EDPB Releases New Guidance: When Can Companies Rely on the Need to Fulfill the Terms of a Contract as a Legal Basis to Process?

On April 12, 2019, the European Data Protection Board (“EDPB”) published draft guidelines on the legal basis for processing personal data that involves providing online services to data subjects (the “Guidelines”). Specifically, they discuss when companies can rely on Article 6(1) – that processing can take place in the context of fulfilling the terms of a contract – and what conditions must be established to do so. The Guidelines make clear that this basis is narrower than…

READ MORE

Framework for GDPR Fines Published by the Dutch Authorities

The Dutch Data Protection Authority (AP) has announced a new policy for determining the fines to be imposed for violations of the General Data Protection Regulation (GDPR) and its national implementing act. The AP’s assessment will first take into account the maximum amounts specified by the European Regulation: either 10 million euros or 2% of the annual worldwide turnover, or 20 million euros or 4% of the annual worldwide turnover, depending on the violation incurred.…

READ MORE

Achieved Chats: What the Heck is a GDPR Data Map?

What the heck is a GDPR data map? Where do I begin with processing records? Don’t worry. We’ve got answers! Achieved Compliance’s President Melise Blakeslee will demonstrate what they are, show you how to use them, cover how to properly maintain and document your processing activities, and explain why both are essential to your data compliance under all privacy regimes.

READ MORE

European Data Protection Board Issues Guidance on Interplay Between GDPR and Rules Governing Data in Clinical Trials

On January 23, 2019, the European Data Protection Board (EDPB), released an opinion on the relationship between the European Clinical Trials Regulation (CTR) and the EU General Data Protection Regulation (GDPR) (the “Opinion”). The CTR, scheduled to take effect in 2020, is designed to harmonize how clinical trials are assessed and supervised across the EU. It introduces a Clinical Trials Information System and establishes rules that protect individuals and enhance transparency requirements. In its Opinion, the EDPB…

READ MORE

U.S. Senate Commerce Committee To Hold Hearings on Privacy February 27, 2019

On February 27, 2019, the U.S. Senate Committee on Commerce, Science and Transportation will convene a hearing titled “Privacy Principles for a Federal Data Privacy Framework in the United States.” Committee members will focus on potential Congressional action to “address risks to consumers and implement data privacy protections for all Americans.” Committee Chairman Sen. Roger Wicker of Mississippi described the hearing as an opportunity to “help set the stage for meaningful bipartisan legislation.” The hearing comes…

READ MORE

PrivacyMinder® Demonstration: Efficiently Comply with Both GDPR & CCPA

California Consumer Privacy Act (CCPA) compliance starts now! CCPA requires companies to be ready to respond to consumer requests for data processing disclosure dating January 1, 2020, but the law’s 12-month look-back provision means you need to be ready today. Join Achieved Compliance’s President Melise Blakeslee as she walks you through how our PrivacyMinder® software platform can get you fully compliant with both GDPR and CCPA in just days with minimal internal disruption. Our compliance…

READ MORE

French Data Protection Authorities Fine Google Nearly $57 Million for Violations of the General Data Protection Regulation’s Notice and Consent Requirements

French regulators have fined Google nearly $57 million for violations of the General Data Protection Regulation (GDPR). This fine was the first major penalty levied against a large U.S. technology company since the regulation took effect in May 2018. France’s data protection authority, known as the CNIL, said that Google failed to fully disclose to users how their personal information is collected and what happens to it. Significantly, regulators said that Google also did not…

READ MORE