Remove 01
article thumbnail

CNIL publishes a draft TIA guide

Data Protection Report

11] This requires that data processor agreements include an obligation on the processor to make available to the controller all information necessary to demonstrate compliance with its GDPR obligations. [12] 12] The guidance does not suggest that expectations would differ for processors not subject to the GDPR. 31, 39, 44, 45. [10]

GDPR 75
article thumbnail

EDPB Releases Guidelines on Virtual Voice Assistants

Hunton Privacy

On March 12, 2021, the European Data Protection Board (“EDPB”) published its Guidelines 01/2021 on Virtual Voice Assistants for consultation (the “Guidelines”). These activities raise compliance issues under both the General Data Protection Regulation (“GDPR”) and the e-Privacy Directive.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

CISA Issues New Cybersecurity Directive for Federal Agencies

Hunton Privacy

On November 3, 2021, the Cybersecurity and Infrastructure Security Agency (“CISA”) announced Directive 22-01 – Reducing the Significant Risk of Known Exploited Vulnerabilities (the “Directive”), establishing a CISA-managed catalog of vulnerabilities and compelling federal agencies to remediate such vulnerabilities on government information systems.

article thumbnail

The Protection of Your Salesforce Account is Your Responsibility

Thales Cloud Protection & Licensing

Tue, 02/01/2022 - 04:53. Back in March 2021, Salesforce made an announcement that has profound implications, although initially very few people paid attention to it. In fact, as the Thales Access Management Index 2021 report indicates, MFA is not used across all users and computing environments. The choice is yours.

article thumbnail

CISA orders federal agencies to fix actively exploited CVE-2022-21882 Windows flaw

Security Affairs

The Win32k elevation of privilege vulnerability was fixed in January as part of the January 2022 Patch Tuesday , it is the result of a bypass for the previously CVE-2021-1732 flaw. “A A local, authenticated attacker could gain elevated local system or administrator privileges through a vulnerability in the Win32k.sys driver.”

article thumbnail

Protecting Sensitive Data with Luna Key Broker for Microsoft Double Key Encryption

Thales Cloud Protection & Licensing

Thu, 04/01/2021 - 14:04. Today’s remote working environment relies heavily on the collaborative sharing of information, challenging organizations to maintain the security of confidential data and regulatory compliance while driving employee productivity.

article thumbnail

France: The CNIL publishes a practical guide on Data Protection Officers

DLA Piper Privacy Matters

On 16 November 2021, the French data protection supervisory authority (the “CNIL”) published a practical guide (“Guide”) on Data Protection Officers (“DPOs”). The DPO is responsible for the monitoring of the organization’s compliance with the GDPR. Provide information and advice.

GDPR 116