Remove category
Remove Education Remove Events Remove IT Remove Personal data
article thumbnail

When are schools required to report personal data breaches?

IT Governance

Under the GDPR (General Data Protection Regulation) , all personal data breaches must be recorded by the organisation and there should be a clear and defined process for doing so. In this blog, we take a look at the scenarios in which data protection breaches in schools must be reported. When must breaches be reported?

article thumbnail

CHINA: new Anti-Espionage Law and its impact on your China data and operations – how your organisation should respond

DLA Piper Privacy Matters

The new law broadens the scope of espionage activities, as well as the power for authorities to carry out anti-espionage investigations by gaining access to data and property. As noted above, this is particularly important with regard state secrets and “important data”.

IT 52
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

ICYMI – Late December in privacy and cybersecurity

Data Protection Report

to report this event to the Department within 72 hours of its being discovered.”) Which one is NOT on the list? 3. Does an insurance policy that covers direct physical loss or damage to media cover the situation where ransomware renders downloaded software useless because it could not be decrypted? 7. a (Yes). 8. b.

Privacy 115
article thumbnail

France: The CNIL publishes a practical guide on Data Protection Officers

DLA Piper Privacy Matters

Among the organizations that have designated a DPO, the most represented sectors are, unsurprisingly, the public administration, education and health sectors. The DPO is the key contact for the CNIL and data subjects. The Guide is composed of four main Parts : I. The Guide starts with a section on the role of the DPO : .

GDPR 116
article thumbnail

California Privacy Law Overhaul – Proposition 24 Passes

Data Matters

It does not expand the private right of action to all CCPA violations; it retains the opt-out consent model for the sale of personal information; and it leaves room for the continued use of loyalty and other financial incentive programs that rely upon the use of consumers’ personal information. A Closer Look at Key CPRA Provisions.

Privacy 122
article thumbnail

ICYMI –December in privacy and cybersecurity

Data Protection Report

For those making this quiz a competitive event, we have included a tie-breaker/bonus question.) d. The exception did not apply because BIPA’s goal of protecting the secrecy interest of an individual in his/her biometric data is furthered by a narrow reading of the exception. Answers are below.

Privacy 111
article thumbnail

East Coast Meets West Coast: Enter the Virginia Consumer Data Protection Act

Data Matters

Like the CCPA, the VCDPA contains numerous exemptions for entities and data that otherwise would be within its scope. derives 50% or more of its annual revenues from selling consumers’ personal information. derives 50% or more of its annual revenues from selling consumers’ personal information. Exemptions.