Information Management Compliance and Data protection. Technology, Media & Telecommunications
Information is the life blood of every business. Yet how you use that information is increasingly regulated. With business reputation and criminal liability at stake, you need advisers who understand the IT industry and privacy regulation around the world. Linklaters has a remarkable track record in advising on privacy issues. We have helped many international businesses on the most complex aspects of their privacy compliance. Our ability to see issues from the client s point of view combined with our technical knowledge of the IT sector have been key factors in these successful projects. We have carefully trained and recruited specialists who understand the issues affecting your business and the dynamics shaping privacy regulation. We act on a global basis, across all industry sectors, including for large consumer facing and financial services organisations in addressing their data privacy issues. tremendous expertise most notably in data protection UK Chambers 2005, IT
Core capabilities Project management We help clients with: - National and cross-border projects, e.g. check up and compliance projects to ensure you benefit from the full potential of personal information with minimal risk of disruption to your business and processes. - Practical compliance strategies, project management and template documents to facilitate ongoing steady-state compliance, e.g. controller-controller and controller-processor agreements, online and offline privacy policies and notices, and compliance checklists - Bespoke advice, e.g. subject access, online and offline CRM and marketing, surveillance and monitoring - Disputes and enforcement action Multinational data protection compliance projects involve the implementation of new procedures and documents in multiple jurisdictions. For in-house counsel, these project management tasks can become overwhelming. Linklaters has developed a series of tools, including through use of our web based client extranet, Clients@linklaters, to simplify and speed up the management process. Privacy compliance reviews and advice Privacy strategy development Disputes e-learning Compliance templates Recent projects include: - Advising a leading Spanish based insurer on a novel data aggregation project and liaising with the Spanish data protection regulator in relation to it. - Carrying out a four month review for one of the UK s largest consumer facing businesses, delivering a set of high level and detailed compliance steps, including necessary organisational changes, and assisting in the implementation of a change management programme. - Carrying out a multinational compliance review for a leading US investment bank in 16 jurisdictions. - Advising a Belgian based multinational financial services company on its data privacy compliance. Recent work includes: - Working with the UK s OIC regulator on a pilot project to evaluate the use of binding corporate rules as an international data flow compliance method. - Developing a unique approach to international data privacy compliance for a multinational investment bank, resolving competing bank regulatory, taxation and data privacy issues. - Devising an international data protection compliance strategy for a multinational hotel chain operating in more than 45 jurisdictions. Where data privacy issues go wrong, disputes can rapidly escalate out of control. Regulators have far reaching powers, including freezing databases and imposing substantial fines. Linklaters have assisted in the successful resolution of disputes with: - OIC (UK regulator) - APD (Spanish regulator) - CNIL (French regulator) - GIODO (Polish regulator) and others. We have also advised on civil disputes in a number of jurisdictions. e-learning provides organisations with a unique combination of quality training, auditability and visibility. Not only are staff trained in a consistent manner, but training completion and success can be monitored. Finally, it provides excellent visibility of data protection compliance within your organisation and with regulators. Linklaters is currently working with a leader in e-learning solutions to develop customised elearning data protection training packages. Pilot projects are underway. If you would like to be involved, please let us know. In the course of advising clients on data privacy compliance projects around the world, Linklaters has developed a suite of more than 20 template documents to assist clients in the creation of compliant processes and procedures. Those documents include: - Privacy Policies - Employee Handbook templates - Security Polices
Recent experience includes advising: A global investment bank on a complex client data aggregation project, involving ten jurisdictions and financial services, confidentiality, data protection and intellectual property advice in relation to a client database which continuously aggregated and anonymised data. protection, privacy, direct marketing and on-line competition laws and regulations made this project particularly challenging. A major credit card company on a cross-border compliance audit. The project involves dealing with European member banks as well as the client s US headquarters. On the transfer of personal data, transfer within EU and to US, safe harbour regulation, drafting of data protection agreements (controller-controller, controller-processor) and lobbying with EU Article 29 Working Party, including important aspects of cross-border data flow with regard to sensitive data. The Big Four plus Two accounting firms on areas of significant potential conflicts between the requirements of the US Sarbanes-Oxley Act 2002 and the laws and regulations of various jurisdictions outside the US, including data protection, confidentiality and banking secrecy regulations. Failure to comply with the requirements of the Sarbanes-Oxley Act 2002 would prevent the accounting firms from carrying out audits of clients with reporting obligations to the Securities and Exchange Commission, so managing the areas of conflict is critical to their operations. A major hotel chain on a global data protection compliance project involving 48 jurisdictions, and more than 200 legal entities collectively handling data in respect of just over 1.3 million people. This involves co-ordinating delivery of advice, both with Linklaters offices and more than 35 external advisers, carried out using Linklaters extranet, Clients@Linklaters. A major investment bank on data protection arising from new technologies and international coordination. A leading international car rental company on a cross-border data protection audit. This included compliance with data protection law with respect to the collection, processing and use of employees personal data and customers personal data. A global financial institution on data protection compliance in relation to all its data processing and storage activities in over 20 jurisdictions. A major European Internet bank on data protection issues, including the transfer of data in connection with two different customer royalty/bonus schemes. A US credit card group on establishing a global corporate credit card scheme. A leading US media and entertainment company on a global CRM project, including advice on data protection, direct marketing and online competitions. The global nature of the project and complexity of various e-commerce, data Preparation of a European Economic Area and United States-wide data protection compliance manual for multi-national banking and finance industry business practices.
Giving us the commercial advantage Global Chambers 2003 page