Our Blog

Insights

RESULTS FOR: Data Privacy

New EU-U.S. Data Privacy Framework Legalizes Personal Data Transfers from the EU to US

August 1, 2023 | Privacy

What happened?

On July 10, 2023, the European Commission announced that it had adopted its adequacy decision for the EU-U.S. Data Privacy Framework (EU-U.S. DPF). This long-awaited decision means that for the first time since the EU-U.S Privacy Shield was invalidated nearly three years ago (and other transfer mechanisms were called into question), there is a clearly established mechanism to transfer personal data from the EU to U.S. companies in compliance with the EU’s General Data Protection Regulation (GDPR).… Read More

Lines of Authority: The Critical Need for Role Clarity in Information Security Compliance

July 19, 2023 | Compliance Risk + Compliance

Clearly defined roles and responsibilities are an essential component of an effective compliance program. Failure to adequately assign responsibility can lead to gaps in compliance coverage and a lack of accountability.

In a recent NAVEX survey 76% of the respondents indicated that the compliance function in their infosec compliance group is not an independent Compliance department reporting to the chief executive officer or board of directors (for instance, it reports up through IT/data security/data privacy, Legal or Human Resources).

When … Read More

  • 1