Privacy Compliance Journey Series: Gap Analysis
How to know what privacy gaps need to be addressed in a privacy programme? This article will provide you an answer highlighting important steps to consider on the way. … Continue reading >
Tag filter: Privacy (22 posts found)

How to know what privacy gaps need to be addressed in a privacy programme? This article will provide you an answer highlighting important steps to consider on the way. … Continue reading >

The Office of the Privacy Commissioner of Canada (OPC) has published the new Privacy Guide for Businesses. The Guide provides the summary of the PIPEDA and an overview of the CASL. It also addresses important points when dealing with data breaches and provides information on how to obtain a meaningful consent. … Continue reading >

Whether you are just starting your privacy programme or you already have it in place, The Privacy Compliance Journey Series will help you build a successful one or give you an idea or two to enhance your existing programme. This article covers three very important elements when starting the privacy programme. … Continue reading >

The Office of the Comptroller (OCC) has issued an $80 million civil penalty against Capital One, N.A., and Capital One Bank (USA), N.A. and mandated them to strengthen their compliance programme by appointing a compliance committee and developing comprehensive action plan to comply with the order. This decision is the result of failing to establish effective risk assessment processes prior to migrating significant information technology operations to the public cloud environment and the bank's failure to correct the deficiencies in a timely manner. In taking this action, the OCC positively considered the bank's customer notification and remediation efforts … Continue reading >

The European Data Protection Board (EDPB) has issued answers to the questions they have received from the EU data protection authorities (DPAs) about the Schrems 2 case. In essence, the EDPB follows the position of the CJEU. If you are still unclear on what to do in the days after the CJEU decision this short summary of the FAQs can help. … Continue reading >