Remove category
Remove Definition Remove Financial Services Remove Marketing Remove Risk
article thumbnail

The Impact of Data Protection Laws on Your Records Retention Schedule

ARMA International

Definition and Purpose of a Records Retention Schedule. These records are typically organized by grouping them by function or department and then described as either an individual record or grouped together into a record category. 8 This is the GDPR definition and other countries have similar broad definitions of personal data.

article thumbnail

The Privacy Officers’ New Year’s Resolutions

Data Protection Report

In the UK, the Information Commissioner’s Office (ICO) has been very outspoken on the ad tech industry’s use of special category personal data and onwards data sharing without explicit consent. As a result, organisations need to revisit their current cookie consent mechanisms and notices and reassess their appetite to risk.

Privacy 85
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

The Privacy Officers’ New Year’s Resolutions

Data Protection Report

In the UK, the Information Commissioner’s Office (ICO) has been very outspoken on the ad tech industry’s use of special category personal data and onwards data sharing without explicit consent. As a result, organisations need to revisit their current cookie consent mechanisms and notices and reassess their appetite to risk.

Privacy 52
article thumbnail

GDPR automated decision-making and profiling: what are the requirements?

IT Governance

In brief: Profiling now has a distinct definition. Additional restrictions apply to processing special category and children’s data. Data controllers must carry out a DPIA in accordance with Article 35 as automated decision-making is categorised as high-risk processing. What is profiling under the GDPR?

GDPR 88
article thumbnail

China’s PIPL has finally arrived, and brings helpful clarification (rather than substantial change) to China’s data privacy framework

DLA Piper Privacy Matters

Definition of Personal information and Sensitive Personal information “Personal information” means any kind of information relating to an identified or identifiable natural person, either electronically or otherwise recorded, but excluding information that has been de-identified or anonymised.

article thumbnail

Executive Order on access to Americans’ bulk sensitive data and Attorney General proposed regulations – Part 2

Data Protection Report

The proposed definition of “listed identifier” is Full or truncated government identification or account number (such as a Social Security Number, driver’s license or state identification number, passport number, or Alien Registration Number) [Note that this definition apparently includes truncated Social Security Numbers.]

Access 59
article thumbnail

European Commission publishes long-awaited draft Regulation on Artificial Intelligence

DLA Piper Privacy Matters

The AI Regulation adopts a broad regulatory scope , covering all aspects of the lifecycle of the development, sale and use of AI systems, including: (i) placing AI systems on the market; (ii) putting AI systems into service; and. At the highest risk level are prohibited AI practices. High Risk AI systems.