1. Home
  2. |Insights
  3. |EU Member States Approve EU-U.S. Privacy Shield

EU Member States Approve EU-U.S. Privacy Shield

Client Alert | 1 min read | 07.08.16

Today, the European Union (EU) Member States in their function as the Article 31 Committee approved the final version of the EU-U.S. Privacy Shield, the new framework for transatlantic data transfers. It is set to replace the U.S.-EU Safe Harbor which the European Court of Justice invalidated in October 2015. Today’s vote by the Article 31 Committee, which was an important prerequisite for the formal adoption, paves the way for the European Commission’s adequacy decision, which is expected to take place early next week. The European Commission stated that, “Both consumers and companies can have full confidence in the new arrangement, which reflects the requirements of the European Court of Justice. Today’s vote by the Member States is a strong sign of confidence.” The European Commission also noted that during the adoption process it consulted as broadly as possible, “taking on board the input of key stakeholders, notably the independent [Member State] data protection authorities and the European Parliament.” The Commission likely hopes its final consultations and changes will satisfy potential opponents to the new program.

Insights

Client Alert | 7 min read | 08.17.26

Delayed Notification of Cyberattacks May Trigger HIPAA Breach Notification Rule

After identifying a ransomware attack in 2021, OSF Healthcare System waited until its forensic investigation had concluded before notifying the U.S. Department of Health and Human Services (HHS) — and the affected individuals — of the breach. The 110-day delay (nearly double the 60-calendar-day notification deadline mandated by the HIPAA Breach Notification Rule) triggered an investigation from HHS’s Office for Civil Rights (OCR). The health system’s investigation determined that protected health information (PHI) had been stolen....