Eversheds Sutherland Cybersecurity and Privacy Insights Blog
content top

Standard Contractual Clauses and EDPB Recommendations

The European Data Protection Board (EDPB), a collective of representatives from European data privacy regulators, published important recommendations on the Schrems II judgment, the seismic European decision that invalidated the EU-US Privacy Shield and called into question the continuing viability of personal data transfers from the EU and UK to third countries, particularly the...

Only YOU can prevent IoT network shutdowns

As tens of billions of additional Internet of Things (IoT) devices are poised to enter the market and infuse our supply chains, on December 4, 2020, President Donald Trump signed the first ever federal law governing IoT devices. The IoT Cybersecurity Improvement Act (the Act) will result in new national rules for federal procurement of IoT devices which, along...

No rest for the weary: cybersecurity and privacy enforcement actions heat up

A recent wave of cybersecurity and privacy enforcement actions cautions businesses dealing in personal data to strengthen their security and compliance plans. The New York Department of Financial Services recently announced its first enforcement action under its cybersecurity regulation. The California Attorney General began enforcement-related inquiries under the newly enacted...

The seismic shift of Schrems ll and what you can still do to transfer personal data to the US from the EU

If you transfer data from the EU to the US, or if your trusted service providers do, the Schrems II European Court decision has seismic significance— even if you do not rely on Privacy Shield, recent FAQs issued by the European Data Protection Board further highlight the changes: The FAQs provide further clarification on whether there is a “grace period” for those companies...

Accessibility—The hidden A in the CCPA

In the scramble to come into compliance before the January 1, 2020, deadline, companies may have overlooked a key—and potentially costly—requirement in the California Consumer Privacy Act (CCPA). Under the draft regulations to the CCPA, businesses are required to ensure that their internal and external notice and privacy policies are reasonably accessible to individuals with...

« Older Entries Next Entries »