Data Privacy Highlights: May 29

Data Privacy Highlights: May 29

This Week in Data Privacy, we're covering a variety of topics, including...

?? Evolving COPPA: Expanding Protections for Teens?

?? What You Need to Know About the Colorado AI Act

???? California Judge Dismisses Consumer-Privacy Lawsuit Against OpenAI and Microsoft

?? Minnesota Passes Consumer Data Privacy Law

?? NYDFS Issues Cybersecurity Compliance Template for Small Businesses

?? FCC Proposes AI Disclosure in Political Ads

?? Strategies for Minimizing Risks in Vendor Relationships

?? How marketers are adapting to the new realities of data privacy

and...

?? Privacy and Security Defenses for Cloud Software w/ Michael Moore

———

Evolving COPPA: Expanding Protections for Teens

For over 25 years, the Children’s Online Privacy Protection Act (COPPA) has safeguarded U.S. children's data. Despite updates, gaps remain. The FTC proposes COPPA Rule updates, and policymakers like Sen. Ed Markey push for COPPA 2.0 to extend protections to teens. This includes teens' consent for data collection, banning targeted ads, and introducing an "eraser button" for data deletion. Meanwhile, the American Privacy Rights Act (APRA) adds complexity with differing protections.

Read the full article?here .?

What You Need to Know About the Colorado AI Act

This month, Colorado enacted several new privacy and AI laws, including the pioneering Colorado AI Act, a first-of-its-kind cross-sectoral AI governance law covering the public sector. Signed by Gov. Jared Polis, the Act's key provisions take effect in February 2026, though revisions are anticipated. This law addresses high-risk AI systems, focusing on automated decision-making and algorithmic discrimination, and imposes duties on developers and deployers to ensure transparency and accountability. Violations could result in significant penalties, marking a significant step forward in consumer protection.

Read the full article?here .?

California Judge Dismisses Consumer-Privacy Lawsuit Against OpenAI and Microsoft

A California federal judge dismissed a class-action lawsuit alleging OpenAI and Microsoft used stolen personal data to train AI systems like ChatGPT. Judge Chhabria cited the complaint's excessive length and irrelevant content, urging plaintiffs to file an amended version. The plaintiffs' attorney plans to amend concisely. OpenAI and Microsoft haven't commented. The case highlights ongoing concerns over AI and data usage, with other copyright owners also suing tech giants. While acknowledging societal concerns, the judge emphasized the need for legal precision. Stay tuned for updates on this evolving legal landscape.

Read the full article?here .

Minnesota Passes Consumer Data Privacy Law

On May 19, 2024, Minnesota passed the MCDPA, set to be law by July 31, 2025. Apply if you've handled data from over 100,000 Minnesota consumers or 25,000 with 25% revenue from data sales. Exemptions include certain entities like financial institutions. Controllers must ensure data minimization, security, and provide clear privacy notices. Consumers gain rights like data access, correction, deletion, and opt-outs. Sensitive data includes health, biometric, and child info.?

Read the full article?here .

NYDFS Issues Cybersecurity Compliance Template for Small Businesses

The New York State Department of Financial Services (NYDFS) released a compliance template to help small businesses adhere to its cybersecurity regulations. Initially set in 2017 and amended in 2023, these rules mandate financial institutions to enhance risk assessments and governance. The template guides businesses in creating cybersecurity programs, conducting risk assessments, managing third-party provider security, and complying with reporting obligations. It targets entities with fewer than 20 employees or independent contractors, less than $7.5 million in New York revenue, or under $15 million in total assets.

Read the full article?here .

FCC Proposes AI Disclosure in Political Ads

FCC Chair Jessica Rosenworcel seeks to mandate disclosure of AI-generated content in political ads on radio and TV, addressing concerns of misleading information ahead of elections. The proposed rule covers candidate and issue advertisements, requiring both on-air and written disclosures. While the FCC lacks authority over internet and social media ads, it aims to combat deceptive AI use in political communications. The move follows previous actions against misleading AI in robocalls. With AI's increasing role in political messaging, transparency becomes crucial for informed decision-making. Stay informed about evolving regulations shaping political advertising. Read the full article?here .?

Strategies for Minimizing Risks in Vendor Relationships

In today’s data-driven world, managing vendor relationships is crucial for safeguarding company and consumer data. Here are five key strategies to minimize risks:

Establish Internal Data Governance

  • Implement accurate data quality measures.
  • Assign data stewardship roles.
  • Uphold security and compliance standards.
  • Develop comprehensive data management processes.

Identify Potential Vendor Risks

  • Determine applicable data privacy laws.
  • Define specific compliance requirements for vendors.
  • Ensure vendors meet industry-specific standards.

Assess Vendor Risk Levels

  • Conduct thorough vetting and due diligence.
  • Perform standardized vendor risk assessments.
  • Involve multiple departments for comprehensive evaluations.

Mitigate Vendor Risk

  • Establish data processing agreements.
  • Outline vendor obligations for data protection.
  • Ensure compliance with data security standards.

Plan for Off-boarding

  • Develop procedures for terminating vendor access.
  • Update internal policies and data mapping.
  • Communicate changes across relevant teams.

By following these steps, businesses can effectively manage vendor risks and protect their valuable data. Read the full article?here .

How Marketers are Adapting to New Data Privacy Realities

As of May 2024, 17 U.S. states have enacted data privacy laws, creating a fragmented regulatory landscape for marketers. With California’s CCPA in its fourth year and more states following suit, the risk of fines has escalated, making data privacy a top trend. Marketers now prioritize transparency, compliance, and ethical data practices, elevating privacy experts to key roles. Emphasizing trust and privacy, they partner with reliable data providers and adopt clear disclosure policies. This proactive approach not only mitigates risks but also strengthens consumer trust in an evolving data-driven market.

Read full article?from Digiday here .?

Privacy and Security Defenses for Cloud Software w/ Michael Moore

In this episode of the She Said Privacy/He Said Security Podcast, Jodi and Justin Daniels are joined by Michael Moore , the Chief Privacy Officer at Lacework , to discuss security and privacy for the cloud. They discuss the modern concerns, how Lacework helps companies, the increasing threats companies face, and Michael’s personal privacy tips for anyone and everyone.

Here’s a glimpse of what you’ll learn:

  • Michael Moore’s introduction to patent law and security
  • What is Lacework, and what problems does it solve?
  • How privacy plays a unique role in Lacework’s approach to cloud security
  • Advice for companies dealing with increasing privacy and security threats
  • Michael’s best personal privacy tip

Listen to the full podcast?here .?

Jamal Ahmed

Award Winning Global Privacy Expert, Speaker & Media Commentator | Bestselling Author, Podcast Host & Career Coach | I Help Mid Career Professionals Become Confident, Capable & Credible World-Class Privacy Experts

5 个月

It's encouraging to see steps such as the evolving COPPA and new state laws being taken.?It's evident that more comprehensive measures are being implemented, which is a positive sign for us all.? How do you think we as individuals and businesses can proactively contribute to enhancing data privacy for our youth?

回复
Dominic Vogel

I save companies from evil cyber villains | Bridging humanity and technology | The hype person YOU need in your life | High ENERGY speaker!!!

5 个月

Jodi!!! I FREAKING LOVE this post!!!!!!!!! Your ability to simplify complex concepts is an absolute game-changer!!!!!!! Your dedication to sharing knowledge and empowering others is truly inspiring!!!!!!!!!

回复

要查看或添加评论,请登录

Jodi Daniels的更多文章

  • Data Privacy Highlights: November 13, 2024

    Data Privacy Highlights: November 13, 2024

    This week in data privacy we are covering: ???????? UK and US Team Up for Stronger Children’s Privacy Online ?? Texas…

    6 条评论
  • This Week in Data Privacy

    This Week in Data Privacy

    ?? Pinterest Under Fire for Alleged GDPR Violations in EU Privacy Complaint ?? LinkedIn’s €310M GDPR Fine: Key…

    3 条评论
  • Data Privacy Highlights: October 16, 2024

    Data Privacy Highlights: October 16, 2024

    ?? Americans Score Low on Digital Privacy Knowledge ?? LinkedIn Pauses AI Data Training on Hong Kong Users Following…

    11 条评论
  • Data Privacy Highlights: October 2, 2024

    Data Privacy Highlights: October 2, 2024

    ?? California Passes Law to Protect Consumer Brain Data ?? California Passes Car Data Privacy Law to Protect Domestic…

    13 条评论
  • Data Privacy Highlights: September 18, 2024

    Data Privacy Highlights: September 18, 2024

    ?? Apple’s iOS 18 Update: What You Need to Know ??? Privacy By Design: Essential for Modern Product Development ?? Meta…

    4 条评论
  • Data Privacy Highlights: September 4, 2024

    Data Privacy Highlights: September 4, 2024

    This week in privacy we are covering..

    8 条评论
  • Data Privacy Highlights: August 21, 2024

    Data Privacy Highlights: August 21, 2024

    In this week's data privacy highlights we're covering: ?? Illinois' Biometric Law: What It Means for Employers ?? UN…

    13 条评论
  • Data Privacy Highlights: August 7, 2024

    Data Privacy Highlights: August 7, 2024

    This week in data privacy we are covering: ?? US Sues TikTok Over 'Massive-Scale' Privacy Violations of Kids Under 13…

    8 条评论
  • Data Privacy Highlights: July 24, 2024

    Data Privacy Highlights: July 24, 2024

    This week in data privacy we are covering..

  • Data Privacy Highlights: July 10

    Data Privacy Highlights: July 10

    Welcome to this week's privacy update! We've got some significant developments to cover, from Delaware's proactive…

    12 条评论

社区洞察

其他会员也浏览了