Latest Posts › General Data Protection Regulation (GDPR)

Share:

The UK’s Online Safety Bill – Implications for US and International Businesses

On 19 September 2023, the UK Parliament passed the Online Safety Bill (“OSB”). The OSB aims to protect individuals from illegal online content and focuses on the protection of children by requiring the removal of content that...more

The European Commission Adopts Adequacy Decision on EU-U.S. Data Privacy Framework

On 10 July 2023, the European Commission adopted its long-awaited adequacy decision for the EU-U.S. Data Privacy Framework (the DPF). With immediate effect, the adequacy decision provides a new lawful basis for transfers from...more

Meta Fined EUR 1.2 Billion for Violating GDPR

On 22 May 2023, the Irish Data Protection Commission (DPC) issued Meta Platforms Ireland Limited (Meta Ireland) with a EUR 1.2 billion (approximately 1.3 billion U.S. dollar) fine for breaches of the GDPR with respect to...more

Österreichische Post: The CJEU Specifies the Requirements for Compensation for Breaches of the GDPR

On 4 May 2023, the European Court of Justice (CJEU) delivered its highly anticipated judgement in Österreichische Post (Case C-300/21) on a crucial issue: the extent to which data subjects affected by a breach of the GDPR...more

Meta Fines Expose EU Regulators’ Differences and Highlight Fundamental Issues for Data Controllers

Meta Ireland (Meta) has recently been issued with two fines by the Irish Data Protection Commission (DPC) for breaches of the EU General Data Protection Regulation (GDPR) relating to advertisements run on its Facebook and...more

UK’s Data Protection Reform Proposals Show Distinct Divergence from EU Rules

The UK government has recently published proposals to amend UK data protection legislation with moves towards divergence from EU rules and regulation following the UK’s decision to leave the EU (“Brexit”). The Data Protection...more

Significant Changes Proposed to UK GDPR

On September 10, the U.K. government launched a consultation “Data: A New Direction” (Consultation), which proposes significant changes to the U.K.’s data protection framework. The U.K. government has signalled its...more

Data Transfers: U.K. Proposes New Tools and Approach

The United Kingdom Information Commissioner’s Office (ICO) recently launched a consultation regarding the transfer of personal data outside of the U.K. The ICO is seeking comment on its draft international data transfer...more

A New Dawn for International Data Transfers: Publication of the EDPB’s Updated Guidance on International Data Transfers

Last year’s European Court of Justice (ECJ) judgement in Data Protection Commissioner v Facebook Ireland LTD, Maximillian Schrems, C-311/18 (Schrems II) continues to have ramifications for cross border data transfers. The...more

New Tools for International Data Transfers: European Commission Adopts New Standard Contractual Clauses

In early June 2021, the European Commission adopted a new set of Standard Contractual Clauses for organizations to use to ensure compliance with the EU General Data Protection Regulation (GDPR) requirements for transfers of...more

Draft Standard Contractual Clauses Released by European Commission: New Clause Cause for Applause?

Following on from this week’s big announcement by the European Data Protection Board (EDPB) on its expectations for international data transfers after the European Court of Justice’s July 16 Schrems II decision, the European...more

European Data Protection Board Issues New Recommendations for International Data Transfers: Essential Guarantees, Supplemental...

On November 11, 2020, the European Data Protection Board (EDPB) issued two much-anticipated guidance documents, outlining the approach it expects organizations to take when transferring data out of the EU. Although these...more

Marriott Cyberattack Fine Reduced as ICO Shifts Penalty Policy

On 30 October 2020, the UK’s data privacy regulator, the Information Commissioner’s Office (ICO) issued a final penalty notice (Penalty Notice) to fine the hotel chain Marriott International, Inc. (Marriott) for a GDPR data...more

British Airways Faces Significantly Reduced £20M Fine for GDPR Breach

At £20 million, the fine imposed on British Airways (BA) for its infringement of the General Data Protection Regulation is the biggest fine of its kind in the history of the U.K.’s Information Commissioner’s Office (ICO)....more

New Guidelines on Data Controllers and Processors: Time to Review Data-Processing Agreements

The European Data Protection Board (EDPB) recently launched a consultation into new guidelines on the roles of data controllers, joint controllers and processors under the EU General Data Protection Regulation (GDPR). The...more

EU Court Issues Landmark Ruling on Transfer of Personal Data Outside European Economic Area

On July 16, the highest court in the European Union (EU), the Court of Justice of the European Union (CJEU), issued a landmark judgment in the case of Data Protection Commissioner v Facebook Ireland Limited, Maximillian...more

U.K.’s Data Privacy Regulator Issues Update on GDPR Enforcement Approach During COVID-19

The U.K.’s data protection regulator, the Information Commissioner’s Office (ICO) has today issued guidance setting out how it intends to approach the enforcement of the General Data Protection Regulation (GDPR) during the...more

COVID-19 and the GDPR: Should Employers Conduct Temperature Checks?

New guidance issued by the U.S. Equal Employment Opportunity Commission (EEOC) in the United States has advised that employers may measure employees’ body temperature given that the Centers for Disease Control and Prevention...more

EU’s Latest Decision on International Data Transfers Provides Temporary Relief for U.S. Businesses

The General Data Protection Regulation (GDPR) provides that personal data may only be transferred to a country outside the European Economic Area (EEA) if that country ensures an adequate level of protection for personal...more

Largest GDPR Fine to Date: UK Regulator Issues Notice of Intent to Fine British Airways £183.39M

On 8 July 2019, the U.K. Information Commissioner’s Office (ICO) issued a Notice of Intent to fine British Airways (BA) £183.39 million (approximately $232 million). While the Notice of Intent, as the name suggests, is not a...more

Cookies: European Court Clarifies Key Issues on Consent

On 21 March 2019, an advocate general (AG) of the Court of Justice of the European Union (CJEU) delivered an opinion that sheds light on key issues related to websites’ use of cookies — data packets that can be used by...more

Google Alert! First-Ever GDPR Complaint Ends in Record-Breaking Fine

It only took hours for the first-ever GDPR complaint to be filed on 25 May 2018, with Google in the firing line. The investigation into the complaint concluded on 21 January 2019, and a decision was rendered: Google would be...more

In or Out? EDPB Publishes Much-Awaited Guidance on GDPR’s Territorial Scope

The General Data Protection Regulation (GDPR) significantly expanded the territorial scope of EU data protection law. This was intended to ensure comprehensive protection for EU data subjects’ rights and establish a level...more

The GDPR at Six Months: The Hard Work Starts

Six months have now passed since the implementation of the EU General Data Protection Regulation (GDPR). The GDPR has raised awareness of the importance of personal privacy as a fundamental right and placed data protection...more

International Data Transfers: EU and Japan Sign Reciprocal Agreement for Free Flow of Personal Data

The advent of the European Union’s General Data Protection Regulation (GDPR) has prompted other countries and regions to work to enhance their privacy regulations to meet the GDPR standards. On July 17, Japan became the...more

29 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide