article thumbnail

CPPA Board Holds Meeting on Revised Draft Regulations for Risk Assessment and Automated Decisionmaking Technology

Hunton Privacy

ADMT Definition of Automated Decisionmaking Technology Clarify that a technology is an ADMT if it processes personal information and uses computation to execute a decision, replace human decisionmaking or substantially facilitate human decisionmaking. Streamline what must be included in an abridged risk assessment.

Risk 61
article thumbnail

NYDFS Proposes Updated Second Amendment to Its Cybersecurity Regulation

Hunton Privacy

As a result of the initial 60-day comment period, the updated Amendment incorporates a number of changes, including the following: Definitions NYDFS clarified the thresholds for calculating when covered entities qualify as “Class A Companies,” which would be subject to heightened requirements.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

A Practical Guide to Cyber Incident Response

IT Governance

Oh, law enforcement doing its job is definitely a good thing. It’s how I convince them that they really need that cyber incident response plan , to do tabletop exercises , to train their staff , and so on. These types of technological solutions are essential to process huge amounts of information [security events like access logs].

Risk 118
article thumbnail

How to become an ISO 27001 lead implementer

IT Governance

You’ll be given a combination of theoretical study and hands-on work, including group discussions, practical exercises and case studies. What you need to know. The course is led by real-world ISO 27001 practitioners who show you how to tackle an ISMS project from start to finish. We also offer a Live Online version of this course.

Risk 66
article thumbnail

California Legislature Passes Bill to Establish the Genetic Information Privacy Act, Pending Governor’s Signature

Hunton Privacy

The Act also excludes from the definition of genetic data, “deidentified data,” as defined in the Act. Not disclosing, subject to specified exceptions, a consumer’s genetic data to certain entities ( e.g. , those responsible for making decisions regarding health insurance, life insurance or employment).

Privacy 85
article thumbnail

New Dubai International Financial Centre Data Protection Law Comes into Effect

Hunton Privacy

Specifically, the New DP Law follows the CCPA in prohibiting businesses from discriminating against consumers for exercising their rights under the CCPA, including by offering a financial incentive or price or service difference (subject to certain exemptions). For more detail, read the full client alert.

article thumbnail

European Data Protection Board Issues Privacy Shield Report

Hunton Privacy

Issuance of guidance for EU individuals on exercising their rights under the Privacy Shield, and for U.S. The Report highlights the uncertainty surrounding the application of the Privacy Shield to HR data, noting that conflicting interpretations of the definition of HR data has led to uncertainty as to what protections are available.

Privacy 69