News & Analysis as of

International Data Transfers Personal Data Risk Assessment

Latham & Watkins LLP

Kingdom of Saudi Arabia Issues New Data Transfer Risk Assessment Guidelines

Latham & Watkins LLP on

The guidelines specify the requirements for data controllers to conduct risk assessments related to the transfer or disclosure of personal data outside the Kingdom. ...more

Alston & Bird

The Digital Download – Alston & Bird’s Privacy & Data Security Newsletter – May 2024

Alston & Bird on

Selected U.S. Privacy and Cyber Updates - CISA Posts Notice of Proposed Rulemaking Under CIRCIA - On March 27, 2024, the Cybersecurity and Infrastructure Security Agency (CISA) published a notice of proposed rulemaking (NPRM)...more

Society of Corporate Compliance and Ethics...

[Event] Regional Compliance & Ethics Conference - November 9th, Dubai, United Arab Emirates

Looking for compliance education and networking in your area? SCCE’s Regional Compliance & Ethics Conferences offer convenient, local compliance education for practitioners across the globe, including updates on the latest...more

White & Case LLP

Cybersecurity Developments and Legal Issues

White & Case LLP on

For most large companies, a frictionless flow of information and the ability to transfer customer data, employee files, financial records and other information around the world quickly and cost-effectively is a critical...more

McDermott Will & Emery

European Privacy Risk Exposure

McDermott Will & Emery on

2022 was yet another eventful year in terms of GDPR compliance. The continued evolution of the enforcement landscape, with increasing number of sanctions and individuals exercising their rights required time and attention...more

BCLP

UK launches consultation on international data transfers - a first glimpse of the “UK SCCs”

BCLP on

On 11 August, the UK Information Commissioner’s Office launched a consultation paper on “International transfers under UK GDPR”. The documents released alongside the paper include a draft International Data Transfer Agreement...more

Lighthouse

The Impact of Schrems II & Key Considerations for Companies Using M365: Microsoft’s Response

Lighthouse on

In our four-part blog series on Schrems II and its impacts, we have already given the state of data transfers in light of the Schrems II decision as well as some practical tips on how to conduct a risk assessment. In sum, the...more

Fox Rothschild LLP

French Court: Use Of Vendor With U.S. Parent May Require Additional Security Measures

Fox Rothschild LLP on

Even in the absence of a cross-border transfer of personal data from the European Union to a third country, if you are using a vendor that has a U.S. parent company, get ready to implement supplementary measures, says the...more

ArentFox Schiff

Schrems II and the Possibility of a Privacy Shield Successor: Will History Repeat Itself?

ArentFox Schiff on

Last week started and ended with big announcements in the privacy world. At the end of the week, on August 14th, the regulations implementing the California Consumer Privacy Act of 2018 (CCPA) were finally declared final -...more

Foley Hoag LLP - Security, Privacy and the...

Privacy Shield: We've Lost the EU but We've Still Got Switzerland!

In the wake of the Schrems II decision invalidating the the EU-US Privacy Shield, the US Department of Commerce has decided it should make lemonade out of the Schrems lemons. The Department recently issued a set of FAQs,...more

Foley & Lardner LLP

EDPB Issues FAQ After Schrems II, EU Regulators Provide Conflicting Interpretations and Guidance

Foley & Lardner LLP on

Still grappling with the aftershocks of the Schrems II decision from the CJEU on July 16 (we previously discussed the Schrems II decision here), the European Data Protection Board (“EDPB”) has issued a Frequently Asked...more

Sheppard Mullin Richter & Hampton LLP

Schrems II Fallout Continued: Can Companies Rely on Consent?

The EDPB has provided input about consent in its recent FAQs responding to the Schrems II invalidation of Privacy Shield. As we wrote about previously in this series, Schrems II impacted how companies transfer data from the...more

McDermott Will & Emery

Special Report - Schrems II: What Does the CJEU’s Decision Mean for Transfers from the EEA to the US?

McDermott Will & Emery on

In our Schrems II Practical Guidance special reports, members of McDermott’s internationally recognized Global Privacy & Cybersecurity group have outlined practical guidance and next steps to ensure your business is prepared...more

Orrick, Herrington & Sutcliffe LLP

A Survival Guide for GDPR Enforcement Actions from a German Perspective – How to Assess and Mitigate Fines for GDPR Violations

Since the first enforcement actions have been initiated, some with significant fines, many companies may find themselves somewhat at a loss as they may not fully know how to assess the risks involved and how to react should...more

Littler

12 Months Since GDPR - What Do Employers Really Need to Know?

Littler on

As we sip champagne reflecting on the first anniversary of the effective date of the European General Data Protection Regulation (GDPR), we consider the obligations that employers should bear in mind....more

White & Case LLP

Chapter 4: Territorial application – Unlocking the EU General Data Protection Regulation

White & Case LLP on

Why does this topic matter to organisations? The GDPR does not necessarily apply to every organisation in the world. It applies to all organisations that are established in the EU. However, for organisations established...more

Ogletree, Deakins, Nash, Smoak & Stewart,...

The Highest Risk Area for GDPR Compliance: Processing HR Data

With less than six months until the May 25, 2018, effective date for the European Union (EU) General Data Protection Regulation (GDPR), companies are assessing their GDPR readiness and concentrating their compliance efforts...more

Nutter McClennen & Fish LLP

GDPR Compliance: Think It Doesn’t Apply to You? Think Again: Insights from Nutter’s Seth Berman

Seth Berman, a partner in Nutter’s Litigation Department and a leader of the firm’s Privacy and Data Security practice group, addressed upcoming GDPR compliance standards in Nutter Insights. Seth discussed how broadly the...more

Robinson+Cole Data Privacy + Security Insider

General Data Protection Regulation (GPDR) Series Part #2: The Importance of Self-Assessment

The General Data Protection Regulation (GDPR) (EU) 2016/679 of 27 April 2016 which comes into force in May 2018, will introduce major changes to the law on the processing of personal data in the European Union. Over the next...more

The Volkov Law Group

The EU’s New General Data Privacy Regulation (GDPR) – Global Companies New Compliance Test

The Volkov Law Group on

Global companies face a daunting array of risks – anti-corruption, trade compliance, antitrust, and money laundering are just a few. The European Union, however, has escalated the data privacy issue right into the corporate...more

Hogan Lovells

Article 29 Working Party Issues Guidance on Data Protection Impact Assessments

Hogan Lovells on

The steady trickle of GDPR guidance from the Article 29 Working Party continues. Fresh from finalising its guidance on data portability, lead supervisory authorities and data protection officers, the Working Party has...more

McDermott Will & Emery

Any Port in a Storm? EU-US Data Transfers After Schrems and Safe Harbor

McDermott Will & Emery on

Last week, the Court of Justice of the European Union (CJEU) gave an important ruling which any business transferring personal data between the EU and the United States should know about — in particular those that make use of...more

22 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide