News & Analysis as of

International Data Transfers Data Protection France

A&O Shearman

CNIL publishes Data Transfer Impact Assessment guide

A&O Shearman on

On January 31, 2025, the French supervisory authority (CNIL) published the final version of its guide on transfer impact assessments (TIA). A TIA must be undertaken by organisations relying on one of the ‘appropriate...more

Mayer Brown

EDPB Provides Guidance On Determining A 'Main Establishment' And The 'One-Stop-Shop' Mechanism

Mayer Brown on

The opinion was issued in response to a request by the French Data Protection Authority and provides guidance on the conditions for determining a controller's main establishment where that controller has establishments in...more

Hogan Lovells

Transfer Impact Assessments: the CNIL is seeking public input on TIA guide

Hogan Lovells on

On January 8, 2024, the CNIL launched a public consultation on a draft guide (Draft Guide) covering Transfer Impact Assessments (TIA). Under GDPR, as interpreted by the Court of Justice of the European Union (CJEU) and...more

Hogan Lovells

Member of French Parliament lodges first request for annulment of EU-US Data Privacy Framework

Hogan Lovells on

P. Latombe, who is not only a Member of the French Parliament, but also seated at the French Data Protection Authority (CNIL)'s Commission, lodged a request for annulment of the DPF on 6 September 2023 before the Court of...more

Hogan Lovells

Reform of the procedure before the French Data Protection Authority

Hogan Lovells on

On 24 January and 8 April 2022, the procedure before the French Data Protection Authority (CNIL) was reformed with the aim notably to better respond to the growing number of complaints that the CNIL receives each year...more

K&L Gates LLP

French Supervisory Authority Publishes Guidance on the Use of Website Analytics in Compliance With GDPR Requirements

K&L Gates LLP on

Following the 2020 Court of Justice of the European Union’s (CJEU) ruling invalidating the Privacy Shield (see our alert here), personal data transfers from the European Union to the United States required EU companies to...more

Latham & Watkins LLP

CNIL Publishes White Paper on Digital Payments and Data Privacy

Latham & Watkins LLP on

The French Data Protection Authority’s white paper discusses how companies can comply with data privacy and security obligations. The use of card, contactless, and innovative digital payment solutions has significantly...more

Foley Hoag LLP - Security, Privacy and the...

French Data Protection Authority Rules on Transfers of Health Data

The French Conseil d’Etat handed down an important decision October, 13th regarding privacy and personal data protection. This decision comes in the wake of the “Schrems II” ruling of the Court of Justice of the European...more

Cohen & Gresser LLP

Navigating the Atlantic with Personal Data

Cohen & Gresser LLP on

Executive summary - In a repeat move echoing the previous invalidation of the “Safe Harbor”, on 16th July 2020 the Court of Justice of the European Union (“CJEU”) invalidated the “Privacy Shield”, which had allowed the...more

Orrick, Herrington & Sutcliffe LLP

Guidance from E.U. Supervisory Authorities on Data Processing in a Time of COVID-19

The European Data Protection Board (EDPB) and a number of European data protection supervisory authorities have recently issued guidance on processing personal data, including special categories of personal data (i.e., health...more

White & Case LLP

GDPR Guide to National Implementation: France - A practical guide to national GDPR compliance requirements across the EEA

White & Case LLP on

Q1/ Applicable legislation - (a) Have the requirements of the GDPR been addressed by introducing a new law, or by updating existing legislation? Old legislation has been updated....more

Shook, Hardy & Bacon L.L.P.

Privacy and Data Security Client Alert | February 2019

Google Receives Record GDPR Fine - Marking the first major penalty against a U.S. tech company under the General Data Protection Regulation (GDPR), the French data-protection authority, CNIL, has fined Google a record $57...more

Robinson+Cole Data Privacy + Security Insider

French Data Protection Authority Issues Guidance on Interaction of Blockchain Technology with GDPR

Last month, the French data protection authority (the CNIL) issued initial guidance addressing issues that applications utilizing blockchain technology should consider in order to comply with the European General Data...more

Perkins Coie

French Data Protection Authority Issues Guidance on Application of Blockchain to the GDPR

Perkins Coie on

On September 24, 2018, the French data protection authority, Commission Nationale de l’Informatique et des Libertés (CNIL), became the first data protection authority to issue written guidance on the intersection of the use...more

Hogan Lovells

French Data Protection Authority’s Latest Newsletter Includes Assessment of First Four Months of GDPR & Several Guidelines

Hogan Lovells on

The French Data Protection Authority (the CNIL) published its assessment of the first four months of  GDPR and several guidelines, including one on how to make a GDPR compliant blockchain. ...more

Hogan Lovells

One day before the entry into force of the GDPR, the French bill is adopted… but referred to the French Constitutional Council...

Hogan Lovells on

The General Data Protection Regulation (GDPR) will enter into force on 25 May 2018. In light of the urgency to adapt Law no. 78-17 dated 6 January 1978 to the new European Union law, the French Government has initiated an...more

Herbert Smith Freehills Kramer

Employment Alert - Le traitement des données RH et le règlement européen sur la protection des données (« RGPD »)

Paris partner Fabienne Arrighi publishes an Employment Alert about HR data processing and the new EU GDPR. ...more

Herbert Smith Freehills Kramer

C’est la dernière ligne droite : veillez à être prêt à appliquer le RGPD avant le 25 mai prochain. Et demandez-vous : suis-je sur...

Dans moins de quatre mois, le 25 mai 2018, le règlement général de l'Union européenne sur la protection des données (« RGPD ») entrera en vigueur et la loi française, actuellement en discussion devant le parlement, qui tient...more

Jones Day

Global Privacy & Cybersecurity Update Vol. 16

Jones Day on

UNITED STATES - Regulatory—Policy, Best Practices, and Standards - United States and China Renew Promise Not to Hack - On October 4, U.S. and Chinese officials agreed to not engage in targeted hacking. Per a...more

Jones Day

Global Privacy & Cybersecurity Update Vol. 13

Jones Day on

On December 28, 2016, the New York Department of Financial Services ("DFS") released a revised version of a proposed regulation that would require banks, insurance companies, and other financial services institutions...more

20 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide