Loading

Tag: Data Protection

Tag: Data Protection
Page 29

BCR Changes for Brexit: EDPB releases statement guiding enterprises.

The European Data Protection Board (EDPB) released a statement of guidance on Binding Corporate Rules (BCRs), for groups of undertakings, or enterprises which have the UK ICO as their lead supervisory authority (BCR Lead SA).   The EDPB released a statement of guidance on Binding Corporate Rules (BCRs), for groups of undertakings, or enterprises which

Assessment List for Trustworthy Artificial Intelligence Overview.

Early this month the High-Level Expert Group on Artificial Intelligence (AI HLEG) presented their final Assessment List for Trustworthy Artificial Intelligence. As reported in our blog, the piloting process of the Ethics Guidelines for Trustworthy AI was launched in the first EU AI Alliance Assembly, which took place on 26th June 2019. The results have

European Commission Released Communication on transition between EU and UK.

The European Commission released a statement detailing the implications of the transition between the EU and UK.    As the UK comes to the end of its transitory period from the EU to the end of this year, the European Commission has released communication assessing the country’s readiness for separation from the region. The withdrawal

EU Digital Sovereignty: Ideas for a more resilient EU.

EU digital sovereignty is of paramount importance in the face of the rapid technological evolution currently taking place globally.   A call for EU digital sovereignty had been brought to the forefront of many conversations among policy makers, in light of growing concerns over EU citizens losing their control of their data, capacity for innovation

Opportunities for online marketplaces have grown during COVID

Opportunities for online marketplaces have grown during the COVID-19 pandemics, from second-hand clothes to artworks. Since privacy risks grow with the number of users and transactions, this is a good time for the platforms to review their approach to data protection. This article builds on my earlier article on COVID-19 business adaptation published as part

CNIL Smart and Thermal Cameras Caution

French data protection authority CNIL calls for caution in the use of smart and thermal cameras, due to the fact that certain proposed systems do not comply with the legal framework for the protection of personal data.    The preservation of anonymity in public spaces is an essential part of exercising personal freedoms like the

Spanish DPA issues €25,000 fine to Glovo for Data Protection Officer appointment violation

The Spanish Data Protection Authority (DPA) AEPD fined Glovo €25,000 for not appointing a Data Protection Officer pursuant to article 37 GDPR. Have you ever wondered whether your business is subject to the DPO designation requirement covered by the GDPR? The ambiguity of the GDPR when it comes to the definition of the cases where

Dubai Data Protection Law No.5 will be implemented on July 1st, 2020.

Dubai Data Protection Law No.5 will be implemented on July 1st, 2020, replacing DIFC No. 1 of 2007.   Sheikh Mohammed bin Rashid Al Maktoum, Ruler of Dubai, and Vice President and Prime Minister of the United Arab Emirates, recently enacted the Dubai International Financial Center (DIFC) Data Protection Law No.5 of 2020. This new

Business adaptation to COVID-19 and Data Privacy

The measures businesses have taken to adapt to the COVID-19 crisis are unlikely to be temporary, which includes the consequences for personal data processing operations. In this article, I have gathered some key insights from various industry players and experts, and reconciled them with my own industry observations and the observations of the wider Aphaia

Healthcare Committee Data Breach in Örebro County, Sweden.

Healthcare Committee Data Breach in Örebro County, Sweden after sensitive personal data of a patient was published on the region’s website.   A healthcare committee data breach was uncovered after complaints were filed with the Swedish Data Protection Authority (DPA), concerning the publication of a patient’s personal data on the region’s website. According to an