GDPR

Ten tips for GDPR compliance

The new data protection laws are not going anywhere and 2019 is likely to be a year of action in which the new data rights, complaints and enforcement options are tested. We’ve already seen this in France earlier this month when CNIL (the French National Data Protection Commission) fined Google a record 50 million Euros,…


The new data protection laws are not going anywhere and 2019 is likely to be a year of action in which the new data rights, complaints and enforcement options are tested. We’ve already seen this in France earlier this month when CNIL (the French National Data Protection Commission) fined Google a record 50 million Euros, related to Google’s use of Ads personalisation.

CNIL determined that Google had not been sufficiently clear and transparent with its privacy information and had not obtained the necessary consents. In addition, because CNIL viewed Google’s economic model as being based on ads personalisation they were held to an increased level of accountability. Therefore, the scale of Google’s fine reflected this as well as the size of their operations, and the fact that breaches were ongoing and continuous (rather than one-off errors).

The Information Commissioner’s Office (ICO) – responsible for enforcing data protection requirements in the UK- has been working through a backlog of complaints.  However, whilst we anticipate enforcement will increase with “examples” made, the ICO’s general mindset rema

Read More

Be the first to write a comment.

Leave a Reply

Your email address will not be published. Required fields are marked *

GDPR

GDPR wasn’t designed for AI and that’s a security problem

The Security Think Tank explores the intersection of GDPR and artificial intelligence, considering how data protection standards in the UK and Europe are changing in this new paradigm…

The Security Think Tank explores the intersection of GDPR and artificial intelligence, considering how data protection standards in the UK and Europe are changing in this new paradigm…
Read More

Continue Reading
GDPR

When the intern has admin rights: GDPR in the agentic age

The Security Think Tank explores the intersection of GDPR and artificial intelligence, considering how data protection standards in the UK and Europe are changing in this new paradigm…

The Security Think Tank explores the intersection of GDPR and artificial intelligence, considering how data protection standards in the UK and Europe are changing in this new paradigm…
Read More

Continue Reading
GDPR

Nigel Farage wants to scrap ‘suffocating’ UK GDPR

Reform UK’s leader proposes ‘light-touch’ alternative, although rival politicians say plans are sparsely detailed and inconsistent with reality…

Reform UK’s leader proposes ‘light-touch’ alternative, although rival politicians say plans are sparsely detailed and inconsistent with reality…
Read More

Continue Reading
GDPR

Tech Tuesday: Data privacy and synthetic data generation tools

Data has become simultaneously the most valuable asset most organisations own and the most heavily regulated one. GDPR fines exceeded €4.5 billion cumulatively by early 2026. The EU AI Act’s classification of training data quality as a high-risk system requirement has made data provenance a legal obligation rather than a best practice…

Data has become simultaneously the most valuable asset most organisations own and the most heavily regulated one. GDPR fines exceeded €4.5 billion cumulatively by early 2026. The EU AI Act’s classification of training data quality as a high-risk system requirement has made data provenance a legal obligation rather than a best practice…
Read More

Continue Reading