News & Analysis as of

Data Processing Rules Data Controller General Data Protection Regulation (GDPR)

Ropes & Gray LLP

It's All Relative: Analysing The CJEU's Judgment On The Scope Of Pseudonymous Personal Data

Ropes & Gray LLP on

In a decision with significant legal and operational ramifications for organisations of all shapes and sizes, the Court of Justice of the European Union (CJEU) last week confirmed that pseudonymised data will not always and...more

Pillsbury Winthrop Shaw Pittman LLP

Data Transfers from Europe: Final Version of New SCCs Published

The European Commission’s decision of 4 June 2021 finalises the new SCCs for transferring personal data from the EEA. After invalidation of the Privacy Shield by Europe’s top court, many businesses came to rely upon...more

Fox Rothschild LLP

EDPB Ruling Provides Takeaways For DPA Standard Contractual Clauses

Fox Rothschild LLP on

The EDPB issued an opinion on the draft Standard Contractual Clauses (SCC) for a controller-processor data processing agreement under Article 28 (Data Processing Agreements) submitted by the Lithuanian supervisory authority. ...more

Fox Rothschild LLP

Who Is Responsible Under GDPR For Putting A Data Processing Agreement In Place?

Fox Rothschild LLP on

Who is responsible for putting a GDPR Article 28 Data Processing Agreement in place? Dutch Data Protection Authority, Autoreitpersoonsgegevens, says: BOTH the data controller and the data processor....more

White & Case LLP

Regulator prohibits use of transaction data for marketing purposes

White & Case LLP on

The Dutch Data Protection Authority has written to the Dutch Banking Association to state that processing customers' transaction data for direct marketing purposes may not be in compliance with the General Data Protection...more

White & Case LLP

Chapter 7: Lawful basis for processing – Unlocking the EU General Data Protection Regulation

White & Case LLP on

Why does this topic matter to organisations? Processing of personal data is lawful only if, and to the extent that, it is permitted under EU data protection law. If the controller does not have a lawful basis for a given...more

Bradley Arant Boult Cummings LLP

Foreign No More: Transferring Data on Demand U.S. Companies and GDPR Data Portability

Much has been written about the consternation and concern of businesses around the world regarding the European Union’s General Data Protection Regulation (GDPR), which takes effect on May 25, 2018. The GDPR applies to...more

Jones Day

French Data Protection Authority Approves Implementation of Biometric Authentication Tools in Banking Sector

Jones Day on

On May 29, 2017, the French Data Protection Authority (Commission Nationale Informatique et Libertés, or "CNIL") announced that it had authorized nine banking institutions to implement, on an experimental basis,...more

8 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide