Topic: Compliance and risk management
Subscribe to Compliance and risk management RSS feedFor whom the bell tolls: FTC, regulators and private parties are coming for online tracking technologies

HHS: Online trackers without prior authorization and BAAs can violate HIPAA

Another Day, another large BIPA Settlement

OSFI’s Technology and Cyber Risk Management Guideline: Part 1

Practical steps for businesses to comply with Bill C-27: Part 1

The aftermath of an incident – business considerations surrounding record-keeping

TSA Transitions To Results-Based Approach in Revised Pipeline Cybersecurity Directive In Response to Industry Feedback
Bill C-26: a first step at reinforcing Canadian cybersecurity

UK GDPR Reform: government publishes response to consultation – likely to form basis of forthcoming UK Data Reform Bill
The aftermath of an incident – why keeping records of data breaches and privacy incidents matters

Maybe This Time : Federal Government Proposes the American Data Privacy and Protection Act
Another fine for over-retention of data

CPRA Rulemaking Delayed – California Privacy Protection Agency Meets and Previews CPRA Rulemaking Timeline

Rejecting cookies should be as easy as accepting cookies: new sanctions by the French authority (CNIL)
Belgian DPA fines IAB Europe over its consent framework’s GDPR violations

Illinois Supreme Court Rules that Compensation Act is not a bar to BIPA Damages

Privacy legislation reform: Bill 64 has now been passed
Apple iOS 15’s new privacy features that industries should know

UK Government sets out proposals to shake up UK data protection laws

Over-retention of personal data

PIPL: A game changer for companies in China

China passes the Personal Information Protection Law

Top practical tips on the preservation, collection and review of mobile data in investigations.
