Remove 2019 Remove Compliance Remove Information governance Remove Insurance
article thumbnail

Over-Retention of Personal Data

Data Protection Report

The matter involved one of France’s largest insurers, SGAM AG2R LA MONDIALE, which was subject to an inspection by the French data protection authority (the CNIL), in 2019. The CNIL’s inspection included the insurer’s compliance with Section 5-1(e) of GDPR , which reads: Personal data shall be. (e) Perhaps the CNIL’s €1.75

article thumbnail

$10,000,000 civil penalty for disclosing personal data without consent

Data Protection Report

As part of the order, the company agreed to post “clearly and conspicuously” on its websites and apps for the next two years: Between October 2019 and [date], we shared the personal of information of consumers visiting our website and apps with other companies without their permission. Our Take It is becoming routine for U.S.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

OCR Imposes a $1.6 Million Civil Money Penalty against Texas Health and Human Services Commission for HIPAA Violations

IG Guru

Nov 7, 2019 The Office for Civil Rights (OCR) at the U.S.

article thumbnail

Clean-Up Bill Advances to Amend the New California Consumer Privacy Act

Data Matters

Delayed Deadline for Regulations and Enforcement, But Not Compliance. The CCPA will take effect on January 1, 2020 and businesses will need to be in compliance with the law at that time. Yet under the amendments, the Attorney General will be able to wait until July 1, 2020, to promulgate final regulations under the Act.

Privacy 68
article thumbnail

Welcome to Legaltech New York 2019!: eDiscovery Trends

eDiscovery Daily

sponsored by ACEDS, CloudNine and Compliance Discovery Solutions. Manager – eDiscovery & Legal Operations – Sanofi US, Melissa DeHonney, Corporate Counsel – Information Governance – Novo Nordisk, Inc., Data privacy in global investigations: compliance with local law, including GDPR in Europe. 2:30pm – 3:30pm.