article thumbnail

CJEU rules on DPO conflicts of interest under the GDPR

Technology Law Dispatch

C-453/21) , which addresses the question of the dismissal of a Data Protection Officer (“ DPO ”) and the interpretation of Article 38 of the EU GDPR. Facts FC was an employee, chair of the works council, and the DPO of X-FAB Dresden GmbH & Co. KG. (“ X-FAB ”) and several of its group companies.

article thumbnail

Russia Introduces New Requirements for Processing of Publicly Disclosed Personal Data

Debevoise Data Blog

On 1 March 2021, Federal Law No. 519-FZ on Amendments to the Federal Law on Personal Data dated 30 December 2020 (the “Law”) came into force. This is additional to general data processing consent, which is still required under pre-existing data protection law. Special Consent.

professionals

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

The FCC Expands Scope of Data Breach Notification Rules

Inside Privacy

The Order makes several notable changes to the prior rules, including broadening the definitions of a reportable “breach” and “covered data,” requiring covered entities to notify the FCC in addition to federal law enforcement of breaches, and modifying certain customer notification requirements.

article thumbnail

What the ADPPA Means for U.S. Data Regulation

Debevoise Data Blog

state privacy law, including updates to the California Consumer Privacy Act (“CCPA”) and the California Privacy Rights Act (“CPRA”), the Colorado Protect Personal Data Privacy Act (“ColoPA”), the Connecticut Privacy Act (“CTPA”), the Virginia Consumer Data Protection Act (“VCDPA”), and the Utah Consumer Privacy Act (“UCPA”).

article thumbnail

Face Forward Part 2: Proposed Legislation and Strategies for Compliant Use of Facial Recognition

Debevoise Data Blog

In this part, we assess where the law seems to be heading and offer some practical risk reduction strategies. Federal and State Legislation There is currently no federal law that specifically regulates biometric privacy. No comprehensive and preemptive federal law seems likely to pass anytime soon.

article thumbnail

2024 Law Firm Data Security Guide: How to Keep Your Law Firm Secure

Clio

HIPAA : The Health Insurance Portability and Accountability Act (HIPAA) is a federal law that requires healthcare providers and “ business associates ” to protect protected health information (PHI) from inadvertent disclosure. Check out our blog post on understanding HIPAA compliance for more information.

article thumbnail

California’s DELETE Act has come into force: what are the new requirements for data brokers?

Legal IT Group

Analyze your personal data collection and processing practices and align your personal data protection practices. Develop criteria and a system for handling consumer inquiries under the California Consumer Privacy Act and cooperating with your counterparties under the upcoming ADM.