Welcome to Our Newsletter- August edition

Welcome to Our Newsletter- August edition

In this edition of our data protection newsletter, gain insights into the UAE’s evolving data protection landscape, the upcoming EU AI Act, and key developments in privacy practices that could impact your organisation. Also, read about the news on tech giants #X (formerly Twitter) and #microsoft.


Understanding the New Data Protection Changes in the UAE: Essential Insights for Organisations?

As data protection continues to evolve rapidly across the Middle East, organisations in the UAE must prepare for significant updates that could affect their operations. With Saudi Arabia's Personal Data Protection Law (PDPL) set to be enforced on 13th September 2024, businesses must start their compliance efforts now.

?

Key Developments

The UAE is witnessing a shift towards more robust data protection measures that align with international standards. Here are some essential insights for organisations to consider:?

  • Compliance Framework: Businesses need to develop a comprehensive compliance framework that addresses data collection, processing, and storage.?

  • Staff Education: Training programs should be implemented to ensure all employees understand their roles and responsibilities regarding data protection.?

  • Appointing a Data Protection Officer (DPO): Consider appointing a DPO to oversee compliance efforts and serve as a point of contact for data protection inquiries.?


See the FULL list of action plans below for UAE businesses to comply with UAE PDPL:


Action plan for UAE businesses to adhere to UAE PDPL: 

1.Educate leadership staff
2.Conduct a Data Audit
3.Review Records 
 Management
4.draft clear 
privacy notices
5.eSTABLISH PROCEDURES FOR SUBJECTS’ RIGHTS
6.APPOINT DATA PROTECTION OFFICER
7. enhance security 
policies
Read the full article here:

Navigating the EU AI Act: Key Insights for Organisations

Effective August 1st, 2024, the EU AI Act introduces new regulations for artificial intelligence across Europe, promoting responsible AI development while protecting public health, safety, and fundamental rights.?


Key Insights?

1. Risk-Based Categorisation: AI systems are classified into four risk levels, each with specific requirements:?

  • Unacceptable Risk: Prohibited applications.?
  • High Risk: Subject to strict compliance requirements.?
  • Limited Risk: Transparency obligations.?
  • Minimal Risk: Few regulations.?

2. Transparency: Organisations must communicate clearly about using AI systems and their impact on users.?

?

Best Practices?

  • Conduct Risk Assessments: Regularly evaluate AI systems for compliance with the Act.?
  • Document Processes: Maintain precise records of AI system development and deployment.?
  • Engage Legal Experts: Consult with legal professionals for tailored advice on compliance. Organisations must stay informed and prepared as this regulatory framework comes into effect. Get detailed insights on the key regulations, risk levels, compliance requirements, enforcement timelines, banned applications, best practices for data compliance, areas where organisations may need support, and a strategy ahead to help you navigate this new regulatory landscape.?


As this regulatory framework comes into effect, it’s vital for organisations to stay informed and prepared.


Visit TenIntelligence website to Read the FULL article. Get detailed insights on the key regulations, risk levels, compliance requirements, enforcement timelines, banned applications, best practices for data compliance, areas where organisations may need support, and a strategy ahead to help you navigate this new regulatory landscape.?


How to comply with the EU AI ACT as a business?

Risk Assessment 
and Classification
Compliance Documentation
Training and Awareness
Legal and Strategic Guidance
Innovative Testing
Read the full article here:



??Spotlight on Recent Events:

The Importance of Privacy Frameworks

1. Privacy Complaint Filed Against X’s AI Use?

On 5 August, a privacy complaint was lodged against X, accusing the platform of violating GDPR by using personal data for AI training without clear justification. Filed by Euro consumers, the complaint highlights the lack of transparency in X’s privacy policy, making it difficult for users to understand how their data is being used.?


Key Takeaway

  • Buried Information: Crucial details about data use are often hidden in secondary links, raising concerns about user awareness.?
  • Regulatory Review: The Irish Data Protection Commission, which oversees X's EU operations, is currently reviewing the case.?

The outcome of this case could significantly impact how major tech companies handle data in the EU and set a precedent for future privacy regulations.?



2. The Microsoft Global Outage

Recently, Microsoft experienced a global outage affecting services like Outlook and Minecraft due to a cyber-attack, lasting nearly 10 hours and impacting thousands of users worldwide. Another major outage disrupted 8.5 million devices across critical sectors, including healthcare and travel, due to a software update error.?

?

??Key Takeaway

As we experience an increasingly digital world, it’s essential for individuals and organisations to review and strengthen their privacy practices, ensuring that our information remains secure and accessible even in challenging situations.?



Stay informed and proactive in your data protection efforts with TenIntelligence . If you have any questions, please submit your query here.


Until next time,

Lynsey Hanson | Global Data Protection Officer


要查看或添加评论,请登录