International Regulatory Trends

Slides:



Advertisements
Similar presentations
The EU General Data Protection Regulation Frank Rankin.
Advertisements

Key Points for a Privacy Programme for Multinationals Steve Coope.
General Data Protection Regulation (EU 2016/679)
Privacy and Data Security in an Increasingly Globalized World
HIPSSA Project PRESENTATION ON SADC DATA PROTECTION MODEL LAW
Consent and Contract under EU Data Protection Law
Data Protection Officer’s Overview of the GDPR
Accountability & Structured Privacy Management
Industry 4.0 – New ways of cooperative working – are we prepared?
Unpacking the European Commission General Data Protection Regulation
GDPR (General Data Protection Regulation)
Overview General Data Protection Regulation (GDPR)
THE NEW GENERAL DATA PROTECTION REGULATION: A EUROPEAN OR A GLOBAL STANDARD? Bart van der Sloot Senior Researcher Tilburg Institute for Law, Technology,
Presentation to GTMC on GDPR
GDPR – Legal Aspects Desislava Krusteva, Attorney-at-Law, CIPP/E
Data Protection The Current Regime
General Data Protection Regulation (GDPR
General Data Protection Regulation
General Data Protection Regulations Preparing for the upcoming changes in data protection law David Jones & Angharad Williams.
Museums + Heritage webinar, 30 November 2017
GDPR Readiness Project
Data Protection Update – GDPR or bust
Information Governance and Data Privacy: A World of Risk
General Data Protection Regulation: Turning the black into white
Data Protection Legislation
The European Union General Data Protection Regulation (GDPR)
General Data Protection Regulation: A Primer for U.S. Companies
INTRODUCTION TO GDPR 19/09/2018.
Data protection reform:
GDPR Road map to Compliance.
Introducing GDPR: How the General Data Protection Regulation transforms the world Laura Mudd November 2016.
Bob Siegel President Privacy Ref, Inc.
GENERAL DATA PROTECTION REGULATION (GDPR)
General Data Protection Regulation and NGOs: Are you Ready?
GDPR 101 and ucsb’s response
General Data Protection Regulation
Introduction to GDPR 09/11/2018.
The General Data Protection Regulation (GDPR)
Introducing the General Data Protection Regulation 2016
Are you processing personal data lawfully?
GDPR and Health and Safety
Privacy: a work in progress
G.D.P.R General Data Protection Regulations
The GDPR and research data
Bart van der Sloot Data Protection 2.0 The proposal for a General Data Protection Regulation Bart van.
GDPR Overview and Use Cases.
General Data Protection Regulation
HIPSSA Project Support for Harmonization of the ICT Policies in Sub-Sahara Africa, Meeting with the Namibia ICT Ministry and Data Protection Stakeholders.
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
A whistle stop tour of GDPR
Mathew Norman, Policy & Public Affairs Officer, RLA Wales
Guide to overview of changes under GDPR ww.ZAKSIT.com
GDPR For The Voluntary Sector
General Data Protection Regulation
Bart van der Sloot Data Protection 2.0 The proposal for a General Data Protection Regulation Bart van.
Welcome!.
Data transfers to non-EU countries under the new GDPR
The General Data Protection Regulation Six months on – What’s changed
GDPR & Accountability ISACA Ireland Annual Conference 2018
Presentation privacy law
The General Data Protection Regulation: Are You Ready?
General Data Protection regulation (GDPR)
Privacy and Cyber Security for Payroll Pros: A Global Perspective
Overview of the recommendations regarding approximation of the Law on personal data protection to the new EU General data protection regulation Valerija.
Dr Elizabeth Lomas The General Data Protection Regulation (GDPR): Changing the data protection landscape Dr Elizabeth Lomas
Data Protection What can I do? GDPR Principles General Data Protection
General Data Protection Regulation (GDPR)
GDPR: Understanding your obligations and the ongoing challenges
General Data Protection Regulation Community Councils
Data Privacy and GDPR Jane Shvets
Presentation transcript:

International Regulatory Trends Daily Journal Professional Education Cyber Boot Camp, January 12, 2017 Brian Michael, 21st Century Fox, Fox Networks Group Timothy J. Toohey, Greenberg Glusker Fields Claman & Machtinger LLP Dr. Kai Westerwelle, Taylor Wessing (US) Inc. Moderator: Tanya Forsheit

Agenda Privacy in Historical Context – EU v. US EU-US Cross-Border Data Transfers EU General Data Protection Regulation (GDPR) Russia Asia Latin America The Future?

EU v. US Privacy in Perspective

Privacy in Historical Context

EU-US Cross-Border Data Transfers

Background The Safe-Harbor Framework, 2000- 2015 The Schrems case

Adoption of Privacy Shield July 12, 2016 – Commission adopted Privacyshield.gov opened for business August 1, 2016

Principles Notice Choice Accountability for Onward Transfer Security Data Integrity and Purpose Limitation Access Recourse, Enforcement, Liability Supplemental Principals

Alternative Transfer Mechanisms Model clauses Controller to Processor Controller to Controller Binding Corporate Rules (BCRs)

GDPR

General Application Do you process personal data in the context of activities of an establishment in the EU? Do you process data of data subjects in the EU and does the processing relate to: (a) the offering of goods or services to those data subjects; or (b) the monitoring of those data subjects’ behavior as far as their behavior takes place in the EU?

Principles Process personal data lawfully, fairly, and in a transparent manner. Collect personal data for specified, explicit, and legitimate purposes. Personal data should be adequate, relevant, and limited to what is necessary. Keep personal data accurate and erase or rectify inaccurate personal data without delay. Keep personal data for no longer than is necessary for the purposes for which it is processed. Protect and use appropriate measures to securely process personal data.

Basis for Processing Consent Legitimate Interest Contractual Necessity Other Lawful Grounds Special Categories

Data Subject Rights Transparency Access Rectification Erasure Right to Be Forgotten Restrict Processing Object Data Portability Data Profiling Rights

Policies and Procedures Data Protection Officer (DPO) Record Keeping Privacy by Design and by Default Data Protection Impact Assessments Written Contracts between Controllers and Processors Data Security Measures Data Breach Response International Data Transfers

Enforcement Member State Courts and DPAs Administrative fines up to $20 million EUR; or 4% of the total worldwide annual turnover of the preceding fiscal year, … whichever is higher

Russia

Russia Data localization regulation and enforcement Cybersecurity issues

Asia A Few Recent Developments

Japan Personal Information Protection Act (“PIPA”) amendments will come into force on 30 May 2017. Restrictions on data transfers associated therewith.

China National People's Congress passed the cybersecurity act in November 2016 Will come into force June 1, 2017 Impact on data transfers and cybersecurity

Latin America A Sampling of Regulations

Argentina “Adequate” for EU purposes New development 2016: European- style Model Clauses

Mexico Federal Law on the Protection of Personal Data held by Private Parties Regulations under the Federal law issued 5 years ago Specific data security requirements, including for vendor relationships Short Form Privacy Notices

The Future?

The Future Impact of new US Administration Impact of Brexit What to expect from regulators around the globe going forward?