms to transfer personal data to the...more

EDPB Clarifies Scientific Research GDPR Compliance, But Harmonisation Across Europe Remains Elusive

Earlier this year, the European Data Protection Board (“EDPB”) issued additional guidance on the application of the General Data Protection Regulation (“GDPR”) in the area of scientific health research. In key takeaways...more

Post Schrems II Guidance: EU Regulators Raise Bar For Global Data Transfers

On 15 January, 2021, the European Data Protection Board (“EDPB”) and the European Data Protection Supervisor (“EDPS”) adopted a joint opinion (“Joint Opinion”) on the draft new sets of Standard Contractual Clauses (“New...more

Nowhere To Hide: Controllers have “Constructive Awareness” Of Processor Data Breaches

On December 15, 2020, Ireland’s Data Protection Commission (“DPC”) announced its decision to fine Twitter International Company (“Twitter”) €450,000 for failing to notify the DPC promptly of a data breach affecting EU...more

Déjà Vu All Over Again: EU High Court Invalidates Privacy Shield For EU – U.S. Data Transfers

Today (July 16) Europe’s highest court, the Court of Justice of the European Union (CJEU), in the case of Data Protection Commissioner v Facebook Ireland and Maximillian Schrems (Schrems II) invalidated the EU–U.S. Privacy...more

Long Live The Model Clauses?

The Advocate General has issued an Opinion which states that the European Commission’s decision, enforcing the Standard Contractual Clauses (SCCs), is valid....more

German Privacy Regulator Joins the Club, Issuing Hefty Fine Against Real Estate Company

The Berlin Commissioner for Data Protection (Berlin DPA) has fined Deutsche Wohnen SE, a German property company, €14.5 million for violating the General Data Protection Regulation. This is the largest GDPR fine issued to...more

French Privacy Regulator Imposes Record Fine on Google for GDPR Violations

On January 21, 2019, France’s data protection regulator (CNIL) imposed a €50 million fine on Google for violating core provisions of the European Union General Data Protection Regulation (GDPR). The action was initiated by...more

EU Regulators Publish Guidelines On GDPR Territorial Scope

On November 16, 2018, the European Data Protection Board (Board) (comprised of EU member state data protection authorities), published draft guidelines on the territorial scope of the GDPR (Guidelines).The Guidelines provide...more

19 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide