Loading

Tag: Data Protection

Tag: Data Protection
Page 26

Polish DPA fined university for failing to issue a data breach notification

The Polish DPA has fined a university for neglecting to notify the authority as well as affected persons after a data breach. In June of 2020, the Polish DPA was notified of a data breach at a medical university. According to the complaint received, during the university’s examinations held towards the end of May 2020,

Data breach notification guidelines published by the EDPB

New data breach notification guidelines, published by the EDPB frame what curative measures should be taken based on specific examples.    In a recent article, we reported on two doctors in France, who were fined by the CNIL over a data breach, and were also found to have breached article 33 of the GDPR, by

ICT regulation in 2021: Four things to look out for

From regulation of Big Tech to the upcoming legislative framework for AI, I have identified the key areas to be on the lookout for in 2021 when it comes to regulating ICT.   Regulating digital gatekeepers   Big Tech has been on the regulators’ and legislators’ radar for a while, with earlier EU antirust fines

Memorandum of Understanding signed between the ICO and the National Privacy Commission of the Philippines

A Memorandum of Understanding has been signed between the UK’s ICO and the Philippines’ NPC, effective January 12th 2021. The UK’s ICO and the Philippines’ NPC have recently signed a Memorandum of Understanding in a move to strengthen their current relations. Recognizing the nature of this globalized economy, and the fact that they perform similar

ICO urges UK businesses: ensure compliance to data protection law before the end of the UK’s transition.

ICO urges UK businesses to ensure compliance to data protection law before the end of the UK’s transition on December 31st 2020.    December 31st 2020 will officially end the transitionary period for the UK, out of the EU, and the ICO is calling on UK businesses to ensure that if they are impacted by

New national privacy bill proposed in Canada.

New national privacy bill proposed in Canada, is expected to significantly increase protections to Canadians’ personal information.  Bill C-11, Canada’s newly proposed national privacy bill, which is also referred to as Digital Charter Implementation Act, 2020, will give Canadians more control and transparency when companies handle their personal information, and therefore expected to increasingly protect

ICO fines Ticketmaster UK Limited 1.39 million Euros, over chatbot cyber attack.

ICO fines Ticketmaster UK Limited 1.39 million Euros under the GDPR, for failing to prevent chatbot cyber attack.   The ICO has fined Ticketmaster UK in relation to a recent data breach which potentially affected over 9 million customers across the EU. This data breach was orchestrated via a chatbot which the company installed on

First Code of Conduct under the GDPR approved by the Spanish DPA.

The first Code of Conduct under the GDPR has been approved by the Spanish DPA. The Spanish Agency for Data Protection (AEPD), in enforcing the General Data Protection Regulation and the Data Protection Law and guarantee of digital rights, has approved the first code of conduct based on the provisions of articles 40 and 41

Guernsey-based law firm fined after sharing “highly confidential and sensitive” information.

Guernsey-based law firm fined over 11,000 Euros by the DPA, after sharing “highly confidential and sensitive” information via emails and post.   Trinity Chambers LLP sent private details about an individual and their family via emails and post, the Data Protection Authority (ODPA) found. The Office of the Data Protection Agency recently released a statement

ICO provides SAR guidance for organizations receiving requests.

ICO provides SAR guidance to simplify the process for, and give better understanding to organizations receiving subject access requests.   The ICO published information last month, geared at giving guidance to organizations who may receive subject access requests (SARs). As the weight of personal data becomes more apparent to individuals, more people are exercising their