Cyber Monday Deal: Up to 60% off InvestingProCLAIM SALE

EU set to agree new data privacy law with stiff penalties

Published 14/12/2015, 19:13
© Reuters. A magnifying glass is held in front of a computer screen in this picture illustration taken in Berlin
GOOGL
-
META
-

By Julia Fioretti

BRUSSELS (Reuters) - A sweeping reform of fragmented laws governing the uses of personal data set to be agreed by the European Union on Tuesday will force companies to report privacy breaches to authorities or face stiff sanctions.

EU governments and members of the European Parliament are expected to agree the new data protection law, which would replace a patchwork of 28 different laws and give regulators greater enforcement powers.

A problem with current laws, which date back to the 1990s, is that regulators can only levy fines which are puny in comparison to the revenues of the companies involved. Some privacy watchdogs do not even have that power.

The threat of sanctions of 4 or 5 percent of global revenues, depending on the outcome of Tuesday's negotiations, should make businesses more mindful of data protection, lawyers and privacy activists say.

However the new law aims to make doing business across the EU easier by subjecting companies to just one regulator, in whatever country they have their European headquarters.

The so-called one-stop-shop system seeks to prevent companies from having to deal with a different regulator in each country where they operate, a particular headache for the likes of Google (O:GOOGL) and Facebook (O:FB).

The problem has been highlighted by Facebook's spat with the Belgian Privacy Commission, which sued the company even though Facebook argues it should only be regulated by the authority in Ireland, where it has its European headquarters.

The law will bring in strict requirements that national authorities be alerted within 72 hours of when data breaches occur, an issue highlighted by leaks of customer information at British telecom operator TalkTalk over the past year.

Companies will also have to inform their customers of data breaches as soon as possible.

The lack of reported big data breaches in Europe has bred widescale disregard for the everyday threats facing consumers and businesses, say cybersecurity, legal and policy experts.

    For while headline-grabbing cyber attacks in the United States have become commonplace, the risks of stolen customer data in Europe may be similar, although far less seldom reported, because of a patchwork of outdated regulation.

© Reuters. A magnifying glass is held in front of a computer screen in this picture illustration taken in Berlin

"It is believed that many breached organisations are not currently disclosing breaches so the new directive will force the hand of organisations," said Jeremy King, international director at payments security trade group PCI Security Standards Council.

Latest comments

Risk Disclosure: Trading in financial instruments and/or cryptocurrencies involves high risks including the risk of losing some, or all, of your investment amount, and may not be suitable for all investors. Prices of cryptocurrencies are extremely volatile and may be affected by external factors such as financial, regulatory or political events. Trading on margin increases the financial risks.
Before deciding to trade in financial instrument or cryptocurrencies you should be fully informed of the risks and costs associated with trading the financial markets, carefully consider your investment objectives, level of experience, and risk appetite, and seek professional advice where needed.
Fusion Media would like to remind you that the data contained in this website is not necessarily real-time nor accurate. The data and prices on the website are not necessarily provided by any market or exchange, but may be provided by market makers, and so prices may not be accurate and may differ from the actual price at any given market, meaning prices are indicative and not appropriate for trading purposes. Fusion Media and any provider of the data contained in this website will not accept liability for any loss or damage as a result of your trading, or your reliance on the information contained within this website.
It is prohibited to use, store, reproduce, display, modify, transmit or distribute the data contained in this website without the explicit prior written permission of Fusion Media and/or the data provider. All intellectual property rights are reserved by the providers and/or the exchange providing the data contained in this website.
Fusion Media may be compensated by the advertisers that appear on the website, based on your interaction with the advertisements or advertisers.
© 2007-2024 - Fusion Media Limited. All Rights Reserved.