News & Analysis as of

International Data Transfers CNIL European Union

A&O Shearman

CNIL publishes Data Transfer Impact Assessment guide

A&O Shearman on

On January 31, 2025, the French supervisory authority (CNIL) published the final version of its guide on transfer impact assessments (TIA). A TIA must be undertaken by organisations relying on one of the ‘appropriate...more

Latham & Watkins LLP

CNIL Fines Health Website for Unlawful Data Processing

Latham & Watkins LLP on

The French Data Protection Authority imposed a €280,000 fine for GDPR infringements and a €100,000 fine for violation of French cookie rules. On 11 May 2023 the French Data Protection Authority (the CNIL) handed down its...more

K&L Gates LLP

French Supervisory Authority Publishes Guidance on the Use of Website Analytics in Compliance With GDPR Requirements

K&L Gates LLP on

Following the 2020 Court of Justice of the European Union’s (CJEU) ruling invalidating the Privacy Shield (see our alert here), personal data transfers from the European Union to the United States required EU companies to...more

Stikeman Elliott LLP

Transferring Data from the EU: What to Take Away from the Recent Google Analytics GDPR Rulings

Stikeman Elliott LLP on

Companies using Google Analytics (“Analytics”) or similar platforms may be interested in recent rulings of several European data protection authorities that found Analytics data transfers to the U.S. to be non-compliant with...more

Ankura

Does Your Organization Maintain an Employee Facing Privacy Notice?

Ankura on

On Tuesday, June 15, 2021, a French court ordered IKEA to pay 1 million euros ($1.2 million) for spying on its employees in France. The allegations included reviewing employees' bank account records, using fake employees to...more

A&O Shearman

Schrems II: French Conseil d’Etat provides insight into sufficient safeguards for EU personal data accessed from the US

A&O Shearman on

On 12 March 2021, the Conseil d’Etat, the highest administrative court of France, issued a decision that might have significant impact on personal data transfers to third countries in the aftermath of the Schrems II decision...more

Foley Hoag LLP - Security, Privacy and the...

French Data Protection Authority Rules on Transfers of Health Data

The French Conseil d’Etat handed down an important decision October, 13th regarding privacy and personal data protection. This decision comes in the wake of the “Schrems II” ruling of the Court of Justice of the European...more

McDermott Will & Emery

Transfers of Health Data from France to the United States Not Prohibited... but Must be Protected by Strong Safeguards

McDermott Will & Emery on

On October 9, 2020, there were media reports that the French Data Protection Authority (CNIL) had expressed concerns regarding the hosting by Microsoft (EU) of the French centralized public health database (the Health Data...more

Carlton Fields

EU Data Protection Authority Levies Its First Fine for Violations of the GDPR

Carlton Fields on

The French Data Protection Authority, CNIL, has levied its first fine for enforcement of the General Data Protection Regulation (GDPR). The enforcement target, Spartoo, is a French online shoe retailer that makes its website...more

McDermott Will & Emery

[Webinar] Ce que vous avez peut-être manqué des actualités RGPD: la montée en puissance de l’accountability? - June 25th, 1:30 pm...

McDermott Will & Emery on

McDermott Will & Emery a le plaisir de vous convier à un webinaire sur le thème "Ce que vous avez peut-être manqué des actualités RGPD: la montée en puissance de l’accountability?" qui abordera les thèmes suivants: -...more

McDermott Will & Emery

[Webinar] What You Might Have Missed in GDPR: The Rise of Accountability? - June 25th, 1:30 pm CEST

McDermott Will & Emery on

In our latest webinar we will be examining what you may have missed in the development of GDPR in the current global landscape, focusing in particular on: - Data transfers outside the EU: what to do with its standard...more

Shook, Hardy & Bacon L.L.P.

Privacy and Data Security Alert | August 2019

French Data Protection Authority Issues Guidelines on Cookie Use - CNIL, France’s data protection authority, has released new rulesfor obtaining consumer consent under the GDPR for companies using cookies and other tracking...more

Hogan Lovells

GDPR – The Year in Review

Hogan Lovells on

Following the one-year anniversary of the coming into effect of the GDPR, Hogan Lovells’ Privacy and Cybersecurity practice has prepared a compilation of key GDPR-related developments of the past 12 months. The compilation...more

Latham & Watkins LLP

No Deal Brexit and Data Transfers: Companies Must Prepare Now

Latham & Watkins LLP on

Companies should identify data flows, implement a data transfer solution, and update internal documents and privacy notices. Since our blog on “What a “No Deal” Brexit Means for UK Data Privacy”, the European Data...more

Shook, Hardy & Bacon L.L.P.

Privacy and Data Security Client Alert | February 2019

Google Receives Record GDPR Fine - Marking the first major penalty against a U.S. tech company under the General Data Protection Regulation (GDPR), the French data-protection authority, CNIL, has fined Google a record $57...more

Akin Gump Strauss Hauer & Feld LLP

Non-profit Activists’ Strategic Pursuit of Alleged GDPR Violations Spurs Compliance Developments

• Non-profit organizations are testing companies’ GDPR compliance through targeted requests for information and other means and are filing complaints against allegedly non-compliant companies. • Main areas for non-profit...more

Proskauer - Blockchain and the Law

Is Blockchain Technology Compatible with GDPR? French Data Protection Regulator Provides Guidance

Uncertainty regarding the compatibility of blockchain technology and the European Union’s General Data Protection Regulation (GDPR) has often been highlighted as a potential obstacle to the development and widespread...more

Robinson+Cole Data Privacy + Security Insider

French Data Protection Authority Issues Guidance on Interaction of Blockchain Technology with GDPR

Last month, the French data protection authority (the CNIL) issued initial guidance addressing issues that applications utilizing blockchain technology should consider in order to comply with the European General Data...more

Skadden, Arps, Slate, Meagher & Flom LLP

The Distributed Ledger: Blockchain, Digital Assets and Smart Contracts - November 2018

This is the second edition of The Distributed Ledger, a periodic publication covering the latest trends and developments in blockchain technology, digital assets and smart contracts. In this issue, we examine the SEC’s new...more

Hogan Lovells

French Data Protection Authority’s Latest Newsletter Includes Assessment of First Four Months of GDPR & Several Guidelines

Hogan Lovells on

The French Data Protection Authority (the CNIL) published its assessment of the first four months of  GDPR and several guidelines, including one on how to make a GDPR compliant blockchain. ...more

Skadden, Arps, Slate, Meagher & Flom LLP

Privacy & Cybersecurity Update - August 2018

In this month's edition of our Privacy & Cybersecurity Update, we examine Brazil's new data protection regulation, the French data protection authority's warning to two companies of potential GDPR violations and the U.S....more

Jones Day

Global Privacy & Cybersecurity Update Vol. 16

Jones Day on

UNITED STATES - Regulatory—Policy, Best Practices, and Standards - United States and China Renew Promise Not to Hack - On October 4, U.S. and Chinese officials agreed to not engage in targeted hacking. Per a...more

Latham & Watkins LLP

How to Comply with the New General Data Protection Regulation: A Q&A with Partner Gail Crawford and Counsel Ulrich Wuermeling

Latham & Watkins LLP on

In less than one year, from 25 May 2018, the General Data Protection Regulation (GDPR or Regulation) will become enforceable. The GDPR introduces a rigorous, far-reaching privacy framework for businesses that operate, target...more

Foley Hoag LLP - Security, Privacy and the...

EU-US Data Transfers?: An update on actions taken by European DPAs

After the European Court of Justice invalidated Safe Harbor on October 6, ?2015, the Article 29 Working Party announced in an October 16, 2015 statement that US companies that were Safe Harbor certified had until the end of...more

Seyfarth Shaw LLP

No Safe Harbour? Immediate Implications for Employers

Seyfarth Shaw LLP on

A landmark decision of the European Court of Justice (ECJ) has held that companies may no longer rely on “Safe Harbour” to justify transferring personal data from the European Union to the US, because the US Government has a...more

26 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide