GDPR and digital advertising: Strategies and best practices for implementing GDPR compliance

Size: px
Start display at page:

Download "GDPR and digital advertising: Strategies and best practices for implementing GDPR compliance"

Transcription

1 IP, Tech & Data GDPR and digital advertising: Strategies and best practices for implementing GDPR compliance Presented by: Gerard M. Stegmaier, Partner, Washington, D.C. October 17, 2018

2 What is GDPR, and how does it apply to digital advertising? GDPR requires digital advertisers to take measures for collecting, processing, and using personal data for marketing purposes. Key concepts: Data Subject: An identified or identifiable natural person Data Controller: Person or entity that makes decisions about processing personal data Data Processor: Person or entity that processes personal data on behalf of the Data Controller Personal Data: Any information that relates to a Data Subject, including online identifiers and IP addresses 2

3 The long arm of GDPR: extra-territorial application GDPR applies to Data Controllers and Data Processors regardless of whether the processing takes place in the European Union or not. The extra-territorial application of GDPR is triggered when: Goods or services are offered to EU citizens; or The behavior of EU citizens is monitored or tracked through the use of technology. Organizations that do not have an establishment in the EU and that consider themselves to operate outside the scope of EU data protection law are now subject to data protection regulation pursuant to GDPR. 3

4 Territorial application of GDPR GDPR will apply if Art. 3 (1) Art. 3(2) Art. 3(2) Data controller or data processor is established in the EU Irrelevant on which territory personal data is actually processed Data Controller / Data Processor Data controller or data processor is not established in the EU Data subject is in the EU; and Goods or services are offered to data subjects the EU Data Subject Data controller or data processor is not established in the EU Data subject is in the EU; and Data subject s behavior in the EU is being monitored. Data Processor 4

5 What authorities want to see as a minimum Determination of territorial scope Register of processing activities Data processor review and international data transfers Data breach preparedness Justification of data processing Transparency and data subject rights Data protection officer / local representative (Red indicates priority) 5

6 Grappling with website and other electronic data collection If advertiser creates and uses a user id for its own purposes, then advertiser is presumed to be a controller of that user id. And, if advertiser combines data associated with the user id across clients and platforms (websites, apps), then company is likely controller of such data. Inform users through privacy policies and cookie policies/cookie consent notifications. Include third-party links. Obtain affirmative consent. Organize and secure collected data. 6

7 Negotiating with clients, vendors, and suppliers Data Processing agreements with clients Manage data flow and relationships, from how data is sourced and collected to how it is utilized If applicable, balance roles and liabilities as Data Processor (for clients) and Data Controller (for vendors and suppliers) Data Processing agreements with IT providers Give clear instructions about treatment of data Address data transfer requirements Consider data security 7

8 Effects on AdTech landscape (So far) Facebook: Changes to Custom Audiences tool Joint Controller Agreement (after ECJ judgment) Google: Limitations to using DoubleClick ID logs in data transfer service (marketers now unable to do cross-platform reporting and measurement) Upcoming Adoption of IAB Transparency and Consent Framework (Consent Management Platform) Concerns about burden-shifting to publishers and website providers 8

9 EU eprivacy regulation (draft) content The eprivacy regulation will provide rules for Processing and storage capabilities of terminal equipment and the collection of information from end-users terminal equipment (i.e. cookies and similar tracking technologies) Website audience measurement OTT services/communications across devices and browsers Electronic direct marketing Territorial scope: similar to GDPR -> will apply to US marketers who interact with EU individuals 9

10 eprivacy regulation: current status of draft EU Commission has released first draft on January 10, 2017 eprivacy regulation was supposed to enter into force in tandem with GDPR by May 25, 2018 Not much has happened in the past 1.5 years IAPP on July 31, 2018: Considering that there must still be a trilogue process and there will likely be a grace period, eprivacy Regulation will likely not enter into force before late 2019/early

11 eprivacy Regulation: consequences for website tracking Cookies and similar technologies will likely require opt-in consent under the eprivacy Regulation What is required until then? Opt-in or opt-out? - German DPAs: Opt-in consent required for profiling and analytics cookies - Other supervisory authorities have not commented yet - Many organizations use flexible consent management tools 11

12 Questions? Gerard M. Stegmaier Partner Washington, D.C Technology Law Dispatch Blog s Breach RespondeRS BreachRespondeRS.com 13

13 ABU DHABI ATHENS AUSTIN BEIJING CENTURY CITY CHICAGO DUBAI FRANKFURT HONG KONG HOUSTON KAZAKHSTAN LONDON LOS ANGELES MIAMI MUNICH NEW YORK PARIS PHILADELPHIA PITTSBURGH PRINCETON RICHMOND SAN FRANCISCO SHANGHAI SILICON VALLEY SINGAPORE TYSONS WASHINGTON, D.C. WILMINGTON is a dynamic international law firm, dedicated to helping clients move their businesses forward. Our belief is that by delivering smarter and more creative legal services, we will not only enrich our clients experiences with us, but also support them in achieving their business goals. Our long-standing relationships, international outlook, and collaborative structure make us the go-to partner for the speedy resolution of complex disputes, transactions, and regulatory matters. For further information, please visit reedsmith.com. This document is not intended to provide legal advice to be used in a specific fact situation; the contents are for informational purposes only. refers to LLP and related entities. LLP 2018 reedsmith.com 13 [Insert > Header and Footer to change footer text] 10/18/2018

HOT TOPICS IN DATA PRIVACY REGULATION IN RUSSIA

HOT TOPICS IN DATA PRIVACY REGULATION IN RUSSIA HOT TOPICS IN DATA PRIVACY REGULATION IN RUSSIA Ksenia Andreeva Anastasia Dergacheva Vasilisa Strizh November 27, 2018 2018 Morgan, Lewis & Bockius 2017 Morgan, Lewis & Bockius Contents News from the Russian

More information

Association of Corporate Counsel

Association of Corporate Counsel Type in document reference # if needed Privacy protection in a Globalized World Association of Corporate Counsel New York, 24 March 2015 1 The plan Bringing out the main cross-border privacy issues for

More information

HOT TOPICS IN DATA PRIVACY REGULATION IN RUSSIA Ksenia Andreeva Anastasia Dergacheva Vasilisa Strizh Brian Zimbler

HOT TOPICS IN DATA PRIVACY REGULATION IN RUSSIA Ksenia Andreeva Anastasia Dergacheva Vasilisa Strizh Brian Zimbler HOT TOPICS IN DATA PRIVACY REGULATION IN RUSSIA Ksenia Andreeva Anastasia Dergacheva Vasilisa Strizh Brian Zimbler November 14, 2017 2017 Morgan, Lewis & Bockius Contents Year in review: new laws, initiatives

More information

GDPR Privacy Webinar. Prioritizing Your Path towards GDPR Compliance Annika Sponselee and Nicole Vreeman 28 February 2018

GDPR Privacy Webinar. Prioritizing Your Path towards GDPR Compliance Annika Sponselee and Nicole Vreeman 28 February 2018 GDPR Privacy Webinar Prioritizing Your Path towards GDPR Compliance Annika Sponselee and Nicole Vreeman 28 February 2018 Prioritizing Your Path to GDPR Compliance Presented by Half-Day Workshops Online

More information

FTC Issues Final Rule Under CAN-SPAM Act Defining Commercial Primary-Purpose s: What it Means for Associations

FTC Issues Final Rule Under CAN-SPAM Act Defining Commercial Primary-Purpose  s: What it Means for Associations February 2005 Bulletin 05-05 If you have questions or would like additional information on the material covered in this Bulletin, please contact one of the authors: Henry A. Hart 202.414.9225 hhart@reedsmith.com

More information

Adtech and GDPR What to consider when choosing your partner

Adtech and GDPR What to consider when choosing your partner Adtech and GDPR What to consider when choosing your partner 1 Agenda What to avoid and What to do Where is Adform on GDPR Posibilities for advertisers 2 This is about GDPR, not the unknown eprivacy update

More information

2018 Morgan, Lewis & Bockius LLP

2018 Morgan, Lewis & Bockius LLP CYBERSECURITY, PERSONAL DATA PROTECTION, AND INTERNET REGULATION IN RUSSIA Ksenia Andreeva, Anastasia Dergacheva, Vasilisa Strizh, Brian Zimbler May 22, 2018 2018 Morgan, Lewis & Bockius LLP Content Data

More information

Getting to Data Nirvana Data lakes and GDPR

Getting to Data Nirvana Data lakes and GDPR Getting to Data Nirvana Data lakes and GDPR A User's guide 1 Hogan Lovells Data lakes and GDPR: A User's guide 3 Copyright 2018. This report is the property of Hogan Lovells and may not be published or

More information

FDA Releases FSMA Final Rule on Accreditation of Third Party Certification Bodies

FDA Releases FSMA Final Rule on Accreditation of Third Party Certification Bodies Hogan Lovells US LLP Columbia Square 555 Thirteenth Street, NW Washington, DC 20004 T +1 202 637 5600 F +1 202 637 5910 www.hoganlovells.com MEMORANDUM From: Joseph A. Levitt Elizabeth Barr Fawell Maile

More information

EU Data Protection Triple Threat for May of 2018 What Inside Counsel Needs to Know

EU Data Protection Triple Threat for May of 2018 What Inside Counsel Needs to Know EU Data Protection Triple Threat for May of 2018 What Inside Counsel Needs to Know The General Data Protection Regulation (GDPR) The eprivacy Regulation (epr) The Network and Information Security Directive

More information

Dealing with Security and Security Breaches

Dealing with Security and Security Breaches BEIJING BRUSSELS CHICAGO DALLAS FRANKFURT GENEVA HONG KONG LONDON LOS ANGELES NEW YORK PALO ALTO SAN FRANCISCO SHANGHAI SINGAPORE SYDNEY TOKYO WASHINGTON, D.C. Dealing with Security and Security Breaches

More information

The Stakes Are Going Up: Hacking and the New Paradigm of Data Breaches

The Stakes Are Going Up: Hacking and the New Paradigm of Data Breaches The Stakes Are Going Up: Hacking and the New Paradigm of Data Breaches Edward McNicholas Global Co-Leader, Privacy, Data Security and Information Law Sidley Austin LLP The cyber threat is one of the most

More information

Latham & Watkins Environment, Land & Resources Department

Latham & Watkins Environment, Land & Resources Department Number 1218 July 21, 2011 Client Alert Latham & Watkins Environment, Land & Resources Department The City of Malibu and the Regional Water Board Reach an Agreement on a Possible Malibu Sewer System The

More information

EU data security and privacy trends

EU data security and privacy trends EU data security and privacy trends Top issues for HR and global mobility 26 29 October 2014 Disclaimer EY refers to the global organization, and may refer to one or more, of the member firms of Ernst

More information

Third-Party Cyber Risk Management Webinar May 23, 2017

Third-Party Cyber Risk Management Webinar May 23, 2017 Third-Party Cyber Risk Management Webinar May 23, 2017 Today s speakers Nikole Davenport Senior Manager Deloitte & Touche LLP Nikole is a senior manager in Deloitte s Cyber Risk Services practice, specializing

More information

Big Data, Big Issues: Global Challenges and Effective Solutions

Big Data, Big Issues: Global Challenges and Effective Solutions Big Data, Big Issues: Global Challenges and Effective Solutions Thomas Obermaier and Jonathan Armstrong SCCE Annual Compliance & Ethics Institute October 7, 2015 Las Vegas What is big data? Big data is

More information

2018 Data Security Incident Response Report Building Cyber Resilience: Compromise Response Intelligence in Action

2018 Data Security Incident Response Report Building Cyber Resilience: Compromise Response Intelligence in Action 2018 Data Security Incident Response Report Building Cyber Resilience: Compromise Response Intelligence in Action April 11, 2018 Contact Information Casie D. Collignon Partner Denver 303.764.4037 ccollignon@bakerlaw.com

More information

BIOEVENTS PRIVACY POLICY

BIOEVENTS PRIVACY POLICY BIOEVENTS PRIVACY POLICY At Bioevents, your privacy is important. Below you will find our privacy policy, which covers all personally identifiable data shared through Bioevents websites. Our privacy policy

More information

THE NEW EU DATA PROTECTION REGULATION: WHAT IS IT AND WHAT DO WE NEED TO DO? KALLIOPI SPYRIDAKI CHIEF PRIVACY STRATEGIST, EUROPE

THE NEW EU DATA PROTECTION REGULATION: WHAT IS IT AND WHAT DO WE NEED TO DO? KALLIOPI SPYRIDAKI CHIEF PRIVACY STRATEGIST, EUROPE THE NEW EU DATA PROTECTION REGULATION: WHAT IS IT AND WHAT DO WE NEED TO DO? KALLIOPI SPYRIDAKI CHIEF PRIVACY STRATEGIST, EUROPE EU DATA PROTECTION REGULATION Kalliopi Spyridaki Chief Privacy Strategist,

More information

THE PLATFORM EQUINIX VISION

THE PLATFORM EQUINIX VISION THE PLATFORM EQUINIX VISION Build Here, and Go Anywhere SUMMARY Key trends are driving the need for a single interconnection platform for digital business On the Equinix global interconnection platform

More information

Forms. GDPR for Zoho Forms

Forms. GDPR for Zoho Forms GDPR for Zoho Forms The What The General Data Protection Regulation (GDPR) is a regulation that empowers the residents of the European Union (EU) with better transparency, access and control of their personal

More information

Legal basis of processing. Place MODE AND PLACE OF PROCESSING THE DATA

Legal basis of processing. Place MODE AND PLACE OF PROCESSING THE DATA Privacy Policy of www.florence-apartments.net This Application collects some Personal Data from its Users. Owner and Data Controller Florence Apartments Sas - via Curtatone, 2-50123 Firenze Owner contact

More information

Do you handle EU residents personal data? The GDPR update is coming May 25, Are you ready?

Do you handle EU residents personal data? The GDPR update is coming May 25, Are you ready? European Union (EU) General Data Protection Regulation (GDPR) Do you handle EU residents personal data? The GDPR update is coming May 25, 2018. Are you ready? What do you need to do? Governance and Accountability

More information

2014 Luxury & Fashion Industry Conference for Multinationals

2014 Luxury & Fashion Industry Conference for Multinationals 2014 Luxury & Fashion Industry Conference for Multinationals Privacy, Data Protection, and the Impact of Social Media and Online Behavioral Advertising on the Industry Anna Gamvros, Hong Kong Francesca

More information

Georgia Institute of Technology EU GDPR Lawful Basis Form

Georgia Institute of Technology EU GDPR Lawful Basis Form Georgia Institute of Technology EU GDPR Lawful Basis Form Introduction Beginning May 25, 2018, some of Georgia Tech s activities will be subject to more stringent regulations governing the use of personal

More information

Contributed by Djingov, Gouginski, Kyutchukov & Velichkov

Contributed by Djingov, Gouginski, Kyutchukov & Velichkov Contributed by Djingov, Gouginski, Kyutchukov & Velichkov General I Data Protection Laws National Legislation General data protection laws The Personal Data Protection Act implemented the Data Protection

More information

EU Data Protection Agreement

EU Data Protection Agreement EU Data Protection Agreement This Data Protection Agreement ("Agreement") is entered into by and between TechTarget, Inc., a Delaware corporation with a principle place of business at 275 Grove Street,

More information

General Data Protection Regulation (GDPR) - A CANDDi perspective

General Data Protection Regulation (GDPR) - A CANDDi perspective General Data Protection Regulation (GDPR) - A CANDDi perspective 1 - Summary With General Data Protection Regulation less than 12 months away there is a legal requirement for all businesses to have taken

More information

GDPR is coming in less than 2 months Are you ready?

GDPR is coming in less than 2 months Are you ready? GDPR is coming in less than 2 months Are you ready? Charles-Albert Helleputte Partner, Brussels +32 2 551 5982 chelleputte@mayerbrown.com 30 March 2018 2 GDPR is everywhere... You were invited by UNICEO

More information

The IBM Platform Computing HPC Cloud Service. Solution Overview

The IBM Platform Computing HPC Cloud Service. Solution Overview The IBM Platform Computing HPC Cloud Service Solution Overview Industry-leading workload management 20 years managing distributed scale-out systems with 2000+ customers in many industries High performance

More information

2. Which personal data is processed by SF Studios and from which source does the personal data originate?

2. Which personal data is processed by SF Studios and from which source does the personal data originate? PRIVACY NOTICE 1. Introduction The protection of the privacy and personal data of our customers, partners and employees is important to us and we work hard to ensure to always process personal data in

More information

Emergency Compliance DG Special Case DAMA INDIANA

Emergency Compliance DG Special Case DAMA INDIANA 1 Emergency Compliance DG Special Case DAMA INDIANA Agenda 2 Overview of full-blown data governance (DG) program Emergency compliance with a specific regulation We'll use GDPR as an example What is GDPR

More information

PRIVACY STATEMENT August 2018

PRIVACY STATEMENT August 2018 PRIVACY STATEMENT August 2018 1 ABOUT GDPR GDPR, or the General Data Protection Regulation is a new set of EU regulations set to come into force, as a replacement to the existing Data Protection Act. It

More information

GDPR Whitepaper for Compliance with the Diocese of Olympia

GDPR Whitepaper for Compliance with the Diocese of Olympia GDPR Whitepaper for Compliance with the Diocese of Olympia 5/15/18 From the Office of the Bishop The Episcopal Diocese Of Olympia 1551 10th 1551 Tenth Avenue East Seattle, Washington 98102 206-325-4200

More information

The EU s proposed new cookie rules 1 : digital advertising, European media, and consumer access to online news, other content and services

The EU s proposed new cookie rules 1 : digital advertising, European media, and consumer access to online news, other content and services Ref. Ares(2018)6600682-20/12/2018 The EU s proposed new cookie rules 1 : digital advertising, European media, and consumer access to online news, other content and services The European Union is currently

More information

THE PLATFORM EQUINIX VISION

THE PLATFORM EQUINIX VISION THE PLATFORM EQUINIX VISION Build Here, and Go Anywhere SUMMARY Key trends are driving the need for a single interconnection platform for digital business On the Equinix global interconnection platform

More information

Impacts of the GDPR in Afnic - Registrar relations: FAQ

Impacts of the GDPR in Afnic - Registrar relations: FAQ Impacts of the GDPR in Afnic - Registrar relations: FAQ Background The adoption of Regulation (Eu) 2016/679 of the European Parliament and of the Council of April 27, 2016 on the protection of natural

More information

Implementing the new GDPR: what does it mean for Universities?

Implementing the new GDPR: what does it mean for Universities? Implementing the new GDPR: what does it mean for Universities? Case study Alumni Portal Cosimo Monda Director - European Centre on Privacy and Cybersecurity Maastricht University Twitter: @ecpcmaastricht

More information

Accelerate GDPR compliance with the Microsoft Cloud

Accelerate GDPR compliance with the Microsoft Cloud Regional Forum on Cybersecurity in the Era of Emerging Technologies & the Second Meeting of the Successful Administrative Practices -2017 Cairo, Egypt 28-29 November 2017 Accelerate GDPR compliance with

More information

SEC Update. SEC issues new interpretive guidance on cybersecurity disclosures. March 5, Overview

SEC Update. SEC issues new interpretive guidance on cybersecurity disclosures. March 5, Overview SEC Update March 5, 2018 This is a commercial communication from Hogan Lovells. See note below. SEC issues new interpretive guidance on cybersecurity disclosures On February 21, the Securities and Exchange

More information

DROPBOX.COM - PRIVACY POLICY

DROPBOX.COM - PRIVACY POLICY Dropbox Privacy Policy Last Modified: October 15, 2012 This Privacy Policy provides our policies and procedures for collecting, using, and disclosing your information. Users can access the Dropbox service

More information

Customer EU Data Processing Addendum

Customer EU Data Processing Addendum From: MailChimp Legal Team To: TC - Info - Heart of the City Subject: MailChimp Data Processing Addendum Date: 10 May 2018 13:15:11 Attachments: ATT00001.png Customer EU Data Processing Addendum This Data

More information

ANGAZA PRIVACY POLICY. Last Modified: May/24/2018

ANGAZA PRIVACY POLICY. Last Modified: May/24/2018 ANGAZA PRIVACY POLICY Last Modified: May/24/2018 Angaza Design Inc. ( Company, we, our, or us ) is committed to protecting your privacy. This Privacy Policy explains how your personal information is collected,

More information

EU GDPR: The General Data Protection Regulation

EU GDPR: The General Data Protection Regulation EU GDPR: The General Data Protection Regulation A Brief Overview Duke Privacy The General Data Protection Regulation Became effective May 25, 2018. Formally codifies privacy as a fundamental right and

More information

Five Ways that Privacy Shield is Different from Safe Harbor and Five Simple Steps Companies Can Take to Prepare for Certification

Five Ways that Privacy Shield is Different from Safe Harbor and Five Simple Steps Companies Can Take to Prepare for Certification July 2016 Follow @Paul_Hastings Five Ways that Privacy Shield is Different from Safe Harbor and Five Simple Steps Companies Can Take to Prepare for Certification By Paul Hastings Global Privacy and Cybersecurity

More information

PRIVACY NOTICE 1. Introduction

PRIVACY NOTICE 1. Introduction PRIVACY NOTICE 1. Introduction The protection of the privacy and personal data of our customers, partners and employees is important to us and we work hard to ensure to always process personal data in

More information

Fluid Metering, Inc. Privacy Policy

Fluid Metering, Inc. Privacy Policy Fluid Metering, Inc. Privacy Policy Your privacy is important to us. This Privacy Policy describes our practices with respect to (i) the personal information we gather on our website (ii) the way we use

More information

VIACOM INC. PRIVACY SHIELD PRIVACY POLICY

VIACOM INC. PRIVACY SHIELD PRIVACY POLICY VIACOM INC. PRIVACY SHIELD PRIVACY POLICY Last Modified and Effective as of October 23, 2017 Viacom respects individuals privacy, and strives to collect, use and disclose personal information in a manner

More information

EU GDPR & ISO Integrated Documentation Toolkit https://advisera.com/eugdpracademy/eu-gdpr-iso integrated-documentation-toolkit

EU GDPR & ISO Integrated Documentation Toolkit https://advisera.com/eugdpracademy/eu-gdpr-iso integrated-documentation-toolkit EU GDPR & https://advisera.com/eugdpracademy/eu-gdpr-iso-27001-integrated-documentation-toolkit Note: The documentation should preferably be implemented in the order in which it is listed here. The order

More information

Preparing for the GDPR

Preparing for the GDPR Preparing for the GDPR 1 February 2018 EXPECT EXCELLENCE DUBLIN BELFAST LONDON NEW YORK SILICON VALLEY arthurcox.com The EU General Data Protection Regulation (known as the GDPR ) will replace the current

More information

Privacy Policy. Optimizely, Inc. 1. Information We Collect

Privacy Policy. Optimizely, Inc. 1. Information We Collect Privacy Policy Posted: Nov. 19, 2015; Effective Date: Nov. 19, 2015 Optimizely, Inc. This privacy policy applies to Optimizely s Virtual Experience website owned and/or operated for Optimizely, Inc., currently

More information

VERSION 1.3 MAY 1, 2018 SNOWFLY PRIVACY POLICY SNOWFLY PERFORMANCE INC. P.O. BOX 95254, SOUTH JORDAN, UT

VERSION 1.3 MAY 1, 2018 SNOWFLY PRIVACY POLICY SNOWFLY PERFORMANCE INC. P.O. BOX 95254, SOUTH JORDAN, UT VERSION 1.3 MAY 1, 2018 SNOWFLY PRIVACY POLICY SNOWFLY PERFORMANCE INC. P.O. BOX 95254, SOUTH JORDAN, UT 84095-9998 SNOWFLY PRIVACY POLICY This Privacy Policy describes Snowfly s practices regarding the

More information

SOC 3 for Security and Availability

SOC 3 for Security and Availability SOC 3 for Security and Availability Independent Practioner s Trust Services Report For the Period October 1, 2015 through September 30, 2016 Independent SOC 3 Report for the Security and Availability Trust

More information

To clarify the types of information we collect upon your permission and the purposes and methods for processing of them;

To clarify the types of information we collect upon your permission and the purposes and methods for processing of them; Piri Privacy Policy Last Updated: 17.05.2018 Hello and Welcome to our Privacy Policy! This Privacy Policy of Piri Yazılım Mühendislik ve Ticaret A.Ş. (We will call it Piri, We or Us in the text from now

More information

February 6th, Data Policy

February 6th, Data Policy February 6th, 2018 Data Policy 1. The protection of personal information (data) of users (data subjects) of the website(s) is very important to Lenzing AG ( Lenzing, us, we ). If Lenzing processes data

More information

Mark Your Calendars: NY Cybersecurity Regulations to Go into Effect

Mark Your Calendars: NY Cybersecurity Regulations to Go into Effect Mark Your Calendars: NY Cybersecurity Regulations to Go into Effect CLIENT ALERT January 25, 2017 Angelo A. Stio III stioa@pepperlaw.com Sharon R. Klein kleins@pepperlaw.com Christopher P. Soper soperc@pepperlaw.com

More information

To help customers achieve GDPR compliance, Freshchat has introduced the following new features:

To help customers achieve GDPR compliance, Freshchat has introduced the following new features: GDPR FAQ Here are some frequently asked questions from Freshchat customers. To save customer time and effort, we ve collated information and instructions on how Freshchat tackles requirements of the GDPR.

More information

CYBER THREATS, ACTIVE DEFENSE, AND THE BUSINESS AND LEGAL IMPACTS. October 20, Robert Silvers

CYBER THREATS, ACTIVE DEFENSE, AND THE BUSINESS AND LEGAL IMPACTS. October 20, Robert Silvers CYBER THREATS, ACTIVE DEFENSE, AND THE BUSINESS AND LEGAL IMPACTS October 20, 2017 Robert Silvers +1 202 551 1216 robertsilvers@paulhastings.com Haiyan Tang +86 21 6103 2722 haiyantang@paulhastings.com

More information

General Data Protection Regulation (GDPR) and the Implications for IT Service Management

General Data Protection Regulation (GDPR) and the Implications for IT Service Management General Data Protection Regulation (GDPR) and the Implications for IT Service Management August 2018 WHITE PAPER GDPR: What is it? The EU General Data Protection Regulation (GDPR) replaces the Data Protection

More information

Google Cloud & the General Data Protection Regulation (GDPR)

Google Cloud & the General Data Protection Regulation (GDPR) Google Cloud & the General Data Protection Regulation (GDPR) INTRODUCTION General Data Protection Regulation (GDPR) On 25 May 2018, the most significant piece of European data protection legislation to

More information

You can find a brief summary of this Privacy Policy in the chart below.

You can find a brief summary of this Privacy Policy in the chart below. In this policy Shine TV Limited with registered office at Shepherds Building Central, Charecroft Way, Shepherds Bush, London, W14 0EE, UK (Company or we) informs you about how we collect, use and disclose

More information

Sword vs. Shield: Using Forensics Pre-Breach in a GDPR World. September 20, 2017

Sword vs. Shield: Using Forensics Pre-Breach in a GDPR World. September 20, 2017 Sword vs. Shield: Using Forensics Pre-Breach in a GDPR World September 20, 2017 The information and opinions expressed by our panelists today are their own, and do not necessarily represent the views of

More information

General Data Protection Regulation April 3, Sarah Ackerman, Managing Director Ross Patz, Consultant

General Data Protection Regulation April 3, Sarah Ackerman, Managing Director Ross Patz, Consultant General Data Protection Regulation April 3, 2018 Sarah Ackerman, Managing Director Ross Patz, Consultant Introductions Sarah Ackerman, CISSP, CISA Managing Director, Cincinnati Responsible for overall

More information

General Data Protection Regulation Frequently Asked Questions (FAQ) General Questions

General Data Protection Regulation Frequently Asked Questions (FAQ) General Questions General Data Protection Regulation Frequently Asked Questions (FAQ) This document addresses some of the frequently asked questions regarding the General Data Protection Regulation (GDPR), which goes into

More information

Platform Privacy Policy (Tier 2)

Platform Privacy Policy (Tier 2) Platform Privacy Policy (Tier 2) Updated: May 24, 2018 Hurify Digital Markets, Inc. ( Hurify ) is committed to protecting your privacy and ensuring you have a positive experience using our products and

More information

Data Processor Agreement

Data Processor Agreement Data Processor Agreement Data Controller: Customer located within the EU (the Data Controller ) and Data Processor: European Representative Company: ONE.COM (B-one FZ-LLC) One.com A/S Reg.no. Reg.no. 19.958

More information

GDPR - Are you ready?

GDPR - Are you ready? GDPR - Are you ready? Anne-Marie Bohan and Michael Finn 24 March 2018 Matheson Ranked Ireland s Most Innovative Law Firm Financial Times 2017 International Firm in the Americas International Tax Review

More information

Privacy Code of Conduct on mhealth apps the role of soft-law in enhancing trust ehealth Week 2016

Privacy Code of Conduct on mhealth apps the role of soft-law in enhancing trust ehealth Week 2016 Privacy Code of Conduct on mhealth apps the role of soft-law in enhancing trust ehealth Week 2016 Pēteris Zilgalvis, J.D., Head of Unit for Health and Well-Being, DG CONNECT Table of Contents 1. Context

More information

Privacy Policy of

Privacy Policy of Privacy Policy of www.bitminutes.com This Application collects some Personal Data from its Users. Owner and Data Controller BitMinutes Inc Owner contact email: privacy@bitminutes.com Types of Data collected

More information

The GDPR Are you ready?

The GDPR Are you ready? The GDPR Are you ready? kpmg.ie The GDPR - Overview The General Data Protection Regulation (GDPR) (Regulation (EU) 2016/679) will come into force from 25th May 2018, replacing the existing data protection

More information

Privacy Shield Policy

Privacy Shield Policy Privacy Shield Policy Catalyst Repository Systems, Inc. (Catalyst) has adopted this Privacy Shield Policy ("Policy") to establish and maintain an adequate level of Personal Data privacy protection. This

More information

Personal Information You Provide When Visiting Danaher Sites

Personal Information You Provide When Visiting Danaher Sites Danaher Online Privacy Policy Effective March 2017 This Online Privacy Notice ( Privacy Policy ) explains how we handle the personal information provided to us on websites, mobile sites, mobile applications,

More information

GDPR Compliant. Privacy Policy. Updated 24/05/2018

GDPR Compliant. Privacy Policy. Updated 24/05/2018 GDPR Compliant Privacy Policy Updated 24/05/2018 Overview This privacy policy is in compliance with the General Data Protection Act which aims to empower all EU citizens data privacy and to reshape the

More information

Data Processing Agreement DPA

Data Processing Agreement DPA Data Processing Agreement DPA between Clinic Org. no. «Controller». and Calpro AS Org. nr. 966 291 281. «Processor» If the parties have executed a Data Management Agreement, the Date Management Agreement

More information

PRIVACY NOTICE Olenex Sarl

PRIVACY NOTICE Olenex Sarl PRIVACY NOTICE Olenex Sarl 5-24-2018 PRIVACY NOTICE GENERAL This Online Privacy Notice ( Notice ) provides you with important information about how Olenex processes your personal data, particularly in

More information

Synchronoss Website Privacy Statement

Synchronoss Website Privacy Statement Synchronoss Website Privacy Statement This website privacy statement ("Privacy Statement") explains how Synchronoss Technologies, Inc. ( Synchronoss, we, us and our ) may collect, use, store and disseminate

More information

Contents. CAMpreq AB General Data Protection Notice

Contents. CAMpreq AB General Data Protection Notice CAMpreq AB General Data Protection Notice Responsible according to the General Data Protection Regulation is: CAMpreq AB Datavägen 23, Box 9123 400 93 Göteborg E-Mail: info@campreq.se Website: www.campreq.se/

More information

BHBIA New Data Protection Rules. Pharma Company Perspective. Guy Murray Director, Market Research & Analytics, GC&BI MR Operations and Compliance, MSD

BHBIA New Data Protection Rules. Pharma Company Perspective. Guy Murray Director, Market Research & Analytics, GC&BI MR Operations and Compliance, MSD BHBIA New Data Protection Rules Pharma Company Perspective Guy Murray Director, Market Research & Analytics, GC&BI MR Operations and Compliance, MSD Pharma Company Perspective Data Controllers Responsibilities

More information

SCALARR PRIVACY POLICY

SCALARR PRIVACY POLICY SCALARR PRIVACY POLICY Updated: May 31, 2018 Scalarr, Inc. ( Scalarr or We ) respect your privacy and is committed to protecting your privacy and ensuring you have a positive experience on our website

More information

GUESTBOOK REWARDS, INC. Privacy Policy

GUESTBOOK REWARDS, INC. Privacy Policy GUESTBOOK REWARDS, INC. Privacy Policy Welcome to The Guestbook and Gopher, the online and mobile services of Guestbook Rewards, Inc. ( The Guestbook, we, or us ). Our Privacy Policy explains how we collect,

More information

IIB s Risk Management and Regulatory Examination / Compliance Seminar

IIB s Risk Management and Regulatory Examination / Compliance Seminar IIB s Risk Management and Regulatory Examination / Compliance Seminar Cybersecurity: Regulatory Developments and Industry Practices Presented at: CUNY Graduate Center October 25, 2016 9:00 a.m. 10:15 a.m.

More information

German Data Processing Addendum MailChimp

German Data Processing Addendum MailChimp Customer EU Data Processing Addendum This Data Processing Addendum ("DPA"), forms part of the Agreement between The Rocket Science Group LLC d/b/a MailChimp ("MailChimp") and CK Coaching Köln ("Customer")

More information

If you have any questions or concerns, please contact us with the information provided in the Contact Information section of this Policy.

If you have any questions or concerns, please contact us with the information provided in the Contact Information section of this Policy. Effective August 1st 2017 Welcome to Moderno Design LP. Your privacy is important to us. Moderno Design LP ("AppsYouLove", "us", "our" or "we") is dedicated to protecting the privacy rights of our users

More information

Privacy Policy of ManualsLib App

Privacy Policy of ManualsLib App Privacy Policy of ManualsLib App This Application collects some Personal Data from its Users. POLICY SUMMARY Personal Data collected for the following purposes and using the following services: Access

More information

One Planet. One Network. Infinite Possibilities.

One Planet. One Network. Infinite Possibilities. One Planet. One Network. Infinite Possibilities. IPv6 in the Global Crossing IP Network May 26, 2005 Ed Bursk, Vice President Government Global Crossing Overview Global Crossing was founded seven years

More information

Data Protection Policy

Data Protection Policy Data Protection Policy Addressing the General Data Protection Regulation (GDPR) 2018 [EU] and the Data Protection Act (DPA) 2018 [UK] For information on this Policy or to request Subject Access please

More information

OnlineNIC PRIVACY Policy

OnlineNIC PRIVACY Policy OnlineNIC PRIVACY Policy ONLINENIC INC (ONLINENIC) TAKES YOUR PRIVACY SERIOUSLY. Our Privacy Policy is intended to describe to you how and what data we collect, and how and why we use your personal data.

More information

Website and Marketing Privacy Policy

Website and Marketing Privacy Policy Website and Marketing Privacy Policy In this policy Endemol Shine UK and its group of companies (Company or we) informs you about how we collect, use and disclose personal data from and about you and your

More information

CEM Benchmarking Privacy Policy

CEM Benchmarking Privacy Policy CEM Benchmarking Privacy Policy Final Draft: 18/05/18 Next Review Date: 22/05/19 Page 1 Contents Page 1 Outline 3 2 Categories of personal data 3 3 Sources of personal data 3 4 Purposes 4 5 Lawful basis

More information

GDPR and DPO. DPO and DPM. Michel Gerdes DPO DFN-CERT Services GmbH DFN-CERT Services GmbH GDPR and DPO: Slide 1

GDPR and DPO. DPO and DPM. Michel Gerdes DPO DFN-CERT Services GmbH DFN-CERT Services GmbH GDPR and DPO: Slide 1 GDPR and DPO DPO and DPM Michel Gerdes DPO DFN-CERT Services GmbH 27.09.2017 2017 DFN-CERT Services GmbH GDPR and DPO: Slide 1 ToC The DPO Role according to GDPR Data Protection at research institutions

More information

Down Under Centre Employment Hub - Privacy Policy Introduction

Down Under Centre Employment Hub - Privacy Policy Introduction Down Under Centre Employment Hub - Privacy Policy Introduction Your Privacy is of the utmost importance, we are therefore committed to safeguarding your personal information. That starts with helping you

More information

PRIVACY COMMITMENT. Information We Collect and How We Use It. Effective Date: July 2, 2018

PRIVACY COMMITMENT. Information We Collect and How We Use It. Effective Date: July 2, 2018 Effective Date: July 2, 2018 PRIVACY COMMITMENT Protecting your privacy is very important to Prosci and this privacy policy is our way of providing you with details about the types of information we collect

More information

Technology and data privacy Global perspectives

Technology and data privacy Global perspectives Technology and data privacy Global perspectives Anna Gamvros, Partner, Hong Kong Barbara Li, Partner, Beijing Ryan Berger, Partner, Vancouver 13 September 2018 Agenda Asia privacy developments HK and China

More information

GDPR: A QUICK OVERVIEW

GDPR: A QUICK OVERVIEW GDPR: A QUICK OVERVIEW 2018 Get ready now. 29 June 2017 Presenters Charles Barley Director, Risk Advisory Services Charles Barley, Jr. is responsible for the delivery of governance, risk and compliance

More information

Plan a Pragmatic Approach to the new EU Data Privacy Regulation

Plan a Pragmatic Approach to the new EU Data Privacy Regulation AmChamDenmark event: EU Compliant & Cyber Resistant Plan a Pragmatic Approach to the new EU Data Privacy Regulation Janus Friis Bindslev, Partner Cyber Risk Services, Deloitte 4 February 2016 Agenda General

More information

The following regulations inform you about the nature and scope of the personal data we collect, process, and use and for what purpose.

The following regulations inform you about the nature and scope of the personal data we collect, process, and use and for what purpose. Privacy Policy for Keyline MIS Protecting your privacy and personal data is important to us and is our highest priority. Therefore, we would like to explain how and when we store your personal data. The

More information

Cisco Spark and GDPR. Thomas Flambeaux. Collaboration Consulting Solution Engineer, Security and Compliance. Cisco Connect 2018 Copenhagen April 12th

Cisco Spark and GDPR. Thomas Flambeaux. Collaboration Consulting Solution Engineer, Security and Compliance. Cisco Connect 2018 Copenhagen April 12th Cisco Spark and GDPR Thomas Flambeaux Collaboration Consulting Solution Engineer, Security and Compliance Cisco Connect 2018 Copenhagen April 12th 2015 Cisco and/or its affiliates. All rights reserved.

More information

Effective October 31, Privacy Policy

Effective October 31, Privacy Policy Privacy Policy The nic.gop website is operated by Republican State Leadership Committee, Inc. ( Team.gop, we or us ). This Privacy Policy applies to nic.gop and any other website offered by Team.gop, which

More information

etouches, Inc. Privacy Policy

etouches, Inc. Privacy Policy etouches, Inc. Privacy Policy Effective Date: March 1, 2017 This privacy policy applies to etouches, Inc. ( etouches ) and covers the site, www.etouches.com corporate site and application(s) accessed via

More information

In Accountable IoT We Trust

In Accountable IoT We Trust In Accountable IoT We Trust AIOTI WG3 Security & Privacy-in-IoT Taskforces, and H2020 CSA CREATE-IoT & LSPs AG Trust in IoT Arthur van der Wees Managing Director Arthur s Legal, the global tech-by-design

More information