Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

IAPP.org
iapp.org > news > a > defining-regtech

Defining RegTech

5+ day, 7+ hour ago   (157+ words) A look at the evolution of RegTech and how organizations define its role in compliance and risk management. In their 1873 satirical novel, "The Gilded Age," authors Mark Twain and Charles Dudley Warner wrote: "History never repeats itself, but the Kaleidoscopic…...

IAPP.org
iapp.org > resources > article > building-privacy-safe-mcp-servers-what-gdpr-actually-requires

Building privacy-safe MCP servers: What GDPR actually requires

3+ day, 23+ hour ago   (272+ words) While the Model Context Protocol brings powerful AI integration and accountability through detailed audit trails, it also creates significant privacy and GDPR compliance risks, requiring organizations to build subject-access rights, governance controls and legal safeguards into deployments from the outset....

IAPP.org
iapp.org > news > a > patient-rights-and-ai-medical-chatbots-alignment-between-the-gdpr-and-eu-ai-act

Patient rights and AI medical chatbots: Alignment between the GDPR and EU AI Act

1+ week, 3+ day ago   (174+ words) Yet, the regulatory framework governing such online consultation services has become increasingly complex. With the EU General Data Protection Regulation and AI Act enforced concurrently in Europe, the compliance obligations under both laws present a formidable challenge that healthcare institutions…...

IAPP.org
iapp.org > news > a > the-ciso-s-new-privacy-mandate-in-enterprise-ai-governance

The CISO's new privacy mandate in enterprise AI governance

1+ week, 3+ day ago   (620+ words) Enterprise AI is pushing CISOs into a broader privacy role, requiring security leaders to help turn privacy principles into enforceable controls across AI governance, vendor oversight and incident response. The IAPP is policy neutral. We publish contributed opinion pieces to…...

IAPP.org
iapp.org > news > a > thought-for-the-week-ai-enhanced-nation-state-cyber-threats-may-be-systemic

Thought for the week: AI-enhanced nation state cyber threats may be systemic

1+ week, 5+ day ago   (133+ words) The IAPP is policy neutral. We publish contributed opinion pieces to enable our members to hear a broad spectrum of views in our domains. This article is part of an ongoing series that will explore issues or recent developments in…...

IAPP.org
iapp.org > news > a > ai-and-consumer-rights

AI and consumer rights

2+ week, 4+ day ago   (293+ words) While current U.S. state privacy laws give consumers certain rights over personal data and AI-driven decision-making, they generally do not provide a broad right to opt out of AI training. A few things are happening at once. Virtually every company is…...

IAPP.org
iapp.org > resources > article > operational-impacts-cra-product-cybersecurity-market-access-requirement

Top 5 operational impacts of the CRA: Product cybersecurity as a market-access requirement

2+ week, 5+ day ago   (206+ words) The EU Cyber Resilience Act makes cybersecurity compliance a prerequisite for selling connected products in the EU, requiring security-by-design and conformity assessments. This article is part of a series on the operational impacts of the Cyber Resilience Act. The CRA…...

IAPP.org
iapp.org > resources > article > operational-impacts-cyber-resilience-act

Top 5 operational impacts of the CRA

2+ week, 5+ day ago   (121+ words) This series will cover the CRA’s application to products, best practices for reporting vulnerabilities, conducting conformity assessments, managing compliance across other major regulations and more. As organizations prepare for the CRA's requirements to become fully applicable by December 2027, the IAPP…...

IAPP.org
iapp.org > news > a > notes-from-the-iapp-europe-the-eu-s-plan-to-safeguard-its-data-sovereignty

Notes from the IAPP Europe: The EU's plan to safeguard its data sovereignty

3+ week, 2+ day ago   (264+ words) The European Commission consultation on safeguarding EU data sovereignty seeks feedback on challenges EU organizations face when accessing, transferring and protecting data across borders. The IAPP is policy neutral. We publish contributed opinion pieces to enable our members to hear…...

IAPP.org
iapp.org > resources > article > digital-laws-and-governance-around-the-world-brazil

Digital laws and governance around the world: Brazil

3+ week, 2+ day ago   (61+ words) IAPP Vice President and Chief Knowledge Officer CIPP/E, CIPM, CIPT, CDPO/BR, FIP Country Leader, Brazil, IAPP; Managing Partner In this LinkedIn Live, the IAPP's Caitlin Fennessy was joined by Opice Blum's Henrique Fabretti Moraes as they discussed Brazil's…...