News & Analysis as of

Data Protection Officers (DPOs) Personal Data

DLA Piper

First PDPA Enforcement in Thailand: A Landmark Case

DLA Piper on

On August 21, 2024, the second expert committee appointed under the Thai Personal Data Protection Act (PDPA) of 2019, issued an administrative fine to a major private company involved in online sales. The company allowed a...more

Mayer Brown

ANPD's New Regulation on Guidelines and Responsibilities of Data Protection Officers in Brazil

Mayer Brown on

The Brazilian Data Protection Authority (ANPD) has published its new regulation on the Data Protection Officer’s (DPO) role. A central figure in privacy governance, the DPO serves as the liaison between the data controller,...more

Womble Bond Dickinson

New Telecommunications and Data Protection Rules Taking Effect in Saudi Arabia

Womble Bond Dickinson on

The Kingdom of Saudi Arabia (KSA or Kingdom) is a sovereign state located in the Middle East between the Red Sea and the Arabian Gulf (sometimes referred to as the Persian Gulf) and is one of the member states of the Gulf...more

International Lawyers Network

Data Privacy Guide - Spain

Introduction - We have compiled the main differences between the REGULATION (EU) 2016/679 OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL of 27 April 2016 on the protection of natural persons with regard to the processing...more

International Lawyers Network

Data Privacy Guide - Romania

Governing Data Protection Legislation - 2.1. Overview of principal legislation - The General Regulation Data Protection (Regulation (EU) 2016/679) (“GDPR”), as implemented by Law 190/2018 is the principal data...more

Akin Gump Strauss Hauer & Feld LLP

Kingdom of Saudi Arabia’s New Personal Data Protection Law and Implementing Regulations—Key Obligations, Responsibilities and...

On September 7, 2023, the Saudi Authority for Data and Artificial Intelligence (SDAIA) issued the Implementing Regulations of the Personal Data Protection Law (the Implementing Regulations) and the Regulations on Personal...more

Brownstein Hyatt Farber Schreck

U.S. Companies Now Have a Framework for EU-U.S. Personal Data Transfers

In a significant milestone for EU-U.S. cross-border transfers of personal data under Article 45 of the General Data Protection Regulation (GDPR), the European Commission adopted an adequacy decision for the new EU-U.S. Data...more

Ius Laboris

Can a works council chair also be the data protection officer?

Ius Laboris on

Back in 2011, a German court ruled that works council membership did not necessarily preclude serving as data protection officer. The same court, after referring the question to the European Court of Justice, has now changed...more

Latham & Watkins LLP

European Data Protection Board Focuses Coordinated Enforcement on Data Protection Officers

Latham & Watkins LLP on

Organisations should expect increased scrutiny and enforcement activity around the role of data protection officers in the coming year. The European Data Protection Board (EDPB) has announced that its coordinated...more

Wilson Sonsini Goodrich & Rosati

EU Privacy Regulators Coordinate to Assess Compliance with the GDPR Rules on Data Protection Officers

On March 15, 2023, the European Data Protection Board (EDPB) announced a coordinated action on the role of the data protection officers (DPOs). The data protection authorities (DPAs) will ask DPOs a series of questions to...more

BCLP

Don’t ask your DPO to set their own homework and mark it too!

BCLP on

The recent CJEU decision in X-FAB (Case C-453/21) provides guidance on how to determine whether a conflict of interest could arise for your Data Protection Officer (“DPO”) and how to avoid this. It also confirms the approach...more

Reveal

Data Subject Access Requests (DSARs): Everything Corporate Legal Teams Need to Know

Reveal on

Data is what makes the modern business world go around. But as the amount of data that organizations collect and process grows, so, too, do concerns about data security and how organizations respond to DSARs. These...more

Wilson Sonsini Goodrich & Rosati

CJEU Finds That Companies Must Provide Individuals with the Identity of Data Recipients When Responding to Data Access Requests

On January 12, 2023, the Court of Justice of the European Union (CJEU) ruled that the data subject’s right of access to personal data requires controllers to provide the data subject with the identity of the companies that...more

Cranfill Sumner LLP

Recent Developments in Data Privacy

Cranfill Sumner LLP on

For American companies doing business in Europe and European businesses relying on U.S. vendors and service providers, 2023 may be the year when Europe and the United States finally come together to implement a viable and...more

Fox Rothschild LLP

Data Protection on the Blockchain: Singapore’s Personal Data Protection Commission Weighs In

Fox Rothschild LLP on

Singapore Personal Data Protection Commission (PDPC) has published a guide on data protection in the blockchain. Some key points: Permissionless blockchain: •Any personal data published in-clear is a form of public...more

Reveal

Data Breach Notifications Under GDPR

Reveal on

Data privacy officers (DPOs) and compliance officers are the first responders in the event of a data breach. Like all emergency workers, they must stand at the ready, prepared to jump into decisive action at a moment’s...more

Society of Corporate Compliance and Ethics...

[Webinar] Effective Use of Privacy Impact Assessments - September 13th, 12:00 pm - 1:30 pm CDT

Learning Objectives: - What is a PIA and a DPIA? - Who should instigate assessments? - How and when to use assessments? - The relationship between assessments and privacy by design, and legal grounds for processing...more

Ankura

Don’t have a DPO? Now is the time to get one.

Ankura on

Since the General Data Protection Regulation (GDPR) was enacted a little over 3 years ago in May 2018, many organizations that collect personal data of individuals in the European Union (EU) have enhanced their data privacy...more

Poyner Spruill LLP

European Union Publishes Draft Standard Clauses for Trans-Atlantic Data Transfers

Poyner Spruill LLP on

Data Transfer from the European Union to the United States is a knotty process. The difficulties were compounded this summer when Europe’s highest court held the “Privacy Shield” program enabling U.S-E.U. data transfers...more

Akin Gump Strauss Hauer & Feld LLP

New DIFC Data Protection Law in Force - What You Need to Know

On October 1, 2020, the three-month grace period for businesses to comply with the Dubai International Financial Centre (DIFC) Data Protection Law (DIFC Law No. 5 of 2020) (“DPL 2020”) came to an end. Regulating the...more

Foley & Lardner LLP

Brazilian Government Makes the LGPD Effective Imminently

Foley & Lardner LLP on

On August 14, 2018, the Brazilian government approved the Brazilian General Data Protection Law, known as the Lei Geral de Proteção de Dados Pessoais (“LGPD”). Enforcement was set to begin on August 15, 2020 but then, due to...more

Kilpatrick

Delay Denied: Brazil Senate Sets Immediate Effective Date for the LGPD

Kilpatrick on

Efforts to Delay the LGPD Fail - As noted by our firm earlier this spring, Brazilian authorities have considered delaying the General Personal Data Protection Law’s (“Lei Geral de Proteção de Dados” or “LGPD”) effective...more

Epstein Becker & Green

U.S. Employers and the GDPR: Where Are We Now?

Epstein Becker & Green on

Even though the General Data Protection Regulation (“GDPR”) became effective on May 25, 2018, its application to U.S.-based employers continues to evolve and increase in complexity. For U.S. employers of European Union (“EU”)...more

A&O Shearman

Eurozone Single Resolution Board Publishes Opinions on Internal Rules for its use of Personal Data

A&O Shearman on

The Eurozone Single Resolution Board has published a series of three opinions setting out its own internal rules for the circumstances in which it may restrict the rights of data subjects under Regulation (EU) 2018/1725, data...more

White & Case LLP

GDPR Guide to National Implementation: Cyprus - A practical guide to national GDPR compliance requirements across the EEA

White & Case LLP on

Q1/ Applicable legislation - (a) Have the requirements of the GDPR been addressed by introducing a new law, or by updating existing legislation? New legislation has been passed. ——— (b) Relevant legislation includes: ...more

103 Results
 / 
View per page
Page: of 5

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide