Goodbye from Watching the Connectives
To all my readers, thank you and goodbye. This blog is now an ex-blog.
UK data protection, GDPR, DPIAs, international transfers, data protection for AI-enabled products
To all my readers, thank you and goodbye. This blog is now an ex-blog.
On 7 July 2016, the UK’s Financial Conduct Authority (FCA) issued finalised guidance for authorised UK financial institutions use of cloud services. In a marked contrast to some other jurisdictions’ approach, this guidance is issued against a policy backdrop of FCA’s ‘Project Innovate’ which is a initiative to foster innovation and competition. The FCA say:
On 6 July 2016, the European Union (which for now includes the UK) adopted the Network and Information Security (or NIS) Directive. This imposes obligations on three sets of stakeholders:
The UK Government today published its first draft of the Digital Economy Bill. As expected, it contains provisions addressing (text taken from Government explanatory fact sheet):
Singapore’s Personal Data Protection Commission (PDPC) has been busy. It has just published a number of new resources to help businesses comply with the Personal Data Protection Act. Here are the three we have identified as having the biggest practical application for companies in Singapore. 1. Sample clauses and guidance for marketing consents. For companies collecting…
On September 24, Singapore’s Personal Data Protection Commission published its final advisory guidelines on how the country’s Personal Data Protection Act 2012, which governs the collection, use, and disclosure of personal data, will be interpreted and applied. As expected, these adopt a business friendly approach. For more details see my post on ZDNet’s Legal Tech…
Singapore’s Data Protection Bill was passed in Parliament yesterday, after a lengthy debate. Organisations will have 18 months to adjust to the new Personal Data Protection Act, starting January 2013 before rules come into force (not 2 years). The ‘Do Not Call’ register will be set up in early 2014. See here for commentary on the…
Readers will recall from the curious case of Mr Spitz that European telecoms operators already retain very large amounts of information about their customers. In an evaluation report adopted today by the European Commission, the Commission proposes to review the existing rules. The Commission summarise the main findings of the report as: Most Member States take the…