Remove 2020 Remove Court Remove Data protection
article thumbnail

European Data Protection Roundup – Q4 2024

Debevoise Data Blog

Our top-eleven European data protection developments for the end of 2024 are: EU Cyber Resilience Act: The Council of the European Union approved the Cyber Resilience Act , introducing cybersecurity requirements for digital products sold in the EU. The UK Upper Tribunal did not consider the provisions under the UK GDPR.

article thumbnail

The Security ‘Scapegoat?’: When Liability Comes Knocking, CISOs Answer the Call

Berkley Technology Law Journal

They are responsible for overseeing an organizations data protection measures, risk management strategies, overall security infrastructure, among other critical responsibilities. District Court for the Southern District of New York suggests that CISOs might be outside of point-blank range.

professionals

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Personal data protection: why a Data Transfer Impact Assessment should be part of your GDPR compliance

Legal IT Group

International data transfers in GDPR compliance are complex, as data are transferred to third countries outside the European Union (EU) or the European Economic Area (EEA). Suppose you are interested in personal data protection issues. What should the DTIA note for transferring personal data from the EU to Ukraine?

article thumbnail

New York Becomes First State to Mandate CLE in Cybersecurity, Privacy and Data Protection

LawSites

state to mandate that attorneys take continuing legal education courses in cybersecurity, privacy and data protection. New York has become the first U.S. Related: 40 States Have Adopted the Duty of Technology Competence. The order creates two types of cybersecurity training, one focused on ethics and the other on practice.

article thumbnail

Transfer of Data to Google Analytics as a Breach of the GDPR: Decision of the Court in Germany

Legal IT Group

Recently, the Cologne District Court ruled that a German mobile operator’s use of Google Analytics violated the GDPR’s requirements for international data transfers. The Cologne District Court ruling only applies to the defendant in the case, Telekom Deutschland GmbH.

Analytics 130
article thumbnail

European Data Protection Roundup: 2020 in Five Trends

Debevoise Data Blog

In this post, we look back at the 2020 European data protection landscape and five trends that help companies understand not only where we are, but where data protection enforcement, litigation, and practice may be headed. Second , enforcement goes far beyond data breaches and the GDPR. million and £99.2

article thumbnail

European Data Protection Roundup – November 2020

Debevoise Data Blog

The big news this November was the European Data Protection Board (the “EDPB”) issuing its highly anticipated post- Schrems II data transfer guidance, followed just a day later by the European Commission’s draft updated Standard Contractual Clauses (“SCCs”) (see our blog post here ). Bonn Regional Court slashes Telco’s €9.55