The Privacy world has done a great job of over complicating things for engineers with conflicting definitions in the GDPR, CCPA, ISO and elsewhere. In this episode get to the heart of what you need to know for some of the main privacy terminolo
Connecting with your audience as a compliance person can be tough, so we have the privacy champion model to save the day. Or so you’d think. In this episode I explain why privacy champions fail and what we should do instead to get the organisat
In this episode I talk about why privacy software seems to miss the mark so badly, why we all seem to hate it so much and whose fault it is that us privacy folk are so unhappy with it. I give some advice for vendors and privacy folk on how to m
It’s time to face reality, if your DPO is not technical then you’re missing out. In this episode I discuss why tech skills matter when it comes to privacy, why delegating tech responsibility isn’t ideal and what General Counsels should be looki
Should your DPO work full time? In this episode I discuss the pitfalls of full time roles, why fractional DPOs may be a better fit for you, and what distinct benefits a part-time DPO might bring. Find out more at https://carlgottlieb.com.
DPOs are great but should really hire one? In this episode I discuss why now is probably not the right time to go all in with a DPO and what you might want instead. And for when you are ready for a DPO, I provide some tips on how to start out o
In this episode I discuss what most organisations are getting wrong when it comes to establishing trust in their privacy practices. I provide insights into what it’s like as a DPO at tech companies on both sides of the due diligence battle. And
In this episode I'm chatting live with Kabir Barday - CEO of OneTrust. We're discussing hyper growth, listening to customers, maintaining best-of-breed and what's next for OneTrust.Show notes and videos for this episode are available at https:/
In this episode I'm chatting live with Didi Dayton - Partner at Wing Venture Capital. We're discussing VC investment strategies, big trends in tech, trust as a differentiator and diversity in the boardroom.Show notes and videos for this episode
In this episode I'm chatting live with Pedro Pavon, Senior Counsel at Salesforce. We're discussing privacy within the tech industry, risk taking and whether the CPRA should make us optimistic for privacy law in the US.Show notes and videos for
Chat with Andy Dale, General Counsel at Alyce – A recording of a live video chat between Carl and Andy Dale of Alyce about his role in helping the business thrive through privacy.
Chat with Joey Stanford of Platform.sh – A recording of a live video chat between Carl and Joey Stanford of Platform about his role as a DPO and security lead.
Do Not Sell – Discussing the new requirements of the CCPA for a Do Not Sell My Personal Information link on your website, and what selling really means in the context of the CCPA.
One Year of the GDPR – After one year of the GDPR, I talk about its biggest and most disappointing impact, the annoying cookie banners you see everywhere online. Show Notes
CCPA SB 561 - Discussing the CCPA Senate Bill 561 (SB 561) amendment to The California Consumer Privacy Act. I'll dive into the bill, what it was trying to do and what its demise means. Show Notes
Introduction to the CCPA - The California Consumer Privacy Act. I give an overview of the CCPA, what it contains, who it applies to and what the penalties are for non compliance. I also cover one of the notable amendments, SB 561 and how the C
Marketing Consent in the GDPR. I talk about the eMarketing rules under the GDPR and the various options you have for getting compliant. Topics include the changes to the consent definition for GDPR, the lesser known Soft Opt-in rule and the imp
Hot Topics in GDPR - Part Two. I talk about some of the common questions I’m hearing in the GDPR world and also recommend some great tools I’ve seen recently. Topics include managers becoming the DPO, American companies needing to be compliant,
Hot Topics in GDPR - Part One. I discuss some of the hot topics being discussed inside GDPR projects and amongst us Data Protection geeks. Topics include the right to erasure and backups, the need for lawyers to lead your GDPR programme and the
The Virtual Data Protection Officer. I discuss how a Virtual Data Protection Officer might be the right answer for your organisation, how the role works and what to look for to get the right help. Show Notes
In this special episode I bring you a recent GDPR interview I gave to the Insecurity Podcast, presented by Shaun Walsh of the Next Generation Antivirus Vendor Cylance. I delve into the potential quagmire that is GDPR compliance, and what it mea
The GDPR Right to Erasure. I discuss the requirements on organisations for complying with this data subject right, when it applies and what the exceptions are. I give my general advice for complying with the Right to Erasure and complying with
The role of the GDPR Data Protection Officer. What it is, who needs one and designating the right person for the job. Discussing conflicts in the DPO role, outsourcing models and the day to day duties involved in the role. Show Notes
Overview of the General Data Protection Regulation (GDPR). Enhanced rights of the individual, fines and penalties, breach notifications, data processors and controllers and the role of the data protection officer. Show Notes