British Airways Faces Significantly Reduced £20M Fine for GDPR Breach

Share

At £20 million, the fine imposed on British Airways for its infringement of the General Data Protection Regulation is the biggest fine of its kind in the history of the U.K.’s Information Commissioner’s Office (ICO). Whilst markedly lower than the fine initially proposed, the process by which the revised figure was reached provides some interesting insights on the factors that regulators will take into account and is a clear sign that despite the current economic climate, the ICO is not afraid to enforce strict GDPR compliance.

For the full alert, visit the Faegre Drinker website.

But Wait, There Really Is More: California AG Releases New Proposed Modifications to the Final CCPA Regulations

Share

Throwing covered businesses a bit of a curveball, the California attorney general issued a third set of proposed changes to the formerly assumed “final” CCPA implementing regulations. Fortunately for those overseeing CCPA compliance, the revisions are largely clarifications of the existing regulations rather than fundamental changes. Interested stakeholders have until 5:00 p.m. Pacific Time on Wednesday, October 28, to submit comments.

For the full alert, visit the Faegre Drinker website.

Faegre Drinker on Law and Technology Podcast: The Internet of Things

Share

In the latest episode of the Faegre Drinker on Law and Technology Podcast, Faegre Drinker Counsel Jason G. Weiss and Partner Laura Phillips discuss the growth and evolution of the Internet of Things (IoT). In particular, they dive into the countless devices and use cases that make up the IoT universe, the regulatory issues that accompany commercial applications of IoT technology in the U.S., and the challenges of navigating the patchwork, ad hoc policies and regulations that currently govern this emerging space.

Continue reading “Faegre Drinker on Law and Technology Podcast: The Internet of Things”

Community Health Systems Enters Into Five-Million-Dollar, Multi-State Settlement Agreement in Connection with 2014 Data Breach

Share

On October 8, 2020, Community Health Systems, Inc. (Community Health) and its subsidiary CHSPSC, LLC entered into a settlement agreement with 28 states for $5 million to resolve claims related to a 2014 data breach. Community Health owns over 200 hospitals across the United States and is one of the largest hospital networks in the country. The multi-state settlement follows a separate $2.3 million settlement that Community Health reached with the U.S. Department of Health and Human Services Office for Civil Rights (HHS-OCR) in connection with the same data breach.

Continue reading “Community Health Systems Enters Into Five-Million-Dollar, Multi-State Settlement Agreement in Connection with 2014 Data Breach”

Ransomware Payments May Violate Sanctions Laws, U.S. Treasury Department Warns

Share

Ransomware attacks are on the rise in the wake of COVID-19, but attack victims — and third parties who assist them — could unknowingly be in violation of federal law. A new advisory from the U.S. Department of the Treasury warns that ransom payments to sanctioned individuals or entities may result in significant criminal or civil liability. Companies should closely review the details of this advisory to minimize the risk of violating the U.S. sanctions laws if they are victimized by a ransomware attack.

For the full alert, visit the Faegre Drinker website.

It’s Finally Final… But Wait, There’s More: Fall 2020 California Privacy Update

Share

Businesses nationwide finally have clarity on their compliance obligations under the California Consumer Privacy Act (CCPA), as the landmark privacy law’s implementing regulations were finalized in August after a few last changes worth noting, and the Governor just signed two important CCPA amendments. With enforcement underway, business leaders should continue to focus on compliance — while also monitoring the progress of the California Privacy Rights and Enforcement Act, a 2020 ballot initiative that could soon become the next sweeping privacy law.

For the full alert, visit the Faegre Drinker website.

©2025 Faegre Drinker Biddle & Reath LLP. All Rights Reserved. Attorney Advertising.
Privacy Policy