Remove 2023 Remove Compliance Remove Data protection
article thumbnail

Dutch SA Sanctions Credit Card Company for Failure to Perform Data Protection Impact Assessment

Inside Privacy

In December 2023, the Dutch SA fined a credit card company €150,000 for failure to perform a proper data protection impact assessment (“DPIA”) in accordance with Art. 35 GDPR for its “identification and verification process”. The DPO was also not sufficiently involved in the assessment.

article thumbnail

Spanish Data Protection Authority Issues Guidance on Data Spaces

Inside Privacy

In May 2023, the Spanish Supervisory Authority (“SA”) issued a detailed guidance paper on GDPR compliance in the context of data spaces.

professionals

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

European Data Protection Roundup – Q4 2024

Debevoise Data Blog

Our top-eleven European data protection developments for the end of 2024 are: EU Cyber Resilience Act: The Council of the European Union approved the Cyber Resilience Act , introducing cybersecurity requirements for digital products sold in the EU. This includes products such as software, webcams and smart TVs.

article thumbnail

UK ICO Updates Guidance on Artificial Intelligence and Data Protection

Inside Privacy

On 29 March 2023, the UK Information Commissioner’s Office (“ICO”) published updated Guidance on AI and data protection (the “Guidance”) following “requests from UK industry to clarify requirements for fairness in AI”. AI has been a strategic priority for the ICO for several years.

article thumbnail

The UK Information Commissioner’s Data Protection Practioner’s Conference 2023 on Cybersecurity

Technology Law Dispatch

On 3 October 2023, the UK Information Commissioner’s Office organised its annual Data Protection Practioner’s Conference 2023 (DPPC 2023). Here are the takeaways from the DPPC 2023 (the event sessions available here ). Cyber security risks remain significant, the most common of them being phishing attacks.

article thumbnail

Guidance on Privacy-Enhancing Technologies for Data Protection Compliance: Key Considerations for Organizations

Technology Law Dispatch

On 19 June 2023, the Information Commissioner’s Office (ICO) has released new Guidance on Privacy-Enhancing Technologies (PETs) for Data Protection Compliance. Understanding PETs PETs are software and hardware systems that can help minimize use of personal data use while maximizing information security.

article thumbnail

European Data Protection Roundup – August 2023

Debevoise Data Blog

The AEPD held that a DPO cannot hold a position that leads them to determine the purposes and means of data processing. The scale and data protection risks associated with such technologies has been further complicated recently by their increasing integration with artificial intelligence systems.