On March 1, 2024, the UK Information Commissioner’s Office announced that it had issued an enforcement notice and a warning to the UK Home Office for failing to sufficiently assess the privacy risks posed by the electronic monitoring of people
Privacy & Information Security Law Blog
Global Privacy and Cybersecurity Law Updates and Analysis
The Privacy & Information Security Law Blog, published by Hunton Andrews Kurth LLP, focuses on legal developments and regulatory updates in privacy and information security. It covers state and federal privacy laws, including comprehensive data privacy acts, consumer data protection rights, and obligations of data controllers. The blog also addresses emerging issues such as the regulation of biological and neural data, online safety, and the intersection of data protection with other regulatory frameworks. Additionally, it discusses enforcement actions, compliance strategies, and sector-specific privacy concerns, including healthcare privacy under HIPAA and protections related to reproductive health information.
Latest from Privacy & Information Security Law Blog - Page 5
EDPB Launches Coordinated Enforcement Framework on Right of Access
On February 28, 2024, the European Data Protection Board announced the launch of its latest Coordinated Enforcement Framework action on the right of access.…
HHS Targets Small Behavioral Health Clinic for HIPAA Violations Following Ransomware Investigation
On February 21, 2024, the U.S. Department of Health and Human Services’ Office for Civil Rights entered into a resolution agreement and corrective action plan with Green Ridge Behavioral Health LLC. This marks the second such settlement with a HIPAA-regulated…
FTC Announces $16.5 Million Settlement Against UK Service Provider and Ban from Selling Browsing Data for Advertising Purposes
On February 22, 2024, the Federal Trade Commission announced a settlement order against Avast Limited requiring the company to pay $16.5 million and prohibit the company from selling or licensing any web browsing data for advertising purposes.…
ICO Orders Companies to Cease Using Facial Recognition Technology and Fingerprint Scanning to Monitor Attendance
On February 23, 2024, the UK Information Commissioner’s Office reported that it had ordered public service providers Serco Leisure, Serco Jersey and associated community leisure trusts to stop using facial recognition technology and fingerprint scanning to monitor employee attendance.…
California Seeks to Regulation Employer Use of AI
As reported on the Hunton Employment & Labor Perspectives blog, on February 15, 2024, California lawmakers introduced the bill AB 2930. AB 2930 seeks to regulate use of artificial intelligence (“AI”) in various industries to combat “algorithmic discrimination.” The…
CIPL Publishes The Zero Risk Fallacy Paper
On February 20, 2024, The Centre for Information Policy Leadership at Hunton Andrews Kurth LLP and Theodore Christakis, Professor of International, European and Digital Law at University Grenoble Alpes, released a comprehensive study titled The “Zero Risk” Fallacy: International Data…
FTC Proposes Measures to Combat AI Impersonation Threats
The Federal Trade Commission recently announced a public comment period for a supplemental Notice of Proposed Rulemaking that would ban the impersonation of individuals through the use of AI technologies.…
CIPL Publishes Discussion Paper on Data Protection Assessment Requirements Under U.S. State Privacy Laws
The Centre for Information Policy Leadership at Hunton Andrews Kurth LLP recently published a discussion paper on “Comparison of US State Privacy Laws: Data Protection Assessments.” This blog entry provides a summary of the paper and a link to download…
CIPL Releases White Paper on Accountable AI Best Practices
On February 21, 2024, the Centre for Information Policy Leadership at Hunton Andrews Kurth LLP published a white paper on Building Accountable AI Programs: Mapping Emerging Best Practices to the CIPL Accountability Framework. This blog entry discusses the paper and…