Remove 11
article thumbnail

Cybersecurity Standards for the Insurance Sector – A New Patchwork Quilt in the US?

HL Chronicle of Data Protection

Additionally in 2017, Connecticut passed legislation requiring that health insurers, third-party administrators, and related entities implement and maintain a comprehensive information security program with specific minimum requirements to protect insureds’ personal data. More states are sure to follow. See 201 CMR 17.00.

article thumbnail

UK’s Ministry of Justice Launches Consultation on Fines for Data Breaches

Hunton Privacy

In 2008, the DPA was amended by Section 144 of the Criminal Justice and Immigration Act 2008 (“CJIA”) to provide the Information Commissioner with the power to impose civil monetary penalties on data controllers who commit serious breaches of any of the obligations set out above (known as the “data protection principles”).

article thumbnail

The debate on the Data Protection Bill in the House of Lords

Data Protector

We want businesses to ensure that their customers and future customers have consented to having their personal data processed, but we also need to ensure that the enormous potential for new data rights and freedoms does not open us up to new threats. Where she finds criminality, she can prosecute.

GDPR 120