Find partners
Technology, Data and Privacy

Technology, Data and Privacy

Hosted by Fieldfisher

Episodes

37

Latest episode

Aug 2026

Language

EN-GB

About the show

Fieldfisher's European team of tech, data and privacy lawyers bring you the latest updates from the rapidly evolving world of data privacy, regulation, AI, automation. and robotics.

Listen to episodes

37 recent
August 24, 2026Episode 731 min

Data and Privacy Matters: Legal Updates - July 2026

Lorna Cropper, Emma Yaltaghian and Sandra Ofili round up key data and privacy developments from July 2026. They discuss the EDPB's draft guidance on anonymisation and web scraping for generative AI, as well as its proposed EU-wide personal data breach notification template and calls for greater regulatory cooperation across Europe. The team also covers the EU Digital Omnibus amendments to the AI Act, the ICO's plans to evolve its regulatory sandbox for AI innovation, and developments relating to children's privacy, neurotechnology and risk-based complaint handling. International data transfers and AI regulation are also on the agenda, with discussion of two UK Government calls for evidence on the future of data regulation and cross-border data flows. Moving on to online safety, the team looks at the House of Lords inquiry into the Online Safety Act, proposals to restrict children's access to social media across Europe, and Ofcom's latest update on age assurance measures. The episode concludes with a review of recent enforcement action from the Italian Data Protection Authority and the ICO, including cases involving data brokerage, telemarketing compliance and unlawful employee access to personal data.

July 31, 2026Episode 617 min

Data and Privacy Matters: Legal Updates - June 2026

Nuria Pastor, Sophia Steiger and Yanis Lau round up key data and privacy news from June 2026. They discuss developments from the EU as the EDPB adopts a common data breach notification template and launches a dedicated contact form to allow stakeholders to report possible inconsistencies in GDPR implementation. They also cover the EDPB's update on its One-Stop-Shop case digest on the right to object and right to erasure. The ICO is the next focus and the team looks at the ICO's response towards advisory AI Growth Labs, its 'Edtech examined' report and the final guidance on consumer Internet of Things products and services. They also looked at the ICO's statement on inappropriate access of patient data and call on social care leaders to commit to better care records. There are important developments in the online safety landscape, and the team discusses the government's proposal of a blanket ban on social media for under 16s and to make it impossible for children to take, share or view naked pictures on their devices. The team also looks at Ofcom's proposed major updates to the Illegal Harms regulatory guidance. Moving on to developments in the AI space, the team discusses the new regulations brought by the EU Digital Omnibus. Staying with Europe, the team then discusses the recent CJEU judgement of Case C‑414/24 (Datenschutzbehörde), which clarified that data subjects can exercise parallel remedies under the GDPR without prejudice to each other. The episode ends with a discussion on recent enforcement actions from the ICO and the Norwegian DPA.

June 23, 2026Episode 511 min

Data and Privacy Matters: Legal Updates - May 2026

Lorna Cropper , Chloe Abbott and Sandra Ofili round up key data and privacy developments from May 2026. They begin by highlighting a significant milestone: May marked ten years since the GDPR came into force and the two-year countdown to applicability started. The team reflects on the GDPR’s lasting influence on data protection legislation across the EU and beyond. Continuing with European developments, the team discuss the European Parliament and Council's provisional political agreement on the Digital Omnibus reforms to the AI Act, as well as the European Commission's publication of draft, non‑binding guidelines on the classification of high-risk AI systems. The focus then shifts to the UK, where the team outlines key legal updates, including the deadline to inform individuals of their right to make a data protection complaint and to implement an appropriate complaints procedure. To support organisations in updating their policies and procedures, the team has prepared a practical one-page guide, available here . Children’s online safety also remains a key priority this month. The team discusses the ICO’s statement on age assurance, Ofcom’s update following tech firms’ responses to its call for action to protect children, and the close of the UK Government’s consultation on children’s digital wellbeing. The podcast concludes with recent enforcement developments, including the ICO’s decision to fine South Staffordshire Plc and South Staffordshire Water Plc following a major cyber incident, and the Irish Data Protection Commission’s formal inquiry into SHEIN’s Irish entity concerning the transfer of EU/EEA personal data to China.

May 15, 2026Episode 413 min

Data and Privacy Matters: Legal Updates - April 2026

Nuria Pastor, Hannah Wallet, and Sophia Steiger round up key data and privacy news from April 2026. They discuss developments from Europe as the EDPB adopts new guidelines on the processing of personal data for scientific research and a new DPIA template. The ICO is the next focus and the team looks at a joint report concerning agentic AI, a new Code of Practice on AI and Automated Decision Making Regulations together with the new guidance on storage and access technologies. The relationship between children and social media remains a hot topic and the team discuss the latest developments across different jurisdictions. The team looks at the judgment in RTM v Bonne Terre Ltd & Hestview Ltd [2025] EWHC 111 (KB) which examines the objectivity of "consent" under the UK GDPR and PECR. The episode then discusses the trend with privacy-related fines in the US before finishing with some recent high-profile data breaches from across Europe and the globe, and the lessons that can be learnt from these incidents. Find the sources here: Data and Privacy Matters: Legal Updates - April 2026

April 21, 2026Episode 325 min

Data and Privacy Matters: Legal Updates - March 2026

In the March edition of Data & Privacy Matters, the Fieldfisher Tech and Data team round up key UK and EU developments across data protection, online safety, cybersecurity, and digital regulation. They begin with the ICO’s draft updated guidance on automated decision‑making and profiling, published following the Data Use and Access Act 2025. The guidance clarifies when automated decision‑making rules apply, what meaningful human involvement looks like, and signals a shift towards a more permissive “right to challenge” model. Staying with the ICO, they discuss updated purpose limitation guidance, which tightens expectations around compatibility assessments and record‑keeping where personal data is reused, particularly where consent was the original lawful basis. Children’s online safety remains a major focus this month. The team cover the joint ICO and Ofcom statement on age assurance under the Online Safety Act, alongside potential European Commission enforcement under the Digital Services Act, reflecting increased regulatory scrutiny of age assurance, default settings and systemic risk. European developments continue with draft guidance on the Cyber Resilience Act, clarification on software scope, and the closure of the Digital Fitness Check consultation under the Commission’s Digital Omnibus initiative. They conclude with enforcement and litigation updates, including the CJEU’s Brillen Rottler ruling on abusive DSARs and a cyber incident at UK Companies House. Find the sources here.

March 19, 2026Episode 218 min

Data and Privacy Matters: Legal Updates - February 2026

Tune in to the action-packed latest episode of Fieldfisher's Data & Privacy Matters podcast, as Camille Ebden, Melanie Ludolph and Rida Ahmed look at the key data and privacy news from February 2026. Read more here.

February 19, 2026Episode 125 min

Data and Privacy Matters: Legal Updates - January 2026

The episode starts with a discussion of the EDPB's consultation regarding the Processor Binding Corporate Rules (BCR-Ps). The consultation seeks feedback on the EDPB's draft recommendations on the BCR-Ps which include standardisation measures and various clarifications and explanations, alongside discussion on the scope of the BCR-Ps. The team then speaks about recent developments in online safety for children. As discussed last episode , it truly does seem to be the year of the child when it comes to international data protection. First, the podcast discusses the Global Online Safety Regulators Network's joint statement on shared principles for the adoption of age-assurance technologies. The UK government's consultation into children's access to social media is also explored, and finally the podcast reviews the EU push for age-based restrictions to social media. The podcast then summarises news from the UK. The episode looks at the ICO's new powers and the new criminal offences under the Data (Use and Access) Act 2025. Recent investigations are then discussed, with a focus on Grok and Meta who are under scrutiny from the ICO and Ofcom. Before moving on to the EU, the team also touch on various structural developments to the ICO and Ofcom, with a formal cooperation agreement established between Ofcom and the Internet Watch Foundation, and updated ICO guidance published on Rights of Access and International Data Transfers. On the EU front there was a range of matters requiring the podcast's attention this month. The diverse topics explored include the EU-Brazil adequacy decision, the Irish X Internet Unlimited Company litigation, an EU Digital Omnibus update, negotiations regarding the detection of online CSAM and new Regulation (EU) 2025/2518. The episode is wrapped up with mentions of significant fines and enforcements, including various French CNIL fines ranging from €3.5 million to €27 million and the European Commission's preliminary findings that TikTok is in breach of the Digital Services Act (although we note a final decision has not yet been reached). With the volume of continuous developments in the data and privacy ecosystem, it can be hard to stay on top of the key news stories. This is a must-listen podcast to catch up on notable data and privacy news in the past month and consider what your business or organisation needs to be doing in response. Find the source of news discussed here.

January 19, 2026Episode 1225 min

Data and Privacy Matters: Legal Updates - December 2025

In the latest privacy podcast episode Anna Rawlinson , Lorna Cropper and Harry Barder delve into the data and privacy stories that captured their attention throughout December 2025. Join them as we explore developments and new stories that are impacting businesses and organisations, including: updates to the rules and regulations applicable to children's use of online services from across the globe in Australia to here in the UK; recent developments from Ofcom, including insights into recent fines issued; updates from the ICO including their response to the Cyber Security and Resilience Bill and their revised Right of Access guidance; news from the EU, including an analysis of the practicality of a single cyber-reporting hub in the EU and the CJEU's ruling on X v Russmedia Digital SRL and Inform Media Press SRL ; and various fines and enforcement actions during the month. Read more here: Data and Privacy Matters: Legal Updates - December 2025

December 12, 2025Episode 1120 min

Data and Privacy Matters: Legal Updates - November 2025

Tune in to the action-packed latest episode of Fieldfisher's Data & Privacy Matters podcast, as Camille Ebden , Tessa Waite and Rida Ahmed look at the key data and privacy news from November 2025. They dive into the latest news on the much anticipated publishing of the EU Digital Omnibus Regulation Proposal and how this aims to simplify and harmonise digital regulations in the EU. After discussing the CJEU's Inteligo Media decision which impacts the interpretation of e-marketing rules under the ePrivacy Directive, the team consider international data transfer developments in India, Brazil the US and China. This is followed by discussions around the latest Online Safety Act implementation from Ofcom and the publishing of the UK's draft Cyber Security and Resilience Bill. Finally, the team consider the latest from the ICO and highlight the key fines and enforcements that have occurred throughout the month. A list of sources of the news discussed can be found here.

November 14, 2025Episode 1025 min

Data and Privacy Matters: Legal updates - October 2025

In the latest episode of Fieldfisher’s Data and Privacy Matters podcast, hosts Lorna Cropper , Emma Yaltaghian and Sophie Gosling provide a comprehensive roundup of the key legal developments from October 2025. The team start by discussing the Irish DPC’s €530 million fine against TikTok, with the regulator finding that TikTok had not applied appropriate safeguards when transferring data to China and had fallen short on its transparency obligations. The team also reviewed the EDPB’s opinion on the UK’s adequacy decision, which welcomed continued alignment with EU standards but raised concerns over new ministerial powers introduced under the Data (Use and Access) Act . They continue with coverage of the ICO’s successful appeal against Clearview AI, confirming that the regulator can take enforcement action against overseas organisations processing UK residents' data - even if they are third party controllers and do not engage in such monitoring themselves. The ICO’s ongoing consultations were also discussed, including new guidance on enforcement and the upcoming charitable purpose soft opt-in for direct marketing. The team reflects on the high-profile case of former MasterChef host Gregg Wallace, who brought legal action against the BBC for delayed responses to his data subject access requests, highlighting the operational and reputational risks of mishandled DSARs. Finally, the team discusses several major enforcement actions. Capita was fined £14 million following its 2023 ransomware attack, Grindr’s €6.5 million penalty for unlawful data sharing was upheld in Norway, and the Dutch DPA fined Experian €2.7 million for unlawful credit profiling.

Is this your show?

Claim this listing to keep it up to date, reach guests who want to pitch you, and manage bookings with Guestify.

Claim this listing

More Business podcasts