Cybersecurity Tech Accord signed by 34 global technology and security companies

On April 17, 2018, 34 global technology and security companies signed a Cybersecurity Tech Accord, agreeing to defend all customers everywhere from malicious attacks by cybercriminal enterprises and nation-states. The 34 companies include ABB, Arm, Cisco, Facebook, HP, HPE, Microsoft, Nokia, Oracle, and Trend Micro, and together represent tech companies that power the world’s internet […]

Tags: ,

The CLOUD Act: significant changes to cross-border access to data held by communication-service providers

On March 23, 2018, the omnibus spending bill was signed into law; a portion contains the Clarifying Lawful Overseas Use of Data Act (CLOUD Act). The CLOUD Act’s main goal is to grant governments timely access to electronic data stored by communication-service providers (such as email service providers, certain cloud service providers and social media providers). The […]

Tags: ,

NJ AG states “having a good handle on your own cybersecurity is not enough”: vendors’ security must be vetted as well

    UPDATE The Attorney General’s office also filed charges against the transcription service, ATA Consulting LLC, operating as Best Medical Transcription. In November 2018, Best Medical Transcription settled allegations related to a 2016 security lapse that made public — through Google web searches — the medical records of 1,654 patients treated by Virtua Medical Group […]

Tags:

CIPL publishes factsheet on shared concept between GDPR and ePrivacy Regulation

On March 20, 2018, the Centre for Information Policy Leadership (“CIPL”) issued a factsheet on the GDPR’s provisions that are most likely to be relevant for the negotiations of the proposed ePrivacy Regulation. The Factsheet explains key GDPR concepts relevant to the ePrivacy Regulation, including: definitions of GDPR’s terms, such as personal data, data processing and the role of […]

Tags: ,

FTC publishes 2017 Privacy & Data Security report

The Federal Trade Commission (FTC) issued its 2017 Privacy & Data Security Update. The annual report summarizes the year’s privacy and data security enforcement actions, advocacy, workshops and guidance. Among the FTC’s 2017 privacy and security actions announced, is the first actions enforcing the EU-U.S. Privacy Shield framework.   The 2017 Privacy & Data Security update […]

Tags:

ICO publishes Data Protection Impact Assessments (DPIAs) guidance

On March 22, 2018, the Information Commissioner Officer (ICO) – the U.K. Data Protection Authority – published a detailed guidance for UK organizations on data protection impact assessments (DPIAs) under the GDPR to help companies identify and minimize the data protection risks of projects. The content of this detailed guidance is subject to public consultation, […]

Tags: ,

List of GDPR Guidelines prepared by WP29

Finalised GDPR Guidelines – Guidelines on Data Protection Officers (DPO), more here; – Guidelines on the right to data portability, more here; – Guidelines for identifying a controller or processor’s Lead Supervisory Authority, more here; – Guidelines on Data Protection Impact Assessment (DPIA) and determining whether processing is “likely to result in a high risk”, […]

Tags: ,

UK Data Protection Regulator publishes new guidance on Data Protection Impact Assessments

The UK Data Protection Regulator, the Information Commissioner’s Office (ICO), published yesterday new guidance on conducting Data Protection Impact Assessments (DPIAs) under the General Data Protection Regulation (GDPR). The guidance follows earlier guidance from the Article 29 Working Party (WP29). This note uses some technical data protection terms which are explained in our Glossary here. […]

Tags:

FTC ready to settle with PayPal over Venmo’s failure to disclose information to consumers about funds transfers and privacy settings

On February 27, 2018, the Federal Trade Commission (FTC) announced that it reached a settlement with PayPal, Inc. over allegations that the company failed to make adequate disclosures regarding its Venmo peer-to-peer payment service. According to the FTC’s complaint, Venmo misled consumers about the extent to which they could control the privacy of their transactions. By […]

Tags:

1 6 7 8 9 10 27