Latest Posts › EU

Share:

NOYB Files 422 GDPR Complaints

And the cookie continues to crumble. NOYB has filed 422 complaints with ten EU data protection authorities. The move came after it sent written warnings and draft complaints to more than 500 companies on May 31, 2021...more

European Privacy Guidelines Issued For Virtual Voice Assistants

The European Data Protection Board has issued final guidelines on virtual voice assistants. The guidelines appear to be largely unchanged from the draft issued in February for public consultation...more

EDPB Issues Final Recommendations On Third Country Data Transfers

Third country laws – more than meets the eye. In practice – problematic legislation in disguise. The European Data Protection Board has issued a “Transformers” style plan for assessing whether or not you can transfer...more

European Commission Releases Preliminary Report On Consumer IoT Devices

Maybe someone is reading them after all? European Commission opens for consultation its report of the sector inquiry into consumer internet of things (IoT) devices...more

EU Cybersecurity Agency Highlights Challenges For Autonomous Vehicles

In the Connected and Automated Mobility (CAM) ecosystem, cybersecurity … should be seen as a core enabler that protects safety and provides value to products and services, and is integrated in the lifecycles of products’ and...more

EDPB Ruling Provides Takeaways For DPA Standard Contractual Clauses

The EDPB issued an opinion on the draft Standard Contractual Clauses (SCC) for a controller-processor data processing agreement under Article 28 (Data Processing Agreements) submitted by the Lithuanian supervisory authority....more

The Data Protection/Digital Identity Dilemma: ICO Weighs In On UK Proposal

The Information Commissioner’s position paper on the UK government’s proposal for a trusted digital identity system provides insight into the interplay between data protection and digital identity. Key Points- •Given...more

US, EU Pledge To Accelerate Work On Privacy Shield 2.0

If at first (and second) you don’t succeed, try try again. The European Union and United States are gearing up for “Privacy Shield 2.0” to address the difficulties faced by tens of thousands of companies in the wake of the...more

French Court: Use Of Vendor With U.S. Parent May Require Additional Security Measures

Even in the absence of a cross-border transfer of personal data from the European Union to a third country, if you are using a vendor that has a U.S. parent company, get ready to implement supplementary measures, says the...more

IAB Europe Updates Advice On Ad Targeting Without Third-Party Cookies

IAB Europe has updated its Guide to Post Third-Party Cookie Era. The guide provides a detailed overview of the various targeting techniques used today and some options and consideration going forward. Key Takeaways- ...more

Groups Outline Cybersecurity Risks For AI In Autonomous Vehicles

The European Union Agency for Cybersecurity (ENISA) and the Joint Research Centre of the European Commission (JRC) have issued a joint guidance on “Cybersecurity Challenges in the Update of Artificial Intelligence in...more

EU Parliament: US Must Reform Surveillance Laws To Pave Way For Data Transfers

The European Parliament is urging the United States to reform its surveillance laws to pave the way for transfers of personal data between the European Union and the U.S. "For data controllers that fall within the scope of...more

France’s CNIL Fines Data Processor and Data Controller Over Credential-Stuffing Attack

Data Processors beware. France’s CNIL issued an enforcement action against both a data controller (150,000 EUR) and a data processor (75,000 EUR) for inadequate information security measures leading to a...more

2/4/2021  /  CNIL , Data Controller , EU , France , Sanctions

UK High Court Sets High Bar For Extraterritorial Application Of GDPR

The United Kingdom's High Court of Justice, in the case of Soriano, determined there was no real prospect of success on the merits in a case seeking extraterritorial applicability of the EU's General Data Protection...more

Council Of Europe Lists Priorities For Securing Growing Number Of Connected Devices

“Increased usage of consumer products and industrial devices connected to the internet will also raise new risks for privacy, information- and cybersecurity, including increasingly potential impacts on the integrity and...more

Valuable Data Privacy Lessons In CNIL’s Enforcement Action Against Carrefour France

In addition to the not-insignificant €2.25 million fine, CNIL's enforcement action against Carrefour France raises some universal points for companies handling data, both in the EU and in the U.S. Big Picture...more

The European Commission’s Draft Standard Contractual Clauses: Key Takeaways

In the wake of the European Data Protection Board guidance on Post-Schrems II data transfers, which may render the question of using the clauses moot for some companies, the European Commission issued draft standard...more

EDPB Adopts Measures On Post-Schrems II Supplemental Data Transfer Tools

Brace yourselves, the post-Schrems II supplemental measures are coming! The European Data Protection Board adopted recommendations on measures that supplement transfer tools to ensure compliance with the European Union...more

EDPB Addresses Data Exchange With International Organizations Under GDPR

How does GDPR apply to the transfer of personal data from an EU entity to an international organization? “Entities subject to the GDPR that exchange personal data with international organisations have to comply with the...more

U.S. Outlines Privacy Safeguards For Post-Schrems II Data Transfers

The U.S. government has published a whitepaper that outlines the robust limits and safeguards in the United States pertaining to government access to data in an effort to assist organizations in assessing whether their...more

European Commission Releases Autonomous Vehicle Privacy Recommendations

In a detailed report titled "Ethics of Connected and Automated Vehicles," the European Commission sets out key data protection recommendations Definition: Connected and Automated Vehicles (CAVs) are vehicles that are both...more

EU Cloud Services Group Working On Post-Schrems II Data Transfer Solution

A new post-Schrems II transfer solution for cloud services? The EU Cloud Code of Conduct General Assembly, creators of the EU Cloud Code of Conduct, announced work is underway on a proposed legal solution for the transfer...more

Council Of Europe Suggests Convention 108+ As Schrems II Data Transfer Solution

“Convention 108+ (Convention 108 as amended by the protocol) is set to become the international standard on privacy and data protection in the digital age, and represents a viable tool to facilitate international data...more

EDPB Controller-Processor Guidelines: German State Offers FAQs

The Data Protection Authority for the German state of Baden-Württemberg has issued FAQs on the European Data Protection Board's (EDPB) Controller-Processor Guidelines. Legal Concepts- •Contractual clauses can represent...more

147 Results
 / 
View per page
Page: of 6

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide