article thumbnail

European Data Protection Roundup – Q4 2024

Debevoise Data Blog

Our top-eleven European data protection developments for the end of 2024 are: EU Cyber Resilience Act: The Council of the European Union approved the Cyber Resilience Act , introducing cybersecurity requirements for digital products sold in the EU. The UK Upper Tribunal did not consider the provisions under the UK GDPR.

article thumbnail

UK ICO Updates Guidance on Artificial Intelligence and Data Protection

Inside Privacy

On 29 March 2023, the UK Information Commissioner’s Office (“ICO”) published updated Guidance on AI and data protection (the “Guidance”) following “requests from UK industry to clarify requirements for fairness in AI”. AI has been a strategic priority for the ICO for several years.

professionals

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Article: 8 Hallmarks of effective Data Protection by Design and Default

Debevoise Data Blog

Privacy and Data Protection , a leading UK journal on practical data protection compliance issues, has featured in its latest edition an article by Robert Maddox and Stephanie Thomas on the hallmarks of effective data protection by design and default under the EU and UK GDPR.

article thumbnail

European Data Protection Roundup – September

Debevoise Data Blog

million fine against Austrian Post for channelling electronic data protection-related inquiries to a web form and not offering an additional email address, irrespective of the data subject option to also use non-electronic postal mail or customer service.

article thumbnail

Fintech and the Data Protection Bill

Ikigai Law

This article discusses the first step for fintechs to get ready for the new data law. No piece of legislation has taken more punches than our elusive data protection law. The data law is nearly here! The Digital Personal Data Protection Bill, 2023 was introduced in Parliament on 3 August 2023.

article thumbnail

Data Protection in the Workplace: Employer Guidance

Legal IT Group

For example, in 2020, the Data Protection Authority of Hamburg imposed a 35.3 million euro fine on H&M for violation of Articles 5 and 6 of the GDPR. This fact became known when the H&M servers encountered a technical error, and the data on the network drive became accessible to all employees for a few hours.

article thumbnail

European Data Protection Roundup – August

Debevoise Data Blog

Organisations would be able to use this for data transfers from the UK; and a TRA will be needed if an organisation is making a restricted transfer (defined and opinions solicited in the TRA consultation ) and wants to rely on a transfer tool under Article 46 of the UK GDPR.