News & Analysis as of

Enforcement Actions Corporate Fines General Data Protection Regulation (GDPR)

Latham & Watkins LLP

GDPR Fines to Be Determined by Reference to Global Turnover of Corporate Group

Latham & Watkins LLP on

The CJEU has decided that the maximum thresholds for GDPR fines should be calculated using the global turnover of the broader corporate group, not solely the infringing entity....more

Barnea Jaffa Lande & Co.

GDPR – Company Fined for Improper Data Collection

The French Data Protection Authority (CNIL) recently imposed a EUR 310,000 fine, representing 1% of its turnover, on FORIOU, a telemarketing company promoting loyalty programs. The fine stemmed from FORIOU’s use of...more

BCLP

Employee Monitoring: Lessons from CNIL’s EUR 32M Fine Against Amazon France Logistique

BCLP on

Following the publication of several press articles and employee complaints, the French data protection regulator (“CNIL”) carried out an investigation at the Amazon France Logistique’s (“Amazon”) warehouses. The CNIL's...more

Latham & Watkins LLP

CNIL Fines Health Website for Unlawful Data Processing

Latham & Watkins LLP on

The French Data Protection Authority imposed a €280,000 fine for GDPR infringements and a €100,000 fine for violation of French cookie rules. On 11 May 2023 the French Data Protection Authority (the CNIL) handed down its...more

WilmerHale

EDPB Adopts Guidelines on Calculation of GDPR Fines and on Facial Recognition Technology in Law Enforcement

WilmerHale on

On May 16, 2022, the European Data Protection Board (EDPB), the independent body of data protection supervisors that promotes consistent data protection rules and application thereof throughout the European Union (EU),...more

Alston & Bird

Italian Supervisory Authority Imposes 20 Million EUR Fine on Controller Outside of Europe

Alston & Bird on

The Italian Garante per la Protezione dei dati Personali (‘Italian SA’) published a decision of February 10, 2022 in which it imposes a 20 million EUR fine on a company outside of Europe for violation of the EU General Data...more

Latham & Watkins LLP

Erfolgreiche Verteidigung gegen DSGVO-Bußgelder

Latham & Watkins LLP on

Mittlerweile haben mehrere deutsche Datenschutzaufsichtsbehörden zweistellige Millionenbußgelder nach Art. 83 DSGVO verhängt. Kurz nach Geltung der DSGVO war es teilweise noch durchaus möglich, sich mit den zuständigen...more

Epiq

Comply or Get Fined: 2020 GDPR Fines are the Highest on Record

Epiq on

The European Union’s (EU) General Data Protection Regulation (GDPR) has been in effect since May 2018. The law’s goal of protecting EU citizens’ personal information and privacy seems to be coming into fruition. In the past,...more

Barnea Jaffa Lande & Co.

H&M Fined EUR 35 Million for Violating Employee Privacy in Germany

Barnea Jaffa Lande & Co. on

In early October, the Data Protection Authority in Hamburg, Germany announced that the clothing retailer H&M committed severe violations of its employees’ privacy. Because of these European General Data Protection Regulations...more

Latham & Watkins LLP

French Data Protection Authority Hands Down First Sanction as Lead Authority

Latham & Watkins LLP on

The CNIL has imposed a €250,000 fine on an online retailer for GDPR infringements in cooperation with other EU supervisory authorities. Founded in 2006 and headquartered in France, Spartoo SAS (Spartoo) is one of the...more

Latham & Watkins LLP

French State Council Upholds CNIL’s €50M Fine for GDPR Violations

Latham & Watkins LLP on

The Council decision contains useful considerations and clarifications on the “one-stop shop” mechanism, transparency obligations, and consent for targeted advertising. On 19 June 2020, France’s Highest Administrative...more

Orrick, Herrington & Sutcliffe LLP

Highest Administrative Court in France Upholds Google’s €50 Million Fine

On January 21, 2019, the CNIL (the French data protection authority) issued a fine of €50 million to Google under the General Data Protection Regulation (the “GDPR”) for its failure to (1) provide notice in an easily...more

BCLP

Cyber Security Trends: Tips from recent UK enforcement activity – Part 2

BCLP on

In this part of our briefing series, we cover how prior regulatory enforcement action affects the assessment of sanctions and some pitfalls associated with undertaking internal security audits.  Who is this relevant for?...more

BCLP

Cyber Security Trends: Tips from recent UK enforcement - Part 1

BCLP on

What insights into cyber security norms can organisations glean from the UK ICO’s recent enforcement decisions, most of which have been released since the GDPR came into force? Final fines are still awaited on the UK’s...more

Latham & Watkins LLP

German Data Protection Authorities Adopt New GDPR Fine Model

Latham & Watkins LLP on

Data protection violations may result in German authorities imposing significantly increased fines. The Conference of the German Data Protection Authorities (DSK) ? the joint body of the German data protection authorities...more

Latham & Watkins LLP

High GDPR Fines: German Data Protection Authority Joins the Club

Latham & Watkins LLP on

Following in the footsteps of the CNIL and the ICO, the Berlin DPA will impose a multimillion-euro fine for breach of the GDPR. The Berlin Data Protection Authority (Berlin DPA) recently announced that it will issue a...more

BCLP

GDPR: new CNIL fine of 180,000 euros for a car insurance company

BCLP on

The French CNIL imposed a new sanction of €180,000 last July 18th, 2019 to a French insurance company that provides car insurance to individuals (Active Assurances) which failed to adequately protect the personal data of...more

Proskauer on Privacy

ICO Issues First Intentions to Fine Under the GDPR

Proskauer on Privacy on

GDPR fines are seemingly like buses, you wait over a year for enforcement action by the UK’s data supervisory authority, the ICO, and then two come along at once – and with quite dramatic effect. The ICO has stretched its...more

BCLP

France’s first GDPR fine costs real estate company Euros 400k

BCLP on

The French CNIL imposed a €400,000 fine on a company specialized in real estate development, purchase, sale, rental and property management, for failing to adequately protect the data of users of its website and for...more

Dorsey & Whitney LLP

Google Fine Signals GDPR Enforcement Priorities and Complexities

Dorsey & Whitney LLP on

The French Data Protection Authority, CNIL, has fined Google $50 Million Euros for Google’s alleged failure to comply with the EU’s sweeping General Data Protection Regulation (GDPR). The enforcement action is significant for...more

Robinson+Cole Data Privacy + Security Insider

Google Fined $57M by French Data Protection Authority for Alleged Violations of GDPR

France’s data protection authority (DPA) (CNIL) recently announced that it has fined Google $57 million for violations of the General Data Protection Regulation (GDPR). This is the first fine by a European DPA of an American...more

Katten Muchin Rosenman LLP

The Sky's the Limit: The Cathay Pacific and British Airways Data Hacks, and the GDPR Six Months On

Cathay Pacific, the Hong Kong airline, is the latest airline to face a cyber-attack; in this case, one that has resulted in the theft of personal data of up to 9.4 million passengers. The hackers gained "unauthorised access"...more

22 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide