International data transfer compliance

How can your company become more data compliant as globalisation requires the free flow of personal data across borders?

06 August 2021

Publication

Globalisation of business requires the free flow of personal data across borders. However, data localisation/sovereignty features of various data protection laws present compliance challenges associated with international transfer of data.

In the EU and UK in particular companies face:

  • the requirement to conduct a data transfer risk assessment reviewing the law and practise in importing countries and determining the supplementary security measures required to match EU/UK standards of data protection; and
  • having to use the new EU standard contractual clauses (SCCs) for new transfers from September 2021 and replace the old EU standard contractual clauses with the new SCCs before December 2022 and, in due course, the UK SCCs.

In order to help plan a compliance programme in relation to international data transfers we have set out a suggested project plan.

See our Insight for more information.

This document (and any information accessed through links in this document) is provided for information purposes only and does not constitute legal advice. Professional legal advice should be obtained before taking or refraining from any action as a result of the contents of this document.