Loading

Category: Data Protection

Spain approves new Data Protection Law

New Royal Decree-Law on Data Protection in Spain A new Royal Decree-Law on Data Protection has been approved in Spain as part of the GDPR adaptation process. A Royal Decree-Law is a legal rule having the force of a law in the Spanish legal system. This is an important regulatory measure for Privacy in the

Japan GDPR adequacy

Japan GDPR adequacy to create the world’s largest area of safe data flows With a successful conclusion to their talks on reciprocal adequacy, the EU and Japan have agreed to recognise each other’s data protection systems as ‘equivalent’, which will allow data to flow safely between the EU and Japan. Each side will now launch its

ICO children’s data fine imposed

Independent Enquiry into Child Abuse has been fined £200,000 based on ICO children’s data decision. The ICO has fined the Independent Inquiry into Child Sexual Abuse (IICSA) £200,000, after they sent a bulk email that identified possible victims of non-recent child sexual abuse, according to ICO Children’s data decision. The Inquiry, set up in 2014

ICO fines for failure to pay fee

ICO fines company for not registering with it and paying the fee, providing some initial guidance on ICO fines policy under GDPR and Data Protection Act 2018. Noble Design and Build of Telford, Shropshire, which operates CCTV systems in buildings across Sheffield were fined £4,500 in total, ordered to pay costs of £364.08 and a

GDPR and social media : EU Court on fan pages on Facebook

Earlier this month the ECJ published a preliminary ruling finding the fan page admin jointly responsible with Facebook for the personal data of the visitors. Although the decision refers to the previously enforceable EU Data Protection Directive, the new rule paves the way for GDPR and social media practice, since the definition of the processor

GDPR WHOIS impact

Our blog editor Vasiliki Antoniadou explores how GDPR will affect WHOIS. Although GDPR is widely anticipated due to the strengthening of the individuals’ rights on their personal data, it is believed by some that its implementation on WHOIS would cause unintentional adverse consequences on the online intellectual property protection. GDPR WHOIS implications WHOIS is an

GDPR deadline and GDPR compliance snake oil

“GDPR deadline” is on 24th May at midnight. Anyone promising GDPR compliance to businesses who start their adaptation process now is likely to be selling them snake oil. But embarking on a serious journey of GDPR compliance is still indispensable – no matter how late one begins it. During the last year or so, I

GDPR administrative fines explained

Aphaia Blog editor Vasiliki Antoniadou explores GDPR administrative fines that businesses can expect based on WP29 guidelines. GDPR gives to the supervisory authorities the power to impose administrative fines following two different maximum amounts according to the severity of the data breach. Under GDPR administrative fines rules, for instance, an infringement of the basic principles of

Blue Octopus recruitment gives candidates control over data

In our client interview, Kelly Laurenson, Blue Octopus’s Operations Director, explains the company’s modern approach to hiring and making the candidates’ data work for them – and not somebody else. What makes Blue Octopus special in the recruitment industry? Blue Octopus is an award-winning online recruitment company with a modern approach to hiring – one that

Do I need a Data Protection Officer ?

The answer to the question do I need a Data Protection Officer under GDPR is not always straightforward. Here are some tips you can use in order to reach a valid decision on appointing a DPO. Formal Data Protection Officer or informal Data Protection Adviser? The question ‘ do I need a Data Protection Officer