GDPR

Opinion: How to design a US data privacy law

Enlarge akinbostanci/Getty Images reader comments 217 Nick Dedeke is an associate teaching professor at Northeastern University, Boston. His research interests include digital transformation strategies, ethics, and privacy. His research has been published in IEEE Management Review, IEEE Spectrum, and the Journal of Business Ethics. He holds a PhD in Industrial Engineering from the University of

General data protection regulation GDPR logo on padlock with blue color background.
Enlarge
akinbostanci/Getty Images

reader comments

217

Nick Dedeke is an associate teaching professor at Northeastern University, Boston. His research interests include digital transformation strategies, ethics, and privacy. His research has been published in IEEE Management Review, IEEE Spectrum, and the Journal of Business Ethics. He holds a PhD in Industrial Engineering from the University of Kaiserslautern-Landau, Germany.

The opinions in this piece do not necessarily reflect the views of Ars Technica.

In an earlier article, I discussed a few of the flaws in Europe’s flagship data privacy law, the General Data Protection Regulation (GDPR). Building on that critique, I would now like to go further, proposing specifications for developing a robust privacy protection regime in the US.

Writers must overcome several hurdles to have a chance at persuading readers about possible flaws in the GDPR. First, some readers are skeptical of any piece criticizing the GDPR because they believe the law is still too young to evaluate. Second, some are suspicious of any piece criticizing the GDPR because they suspect that the authors might be covert supporters of Big Tech’s anti-GDPR agenda. (I can assure readers that I am not, nor have I ever, worked to support any agenda of Big Tech companies.)

In this piece, I will highlight the price of ignoring the GDPR. Then, I will present several conceptual flaws of the GDPR that have been acknowledged by one of the lead architects of the law. Next, I will propose certain characteristics and design requirements that countries like the United States should consider when developing a privacy protection law. Lastly, I provide a few reasons why everyone should care about this project.

The high price of ignoring the GDPR

People sometimes assume that the GDPR is mostly a “bureaucratic headache”—but this perspective is no longer valid. Consider the following actions by administrato

!–>

Read More

Be the first to write a comment.

Leave a Reply

Your email address will not be published. Required fields are marked *

GDPR

Mistral just updated its open source Small model from 3.1 to 3.2: here’s why

The fact that it is made by a French startup and compliant with EU rules and regulations such as GDPR and the EU AI Act also helps its appeal…

The fact that it is made by a French startup and compliant with EU rules and regulations such as GDPR and the EU AI Act also helps its appeal…
Read More

Continue Reading
GDPR

UK passes updated data bill, without AI copyright provisions

If it gets Royal approval, the DUA Act will become law and herald a significant change to the U.K.’s data protection framework since GDPR. The post UK passes updated data bill, without AI copyright provisions appeared first on CoinGeek…

If it gets Royal approval, the DUA Act will become law and herald a significant change to the U.K.’s data protection framework since GDPR.
The post UK passes updated data bill, without AI copyright provisions appeared first on CoinGeek…
Read More

Continue Reading
GDPR

8 steps to ensure data privacy compliance across borders

As organizations expand internationally, IT leaders must navigate a maze of regulations, from the General Data Protection Regulation (GDPR), to the California Consumer Privacy Act (CCPA), as well as other region-specific privacy laws. So to stay compliant, they should have strong plans that cover data mapping…

As organizations expand internationally, IT leaders must navigate a maze of regulations, from the General Data Protection Regulation (GDPR), to the California Consumer Privacy Act (CCPA), as well as other region-specific privacy laws. So to stay compliant, they should have strong plans that cover data mapping…
Read More

Continue Reading
GDPR

Group condemns critics of varsity, medical centre projects in Southern Kaduna

A socio-political group, the Southern Kaduna Peoples Alliance for Good Governance Against Divisive Politics in the Region (SKPAGGDPR), has condemned what it described as attempts by some individuals to sow discord among key political leaders over the recent establishment of The post Group condemns critics of varsity…

A socio-political group, the Southern Kaduna Peoples Alliance for Good Governance Against Divisive Politics in the Region (SKPAGGDPR), has condemned what it described as attempts by some individuals to sow discord among key political leaders over the recent establishment of
The post Group condemns critics of varsity…
Read More

Continue Reading