MIDTERM | M5 Flashcards
involve the transmission of personal or sensitive data from one country to another.
CROSS-BORDER DATA TRANSFERS
Sanctions and Penalties for Non-compliance
GDPR Penalties: Fines of up to 4% of a company’s global annual revenue or €20 million, whichever is higher.
US Sanctions: Penalties from the US Office of Foreign Assets Control (OFAC) for transferring data to restricted countries. China’s PIPL Penalties: Fines of up to RMB 50 million (~$7.8 million) or 5% of annual turnover for severe violations.
Brazil’s LGPD Penalties: Fines up to 2% of revenue, limited to 50 million
reais (~$10 million) per violation.
three global regulations that govern cross-border data transfers
- GDPR (General Data Protection Regulation)
- PIPL (Personal Information Protection Law)
- LGPD (General Data Protection Law)
What are the key risks and challenges associated with cross-border data transfers?
- Data sovereignty
- Cybersecurity threats