Regulatory bodies around the world will continue to implement rules and penalties related to maintaining privacy. The NIST Privacy Framework offers some valuable guidelines for continuous compliance.
Data Privacy
Technological development has always outpaced privacy concerns, but never more so than in the past decade. Collection and centralization of personally identifiable information (PII), tracking of movements and digital surveillance are all at unprecedented levels. Regulations and laws are only just beginning to catch up to the ability of both governments and private entities to deploy these capabilities.
What exactly is there to worry about? The mass collection and centralization of data by giant multinationals such as Facebook and Google is as good of a place to start as any. Two decades of vacuuming up the personal data of users of various online services has created the most impressive marketing capabilities in history, but these profiles have astounding potential for damage when they are used the wrong way or fall into the wrong hands.
Unauthorized information that is captured in data breaches tends to find its way to massive “combo lists” that are sold and traded on the dark web. Social security numbers are added from this breach, home addresses and phone numbers from that one, personal health information from yet another. Soon, a frighteningly complete profile of millions of individuals is available to anyone willing to pay the asking price.
These are just the established data privacy issues. The emerging ones are even worse. High-quality facial recognition technology is just beginning to roll out across the public places of some countries. Artificial intelligence is not only making mass facial recognition possible, but magnifies the power and reach of any application that involves capturing and sorting information: scanning pictures, analyzing speech, sifting through text and location data. This threatens to not only shatter anonymity and privacy, but allow for highly advanced impersonation and take the concept of “identity theft” to new levels.
Some businesses chafe at the trouble and added expense of new and emerging data privacy regulations, but they are vital to both protecting rights and privacy and instilling confidence in end users. Customers want to be able to submit their payment information without worry about data breaches and identity theft, use services without wondering what is being done with their personal information and use devices without fear of surveillance or having location data tracked. The need for meaningful safeguards only grows greater as technological capabilities increase.
Countries are working on contact tracing apps that have data safeguards built in to address privacy concerns while fighting against COVID-19. Can these apps really preserve privacy?
As data privacy regulations surge across the globe, U.S. is significantly lagging behind with a lack of federal law on data consent and California being the only state that offers consumer protections.
GoodRX admits no wrongdoing in the settlement, claiming that the health data it shared could not identify an individual user's health condition. The company was found to be sharing data with 20 marketing firms.
Brave privacy browser may have violated FTC and GDPR regulations for automatically redirecting users to affiliate links after they entered the name or URL of cryptocurrency sites.
As businesses harness the power of artificial intelligence (AI) to derive insights and streamline operations, the need for robust data privacy standards and effective governance frameworks has never been more critical.
Telefónica in Germany has announced a partnership with U.K. firm People.io to power an app through which the telco giant's customers can control some of their data.
Since 2019, Facebook has been talking about adding end-to-end encryption to all its messaging services. It appears that the government of the United Kingdom would prefer that these plans go no further.
The contentious ongoing battle between Apple and the Department of Justice continues, as the company has refused yet another request for an iPhone backdoor.
Over half of organizations are building their AI governance approaches on top of existing and mature privacy programs. But while the commitment is often there, the tools and skills may not be as the workforce only just begins to develop.










