News & Analysis as of

Personal Data Risk Management Compliance

A&O Shearman

PRC - New Measures for Personal Information Protection Compliance Audits

A&O Shearman on

The PRC Personal Information Protection Law (PIPL) mandates regular data compliance audits. Following a consultation period beginning in August 3, 2023, the Cyberspace Administration of China (CAC) issued the Measures for...more

DLA Piper

CHINA: Mandatory Data Protection Compliance Audits from 1 May 2025

DLA Piper on

Chinese data regulators are intensifying their focus on the data protection compliance audit obligations under the Personal Information Protection Law (“PIPL“), with the release of the Administrative Measures for Personal...more

Conyers

Basic Rights Request Response Process under Bermuda’s Personal Information Protection Act (PIPA)

Conyers on

The Personal Information Protection Act (PIPA) is a critical framework for protecting individuals’ personal information in Bermuda. Under PIPA organisations are required to adhere to several key principles, including ensuring...more

Walkers

Navigating trusts in a data driven world developments in Guernseys regulatory landscape

Walkers on

We explore what trustees need to be aware of when dealing with data and complying with their obligations under the Data Protection (Bailiwick of Guernsey) Law, 2017 and related legislation (the "DP Law")....more

Sheppard Mullin Richter & Hampton LLP

Data, Deals, and Diplomacy, Part III: DOJ Issues National Security Final Rule with New Data Compliance Obligations for...

On January 8, 2025, the Department of Justice (“DOJ”) published its final rule addressing Executive Order (E.O.) 14117, “Preventing Access to Americans’ Bulk Sensitive Personal Data and United States Government-Related Data...more

Constangy, Brooks, Smith & Prophete, LLP

Data Privacy Day Checklist: Top 10 ways to protect your organization's data

Tomorrow is International Data Privacy Day, so a happy day to all! More seriously, data privacy concerns and legislation continue to rapidly increase. It has been estimated that by the end of 2024 more than 75 percent of...more

Tarter Krinsky & Drogin LLP

Businesses Have 30 Days to Report a Security Breach of New Yorker’s Private Information

New York State Governor Hochul recently gave us a “pre” New Year’s gift: effective on December 21, 2024, any individuals or businesses possessing the “private information” of New Yorkers must notify them, and certain state...more

Levenfeld Pearlstein, LLC

New Year, New State Data Privacy Laws

With the advent of a new year comes a new set of consumer data privacy laws in the United States. Five new state data privacy laws go into effect in January 2025, with additional laws coming throughout 2025 and into 2026....more

Ankura

Data Privacy in Singapore: Case Study: Appointing a “Virtual” Data Protection Officer (DPO)

Ankura on

The Personal Data Protection Commission (PDPC) of Singapore recently issued a mandate requiring all businesses operating in the country to appoint a Data Protection Officer (DPO) by September 30, 2024, and submit their...more

A&O Shearman

Data protection guidance for firms sharing customer information for the prevention of fraud

A&O Shearman on

The UK Information Commissioner’s Office (the ICO) has published guidance to help firms take steps to protect customers’ personal information when data is shared between firms to prevent fraud and scams....more

BCLP

Data and Cybersecurity: European Union Legislation and Proposals - Updated December 2024

BCLP on

The pace of new EU law continues unabated, with IoT, cyber security and digital services being key areas of activity....more

Harris Beach Murtha PLLC

Key Considerations for Selling AI Software to the Government

Harris Beach Murtha PLLC on

The federal government is the biggest purchaser in America and that extends to the SaaS space. On September 24, 2024, the Office of Management and Budget (OMB) released Memorandum M-24-18, offering updated guidelines for the...more

Nutter McClennen & Fish LLP

Are You Using AI to Process Consumer Information? Revisit Your Privacy Policy First!

What is a Privacy Policy? A company’s privacy policy details its commitments regarding the handling and use of consumer data. The policy must explicitly define the company’s practices for collecting, storing, processing, and...more

Integreon

Demystifying DSARs: A Beginner’s Guide

Integreon on

This article originally appeared in The Legal Technologist November/December 2023 Issue here. As individuals, we have the legal right to access personal data held by an organisation, and an increasing number of requests are...more

Foley & Lardner LLP

Navigating the AI Frontier: Legal and Operational Insights Into Generative AI

Foley & Lardner LLP on

In our ever-changing technological environment, artificial intelligence (AI) is beginning to exert its influence on numerous sectors, revolutionizing our approach to work. As businesses and organizations worldwide adopt...more

Society of Corporate Compliance and Ethics...

[Event] Regional Compliance & Ethics Conference - November 9th, Dubai, United Arab Emirates

Looking for compliance education and networking in your area? SCCE’s Regional Compliance & Ethics Conferences offer convenient, local compliance education for practitioners across the globe, including updates on the latest...more

Thomas Fox - Compliance Evangelist

The Importance of Effective Policies and Training in Data Protection: Lessons from a Scottish Hospital Breach

I recently had the chance to visit with Jonathan Armstrong on a recent data breach case that occurred in the health service provider NHS Lanarkshire (Scotland) during the COVID-19 pandemic. This breach serves as a stark...more

Hutchison PLLC

Data Privacy: What Founders Need to Know to Avoid Disaster, with Lucas Beal

Hutchison PLLC on

In an increasingly online world, we’ve become comfortable with volunteering more and more of our personal data to websites and applications, and it’s the companies’ responsibility to keep that data safe. When you’re moving...more

Ankura

Monetizing Sports Data and Protecting Athlete Privacy: Where is the Balance?

Ankura on

The collection of personal data by organizations in the sports industry creates unique data privacy challenges. Generally, a business-to-consumer organization is focused on the personal data of its customers and separately...more

K2 Integrity

Opportunities, Risks, and Compliance in the Digital Assets Space

K2 Integrity on

On 14 September 2022, K2 Integrity hosted a webinar on considerations in the digital assets space. K2 Integrity Board Member Christopher Brummer and AML/CFT experts Mariano Federici and Alex Levitov discussed the current...more

Ankura

Data Deletion under CPRA and GDPR, And How to Operationalize a Deletion Program

Ankura on

Authors: David Manek, Joe Shepley and Mark Melnychenko The California Privacy Rights Act (CPRA) which goes live January 1, 2023 introduces data retention and deletion requirements very similar to those that we see in the...more

Mitratech Holdings, Inc

7 Essential Compliance Management Activities

Now that the sugar and the frivolity of the holiday season have worn off, let’s talk more about the different types of compliance management activities that will ensure your obligations are met, and some of the specific needs...more

The Volkov Law Group

Key Actions to Ensure Compliance with the California Consumer Privacy Act (Part II of II)

The Volkov Law Group on

The California Consumer Privacy Act (CCPA) presents numerous compliance challenges for businesses.  Given the heightened focus on consumer privacy and ever-increasing enforcement risks, companies have to move quickly to...more

The Volkov Law Group

California Sunshine — The California Consumer Privacy Act (Part I of II)

The Volkov Law Group on

When the federal government fails to assume responsibility for establishing law and policy in important federal areas of jurisdiction, the individual states then spring into action to fill the vacuum. ...more

White & Case LLP

Chapter 4: Territorial application – Unlocking the EU General Data Protection Regulation

White & Case LLP on

Why does this topic matter to organisations? The GDPR does not necessarily apply to every organisation in the world. It applies to all organisations that are established in the EU. However, for organisations established...more

36 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide