News & Analysis as of

Data Controller Data Collection General Data Protection Regulation (GDPR)

BCLP

Mobile Apps: What Does the CNIL Recommend From a Privacy Perspective?

BCLP on

While mobile apps have become one of the major means of access to digital services, their ubiquity is accompanied by significant risks to users' privacy, due to the massive amount of personal data they collect and process....more

Bricker Graydon LLP

Oh My Gourd, Another Data Privacy Law?! 

Bricker Graydon LLP on

In 2018, there were two comprehensive state data privacy bills introduced across the United States and a whopping zero were in effect. Fast forward six years and there have been 41 new data privacy bills considered this year...more

BCLP

Analysing the CNIL’s Latest Recommendations for AI Systems

BCLP on

Following the very recent adoption of the EU Regulation on AI (the AI Regulation) the CNIL (the French data regulator) has issued the second in its series of recommendations for the development of privacy-friendly AI models....more

BCLP

Auction of Personal Data: Clarification of the Concepts of Personal Data and Data Controller

BCLP on

On 7 March 2024, the Court of Justice of the European Union issued a ruling (C-604/22 | IAB Europe) clarifying the concepts of personal data and controller in the context of the use of a Transparency and Consent Framework...more

Osano

GDPR Compliance Checklist: 8 Steps You Need to Complete

Osano on

GDPR compliance can be tricky. Even if you summon the willpower to read through the law’s text, it can be tough to know where to start. As an alternative to pouring through the GDPR’s legalese, one way to establish a...more

White & Case LLP

Somewhere Between a Summary and a Data Dump – CJEU Finds Controllers Must Provide Data Subjects a “Faithful And Intelligible” Copy...

White & Case LLP on

The Court of Justice of the EU (CJEU)1 has held that the General Data Protection Regulation (GDPR) requires controllers to provide data subjects a "faithful reproduction" of their personal data, which takes into account the...more

Bradley Arant Boult Cummings LLP

Who Has My Data? EU Court Rules GDPR Requires Disclosure of Data Recipient Identities, Not Just Categories, in Response to Data...

Under the European Union’s General Data Protection Regulation (GDPR), individual data subjects have the right to request that the data controller share information regarding the data subject’s personal information...more

Hogan Lovells

Compatibility test: Can I process lawfully collected personal data for a new purpose?

Hogan Lovells on

When launching a project that involves processing of personal data, previously collected for a different purpose, what are the requirements? Companies usually focus on the legal basis of processing and information duties, but...more

Akin Gump Strauss Hauer & Feld LLP

European Data Protection Board Forms Two New Taskforces to Address Schrems II Aftermath

On Friday September 4, 2020, the European Data Protection Board (EDPB), a body consisting of representatives of all the Data Protection Authorities (DPAs) in the European Economic Area, announced that it had formed two new...more

Association of Certified E-Discovery...

DSAR Best Practices and Workflows an Organization Should Follow

In my latest post, I outlined the process involved in the actual response to DSAR requests. In my last article of this series, I will discuss the best practices and workflows that your organization should follow when...more

Sheppard Mullin Richter & Hampton LLP

GDPR and International Arbitration at a Crossroad

The International Council for Commercial Arbitration (ICCA) and the International Bar Association (IBA) have established a Joint Task Force on Data Protection in International Arbitration Proceedings. The task force will...more

Fox Rothschild LLP

European Guidance On Data Controller And Processor Relationship Has Takeaways For GDPR, CCPA Compliance

Fox Rothschild LLP on

The European Data Protection Supervisor (EDPS) has issued guidance on the concepts of data controller and processor for European Union organizations. Though it covers EU institutions, the guidance contains many concepts that...more

Kramer Levin Naftalis & Frankel LLP

What Funds Should Know About The New Cayman Islands Data Protection Law

The Cayman Islands recently implemented data protection legislation similar to that adopted elsewhere in the world, including the EU’s General Data Protection Regulation (GDPR). The GDPR forced many businesses outside its...more

Alston & Bird

FashionID: Another Big ECJ Facebook Case with Implications for the Entire Ad-Supported Internet

Alston & Bird on

On July 29, 2019, the European Court of Justice (“ECJ”) issued its decision in the case of FashionID GmbH & Co. KG v. Verbraucherzentrale NRW.  The ECJ found that websites that integrate Facebook plugins are jointly...more

White & Case LLP

Regulator prohibits use of transaction data for marketing purposes

White & Case LLP on

The Dutch Data Protection Authority has written to the Dutch Banking Association to state that processing customers' transaction data for direct marketing purposes may not be in compliance with the General Data Protection...more

White & Case LLP

Chapter 9: Rights of data subjects – Unlocking the EU General Data Protection Regulation

White & Case LLP on

Why does this topic matter to organisations? EU data protection law provides data subjects with a wide array of rights that can be enforced against organisations that process personal data. These rights may limit the...more

White & Case LLP

Chapter 8: Consent – Unlocking the EU General Data Protection Regulation

White & Case LLP on

Why does this topic matter to organisations? Processing of personal data is lawful only if, and to the extent that, it is permitted under EU data protection law. Each and every data processing activity requires a lawful...more

BCLP

Privacy FAQs: If a data subject submits an access or deletion request directly to a service provider, is the service provider...

BCLP on

The California Consumer Privacy Act ("CCPA") was enacted in early 2018 as a political compromise to stave off a poorly drafted, and plaintiff’s friendly ballot initiative. Although the CCPA is scheduled to go into force in...more

Hogan Lovells

Getting to Data Nirvana: Data lakes and GDPR - A User's guide

Hogan Lovells on

A data lake is an infrastructure that permits different data sets from within a group to be combined and analysed together. To analyse a data lake under GDPR, it is helpful to think of a data lake in two phases, which we...more

Proskauer on Privacy

The California Consumer Privacy Act of 2018

Proskauer on Privacy on

This has been a big year in the data protection world, with the headline-grabbing General Data Protection Regulation (GDPR) occupying most of the spotlight with its plethora of privacy-related requirements and potential for...more

Jackson Walker

Internet of Things Part 2: Dogs, Cameras, and Cybersecurity

Jackson Walker on

I recently purchased an Internet Protocol (IP) camera to monitor my dog, Ruben, during those times that he has free reign of the house. Since “RubenCam” has been online, I’m not sure he has been any less rambunctious, but I’m...more

Perkins Coie

Use a Third-Party Platform? You Might Be a “Data Controller”

Perkins Coie on

The European Union’s top court ruled last week that the operator of a Facebook fan page is a “joint controller,” along with Facebook, with respect to personal data collected on such pages. The decision has implications for...more

Butler Snow LLP

What is GDPR and how does it impact American businesses?

Butler Snow LLP on

On May 25, 2018, the European Union’s General Data Protection Regulation (GDPR) took effect. Although EU laws typically don’t have a worldwide impact, the GDPR will impact business across the globe. The GDPR has an extremely...more

Fisher Phillips

GDPR Is Here: Not Yet Compliant? What Employers Need to Consider

Fisher Phillips on

After much anticipation, the General Data Protection Regulation (GDPR) finally went into effect on May 25, 2018. For employers, that means some enhanced employee rights, and the risk of significant penalties for...more

Verrill

Ready or Not...the GDPR Effective Date is Here

Verrill on

Now that May 25th, the long awaited effective date of the European Union (“EU”) General Data Protection Regulation (Regulation 2016/679) (“GDPR”), has arrived, many companies are realizing that they have more work to do to...more

26 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide