article thumbnail

Colorado AG Publishes Guidance on Data Security Practices and Announces Upcoming Rulemaking Under the Colorado Privacy Act

Hunton Privacy

On January 28, 2022, in celebration of Data Privacy Day, the Colorado Attorney General’s Office issued prepared remarks from Colorado Attorney General Phil Weiser and published guidance on data security best practices. Regularly reviewing and updating security policies.

Privacy 102
article thumbnail

Facebook's Download-Your-Data Tool Is Incomplete

Schneier on Security

Privacy International has the details : Key facts: Despite Facebook claim, "Download Your Information" doesn't provide users with a list of all advertisers who uploaded a list with their personal data. As a user this means you can't exercise your rights under GDPR because you don't know which companies have uploaded data to Facebook.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Australian Defense Department will replace surveillance cameras from Chinese firms Hikvision and Dahua

Security Affairs

The presence of cameras poses an unacceptable risk to national security. That [risk has] obviously been there, I might say, for some time and predates us coming into office but, that said, it’s important that we go through this exercise and make sure that our facilities are completely secure,” Marles added.

article thumbnail

CHINA: Draft Rules on Privacy Policies Released – Is Your Privacy Policy Compliant?

DLA Piper Privacy Matters

This generally include, the categories personal data being processed by key functions, data sharing with third parties, approach to exercise data subject rights, complaining channels, etc. whether these data processing activities will bring high risks to the data subject.

Privacy 94
article thumbnail

Monitoring the dark web to identify threats to energy sector organizations

Security Affairs

Dark web intelligence is a fantastic resource for informing an organization’s security posture, helping the security team spot early indicators of attack and feeding their threat models. The threat actors offered detailed instructions on how to exploit known vulnerabilities in Internet-facing ICS systems. We are in the final!

article thumbnail

Dutch DPA Issues Record Fine for Violating GDPR Data Subject Rights

HL Chronicle of Data Protection

Under the European Union’s General Data Protection Regulation (GDPR), individuals have the right to access personal data collected about them, and to exercise that right easily and at reasonable intervals.

GDPR 112
article thumbnail

New York City Council Passes Tenant Data Privacy Act

Hunton Privacy

Building owners would need to provide a “plain language” privacy policy to tenants that discloses (1) the data elements the smart access system collects; (2) the third parties the data is shared with; (3) how the data is safeguarded; and (4) how long the data will be retained. Security safeguards.