GRC & Data Protection updates, news
and tips in our blog.
Filter
By Category
Search
Decoding AI: What is an AI system?
The European Union has introduced the EU Artificial Intelligence Act, a comprehensive law that regulates the use of AI systems in the EU. In this series, ‘Decoding AI: The European Union’s Take on Artificial Intelligence’, we break down everything you need to know about the law for you. Before we dive in, make sure to get your free copy of Palqee’s EU AI Act Framework. The first of its kind ...
Decoding AI: What is the EU AI Act and what are the next steps?
The European Union has introduced the EU Artificial Intelligence Act, a comprehensive law that regulates the use of AI systems in the EU. In this series, ‘Decoding AI: The European Union’s Take on Artificial Intelligence’ ...
The Differences Between Data Controller and Data Processor
Understanding the concept of data controller and data processor is extremely important to determine what are the efforts the organisation will prioritise in order to be compliant with the General Data Protection Regulation (GDPR) ...
What are the GDPR Principles for Processing Personal Data?
Understanding the principles for processing personal data is vital to achieving compliance with different privacy and data protection regulations as the principles set the foundations that organisations should consider when ...
How to manage ongoing Data Protection compliance
Once you assessed the status quo in your company on data protection compliance, the question often arises how to implement a framework that enables you and your colleagues to manage compliance on an ongoing basis ...
6-Step guide to get started with your Data Protection program
Read this guide if you're starting a new data protection management project or want to reassess your company's compliance. If you're looking to implement ongoing data protection management as part of your business ...
What is Personal Data?
It may seem like a simple question with a very simple answer but legally speaking it is not. I am sure you have heard of the General Data Protection Regulation and wondered why it is making so much noise and ...
How to respond to a DSAR or Data Subject Access Request
Data Subject Access requests (DSAR) or Subject Access Requests (SAR) tend to be treated as something companies would rather ignore, until they have no choice. Most organisations will strictly follow the saying ...
The differences between Data Privacy, Data Protection and Data Security
Every organisation must implement a range of methods and procedures to maintain the data's confidentiality, integrity, and accessibility, based on the volume of personal data it processes. This process requires ...
What is a Data Subject Access Request or DSAR?
The UK and EU GDPR states that individuals have the right to access and receive a copy of the personal data and other supplementary information your organisation holds about them and how you use this data ...
ANPD Regulation for Small Data Processing Agents
On Data Protection Day, January 28th, the Brazilian National Data Protection Authority, ANPD, published the Resolution CD/ANPD No. 2/2022 that regulates the application of the Brazilian General Law on Personal Data Protection for small ...
The Hospitality industry and GDPR compliance after the Covid-19 lockdown
The hospitality sector was one of the industries that suffered the most throughout the Covid-19 pandemic. Not only did businesses have to survive through lockdowns and deal with many requirements to be able to ...
What you need to know about China's Personal Information Protection Law
China has joined the list of countries that have a comprehensive privacy law. On November 1st 2021, the Personal Information Privacy Law, or PIPL was enacted, protecting the personal information of people living ...
ICO’s call to tackle ‘cookie fatigue’ unleashes public criticism
The UK’s Data Protection Chief, Elizabeth Denham, recently announced ICO plans for browser-level privacy controls to tackle ‘cookie fatigue’ from countless cookie pop-ups in countries where online tracking needs to be actively ...
The use of U.S. cloud infrastructure providers and GDPR compliance
There is an ongoing discussion on whether or not European companies that use U.S. cloud infrastructure providers, such as AWS and Microsoft Cloud, are compliant with Chapter 5 of the European General Data Protection Regulation (GDPR)...
Does Privacy compliance influence investment decisions into start-ups?
Compliance with data protection regulations such as the European GDPR or the Brazilian LGPD aren’t optional. Every business processing personal data from individuals who are protected by these regulations are legally obliged...
Main things to know about the Virginia Consumer Data Protection Act (CDPA)
The Virginia Consumer Data Protection Act or VCDPA is a new data privacy bill that has passed legislation and which will regulate how personal data can be processed and used by third parties in the state of Virginia in the US...
SME’s struggle the most with data privacy regulations
Small and medium sized enterprises (SME’s) are the backbone of the European economy. They make up 99% of all enterprises (up to 250 employees) and they contribute on average an added value of 56% to the European economy...
Looking ahead: Macro events that will impact the data privacy field in 2021
2020 has been eventful, at least. With a year that has brought a lot of change to many for us, the privacy profession and field has not been spared by it. Quite the opposite. As whole countries went into working-from-home mode ...
Q&A: Data Protection Impact Assessment, or DPIA
If you are part of a business that develops products, services, or that undertakes activities that imply the processing of personal data, you are probably aware that, according to the obligations imposed by the privacy regulations ...
Data Privacy in the era of Smart Homes
Your AI assistant wishes you a good morning, tells you about the weather forecast, any meetings you have for the day and that the bathroom has been heated up to your preferred temperature for your morning shower.
Practical tips for your LGPD compliance plan
With the Brazilian data protection regulation — LGPD — being legally enforced since September 2020, companies that collect and process data from Brazilians, or even just operate in the country ...
Taking customers temperature as COVID-19 prevention: What you need to know
At this point in 2020, thorn between our daily obligations and the COVID-19 outbreak, it’s safe to affirm that we have all been there: 6 feet apart from each other, waiting in a line to get inside the supermarket, ...
LGPD vs. GDPR – Top 10 Main Differences
If your company has relations with partners, suppliers or even has subsidiaries spread over either the European Economic Area or Brazil, bear in mind the need to adapt your business management and stay compliant.
Top 5 steps to get started with GDPR compliance
A research by GDPR.EU found that over 50% of SME’s were still not GDPR compliant. While the GDPR was mostly dreaded by (tech) giants, time has shown that the regulation is much more of a burden for SMEs.
A summary of Trusted Data — A New Framework for Identity and Data Sharing
Trusted Data, by Thomas Hardjono, David L. Shrier and Alex Pentland, introduces a revolutionary architecture and framework to build the Internet of Trusted Data.
Investing in data privacy brings positive returns
As consumers become more aware of the value of their personal data and countries are implementing their version of data privacy regulations.
Data Ethics as a competitive advantage
Why businesses should start implementing data ethics as part of their core values now. Albeit the GDPR was implemented to protect and enforce data privacy.
Decoding AI: What is an AI system?
The European Union has introduced the EU Artificial Intelligence Act, a comprehensive law that regulates the use of AI systems in the EU. In this series, ‘Decoding AI: The European Union’s Take on Artificial Intelligence’ ...
Decoding AI: What is the EU AI Act and what are the next steps?
The European Union has introduced the EU Artificial Intelligence Act, a comprehensive law that regulates the use of AI systems in the EU. In this series, ‘Decoding AI: The European Union’s Take on Artificial Intelligence’ ...
The Differences Between Data Controller and Data Processor
Understanding the concept of data controller and data processor is extremely important to determine what are the efforts the organisation will prioritise in order to be compliant with the General Data Protection Regulation (GDPR) ...
What are the GDPR Principles for Processing Personal Data?
Understanding the principles for processing personal data is vital to achieving compliance with different privacy and data protection regulations as the principles set the foundations that organisations should consider when ...
How to manage ongoing Data Protection compliance
Once you assessed the status quo in your company on data protection compliance, the question often arises how to implement a framework that enables you and your colleagues to manage compliance on an ongoing basis ...
6-Step guide to get started with your Data Protection program
Read this guide if you're starting a new data protection management project or want to reassess your company's compliance. If you're looking to implement ongoing data protection management as part of your business ...
What is Personal Data?
It may seem like a simple question with a very simple answer but legally speaking it is not. I am sure you have heard of the General Data Protection Regulation and wondered why it is making so much noise and ...
How to respond to a DSAR or Data Subject Access Request
Data Subject Access requests (DSAR) or Subject Access Requests (SAR) tend to be treated as something companies would rather ignore, until they have no choice. Most organisations will strictly follow the saying ...
The differences between Data Privacy, Data Protection and Data Security
Every organisation must implement a range of methods and procedures to maintain the data's confidentiality, integrity, and accessibility, based on the volume of personal data it processes. This process requires ...
What is a Data Subject Access Request or DSAR?
The UK and EU GDPR states that individuals have the right to access and receive a copy of the personal data and other supplementary information your organisation holds about them and how you use this data ...
ANPD Regulation for Small Data Processing Agents
On Data Protection Day, January 28th, the Brazilian National Data Protection Authority, ANPD, published the Resolution CD/ANPD No. 2/2022 that regulates the application of the Brazilian General Law on Personal Data Protection for small ...
The Hospitality industry and GDPR compliance after the Covid-19 lockdown
The hospitality sector was one of the industries that suffered the most throughout the Covid-19 pandemic. Not only did businesses have to survive through lockdowns and deal with many requirements to be able to ...
What you need to know about China's Personal Information Protection Law
China has joined the list of countries that have a comprehensive privacy law. On November 1st 2021, the Personal Information Privacy Law, or PIPL was enacted, protecting the personal information of people living ...
ICO’s call to tackle ‘cookie fatigue’ unleashes public criticism
The UK’s Data Protection Chief, Elizabeth Denham, recently announced ICO plans for browser-level privacy controls to tackle ‘cookie fatigue’ from countless cookie pop-ups in countries where online tracking needs to be actively ...
The use of U.S. cloud infrastructure providers and GDPR compliance
There is an ongoing discussion on whether or not European companies that use U.S. cloud infrastructure providers, such as AWS and Microsoft Cloud, are compliant with Chapter 5 of the European General Data Protection Regulation (GDPR)...
Does Privacy compliance influence investment decisions into start-ups?
Compliance with data protection regulations such as the European GDPR or the Brazilian LGPD aren’t optional. Every business processing personal data from individuals who are protected by these regulations are legally obliged...
Main things to know about the Virginia Consumer Data Protection Act (CDPA)
The Virginia Consumer Data Protection Act or VCDPA is a new data privacy bill that has passed legislation and which will regulate how personal data can be processed and used by third parties in the state of Virginia in the US...
SME’s struggle the most with data privacy regulations
Small and medium sized enterprises (SME’s) are the backbone of the European economy. They make up 99% of all enterprises (up to 250 employees) and they contribute on average an added value of 56% to the European economy...
Looking ahead: Macro events that will impact the data privacy field in 2021
2020 has been eventful, at least. With a year that has brought a lot of change to many for us, the privacy profession and field has not been spared by it. Quite the opposite. As whole countries went into working-from-home mode ...
Q&A: Data Protection Impact Assessment, or DPIA
If you are part of a business that develops products, services, or that undertakes activities that imply the processing of personal data, you are probably aware that, according to the obligations imposed by the privacy regulations ...
Data Privacy in the era of Smart Homes
Your AI assistant wishes you a good morning, tells you about the weather forecast, any meetings you have for the day and that the bathroom has been heated up to your preferred temperature for your morning shower.
Practical tips for your LGPD compliance plan
With the Brazilian data protection regulation — LGPD — being legally enforced since September 2020, companies that collect and process data from Brazilians, or even just operate in the country ...
Taking customers temperature as COVID-19 prevention: What you need to know
At this point in 2020, thorn between our daily obligations and the COVID-19 outbreak, it’s safe to affirm that we have all been there: 6 feet apart from each other, waiting in a line to get inside the supermarket, ...
LGPD vs. GDPR – Top 10 Main Differences
If your company has relations with partners, suppliers or even has subsidiaries spread over either the European Economic Area or Brazil, bear in mind the need to adapt your business management and stay compliant.
Top 5 steps to get started with GDPR compliance
A research by GDPR.EU found that over 50% of SME’s were still not GDPR compliant. While the GDPR was mostly dreaded by (tech) giants, time has shown that the regulation is much more of a burden for SMEs.
A summary of Trusted Data — A New Framework for Identity and Data Sharing
Trusted Data, by Thomas Hardjono, David L. Shrier and Alex Pentland, introduces a revolutionary architecture and framework to build the Internet of Trusted Data.
Investing in data privacy brings positive returns
As consumers become more aware of the value of their personal data and countries are implementing their version of data privacy regulations.
Data Ethics as a competitive advantage
Why businesses should start implementing data ethics as part of their core values now. Albeit the GDPR was implemented to protect and enforce data privacy.
Get in Touch
The #1 platform to operationalise GRC & Data Protection.