Remove Court Remove Data protection Remove Events
article thumbnail

European Data Protection Roundup – Q4 2024

Debevoise Data Blog

Our top-eleven European data protection developments for the end of 2024 are: EU Cyber Resilience Act: The Council of the European Union approved the Cyber Resilience Act , introducing cybersecurity requirements for digital products sold in the EU. The UK Upper Tribunal did not consider the provisions under the UK GDPR.

article thumbnail

New York Becomes First State to Mandate CLE in Cybersecurity, Privacy and Data Protection

LawSites

state to mandate that attorneys take continuing legal education courses in cybersecurity, privacy and data protection. New York has become the first U.S. The order creates two types of cybersecurity training, one focused on ethics and the other on practice.

professionals

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

European Data Protection Roundup – July 2024

Debevoise Data Blog

Building on prior European guidance , the French and Irish DPAs published guidance on the deployment of generative AI, large language models and data protection. To that end, the EDPB proposed designating DPAs as the “national competent authorities” under the AI Act to create a single point of contact.

article thumbnail

European Data Protection Roundup – August

Debevoise Data Blog

UK DPA launches data transfer consultation What happened : The ICO launched a consultation covering its international data transfer guidance, draft transfer risk assessment tool (“TRA”) and draft international data transfer agreement (“ IDTA ”). These developments, and more, covered below.

article thumbnail

European Data Protection Roundup – February 2021

Debevoise Data Blog

There were a few European data protection developments in February that companies may want to have on their radar. What to do: Nothing right now other than monitor progress and, in the unlikely event that the adequacy decision is not finalised, put in place an alternative transfer mechanism for EU-UK transfers.

article thumbnail

Protection of personal data in Brazil: differences in the scope of the LGPD and the new penal practice

Legal IT Group

Brazil’s Lei Geral de Proteção de Dados Pessoais (or LGPD), similar to GDPR, CCPA and PIPEDA, regulates personal data protection. If the company does not process personal data in Brazil but still processes data to offer or supply goods or services to Brazil, the LGPD also applies in this case.

article thumbnail

European Data Protection Roundup – December 2023

Debevoise Data Blog

National courts should keep in mind that the GDPR requires controllers to establish “appropriate” risk management systems, not to eliminate the risk of personal data breaches altogether. The rulings arose at the request of both the German and Lithuanian courts, following local administrative fines.