Privacy Transformation - Issue 72

PRIVACY

Warning of impact of Schrems II ruling on Irish economy

Warning of impact of Schrems II ruling on Irish economy

Business group Ibec has warned that the recent ruling on the transfer of data from Europe to the United States that invalidates the Privacy Shield agreement, will have a “significant negative impact on the Irish economy”.

Revamped EU data transfer tool may be ready by Christmas

Revamped EU data transfer tool may be ready by Christmas

A revised mechanism allowing companies to transfer Europeans' data around the world may be ready before Christmas, the EU's digital chief said on Wednesday, in a move aimed at ending the legal uncertainty triggered by a EU court ruling in July.

Civil liberties group 'deeply concerned' at Data Protection Commission's handling of big tech companies

Civil liberties group 'deeply concerned' at Data Protection Commission's handling of big tech companies

One of Ireland’s most prominent civil advocacy groups has launched a stinging attack on the Office of the Data Protection Commission in a letter to the Minister for Justice, questioning the Commission’s ability to successfully advance “urgent investigations”.

Council halts roll out of extra CCTV in Limerick

Council halts roll out of extra CCTV in Limerick

Limerick City and County Council will not be expanding its network of CCTV cameras in the absence of long-term funding, it has been confirmed.

U.S. Government issues white paper regarding EU-U.S. personal data

U.S. Government issues white paper regarding EU-U.S. personal data

The U.S. Department of Commerce, Department of Justice, and the Office of the Director of National Intelligence jointly issued a White Paper containing information about privacy protections under U.S. law for national security access, with a particular focus on the issues raised by the Court of Justice of the European Union (CJEU) in its Schrems II decision.

The Whitepaper can be found here.

Open letter from UK Information Commissioner  - ICO's regulatory approach during the pandemic

The UK Information Commissioner has issued an open letter outlining her offices regulatory approach during COVID-19.

SURVEY: The challenges faced by SMEs in their efforts to comply with the GDPR

SURVEY: The challenges faced by SMEs in their efforts to comply with the GDPR

Calling all SMEs. Checkout our Survey on the challenges faced by SMEs in their efforts to comply with the GDPR. The purpose of this survey is to gain insights into the way in which Data Protection is incorporated into the daily workings of small to medium enterprises across Europe.

The Craotian and Irish Data Protection Authorities are involved in this EU-funded project.

The survey can be found here.

SECURITY & TECH

Shirking from home? Staff feel the heat as bosses ramp up remote surveillance

Shirking from home? Staff feel the heat as bosses ramp up remote surveillance

As the Covid crisis continues, and more and more employers postpone or cancel plans for a return to the office, some managers are deploying increasing levels of surveillance in an attempt to recreate the oversight of the office at home.

Singapore in world first for facial verification

Singapore in world first for facial verification

Singapore will be the first country in the world to use facial verification in its national identity scheme. The biometric check will give Singaporeans secure access to both private and government services.

DATA BREACH

Revenue made 93 data breaches last year 

Revenue made 93 data breaches last year

Revenue had 93 data breaches in 2019 and 91 in the first eight months of this year, according to information obtained under the Freedom of Information Act.

Public Health Wales statement on Covid Test Results Data breach

Public Health Wales regrets to announce that there has been a data breach involving the personally identifiable data of Welsh residents who have tested positive for COVID-19.

ENFORCEMENT

35 Million Euro fine imposed on H&M for profiling sensitive data of employees

The fashion retailer, with a service centre in Germany, since 2014 had been comprehensively recording the private life circumstances of some of its employees. In one example, the company conducted a "Welcome Back Talk" after employees returned to work after vacation or illness. The information that was collected in this context included information on the symptoms of illness and diagnoses of the employees. Additionally, personal information such as family problems and religious beliefs were added to a profile which was available to a smany as 50 managers.

*Note: story is in German.

More on the latest GDPR enforcement news can be found on:

enforcementtracker.com

GUIDANCE

ICO launches consultation on draft Statutory guidance

ICO launches consultation on draft Statutory guidance

The ICO has launched a public consultation on its draft Statutory guidance, which details how it will regulate and enforce data protection legislation in the UK.

Brexit Readiness Action Plan

The Irish Government has published their Brexit Readiness Action Plan, including guidance on issues related to data transfers.