Create Guide Choose a single or multiple jurisdictions. Jurisdiction Nigeria South Africa Australia Bangladesh Cambodia China Hong Kong India Indonesia Japan Macau Malaysia Myanmar New Zealand Pakistan Thailand Singapore Sri Lanka Taiwan Nepal Barbados British Virgin Islands Cayman Islands Curacao Trinidad and Tobago Turks & Caicos Islands USA, Puerto Rico Austria Belgium Bulgaria Croatia Cyprus Czech Republic Denmark Finland France Greece Hungary Iceland Ireland Italy Latvia Liechtenstein Lithuania Luxembourg Malta Netherlands Norway Poland Portugal Romania Serbia Slovakia Slovenia Spain Sweden Switzerland Turkey United Kingdom Argentina Bolivia Brazil Chile Colombia Costa Rica Ecuador Mexico Nicaragua Panama Peru Bahrain Qatar USA, Alabama USA, Arizona USA, Arkansas USA, Colorado USA, Delaware USA, District of Columbia (Federal Law) USA, Kansas USA, Louisiana USA, Mississippi USA, Nebraska USA, New Hampshire USA, Tennessee Select all Key Legislation Overview (select all) 1. What is the key legislation? 2. What are the key decisions applying that legislation? Key Data Protection Provisions (select all) 1. How are “personal data” and “sensitive data” defined? 2. How is the defined data protected? 3. Who is subject to privacy obligations? 4. How is “data processing” defined? 5. What are the principles applicable to personal data processing? 6. How is the processing of personal data regulated? 7. How are storage, security and retention of personal data regulated? 8. What are the data subjects' rights under the data legislation? 9. What are the consent requirements for data subjects? 10. How is authorization for use of data handled? 11. Are cross-border data transfers regulated? If so, what are the restrictions on cross-border data transfers? 12. How are data "incidents" and "breaches" defined? 13. Are there any notification requirements for incidents and/or data breaches? 14. Who is/are the privacy regulator(s)? 15. What are the consequences of a data breach? 16. How is electronic marketing regulated? 17. Are there sector-specific or industry-specific privacy requirements? 18. What are the requirements for appointing Data Protection Officers or similar roles? 19. What are the record-keeping and documentation obligations? 20. What are the requirements for conducting Data Protection Impact Assessments (DPIAs)? 21. What are the requirements for third-party vendor management and data sharing? 22. What are the penalties and enforcement mechanisms for non-compliance? 23. What are the ongoing compliance and audit requirements? 24. Are there any recent developments or expected reforms? Step back Show all jurisdictions Select all Africa Select all Nigeria South Africa Asia Pacific Select all Australia Bangladesh Cambodia China Hong Kong India Indonesia Japan Macau Malaysia Myanmar New Zealand Pakistan Thailand Singapore Sri Lanka Taiwan Nepal Caribbean Select all Barbados British Virgin Islands Cayman Islands Curacao Trinidad and Tobago Turks & Caicos Islands USA, Puerto Rico Europe Select all Austria Belgium Bulgaria Croatia Cyprus Czech Republic Denmark Finland France Greece Hungary Iceland Ireland Italy Latvia Liechtenstein Lithuania Luxembourg Malta Netherlands Norway Poland Portugal Romania Serbia Slovakia Slovenia Spain Sweden Switzerland Turkey United Kingdom Latin America Select all Argentina Bolivia Brazil Chile Colombia Costa Rica Ecuador Mexico Nicaragua Panama Peru Middle East Select all Bahrain Qatar United States Select all USA, Alabama USA, Arizona USA, Arkansas USA, Colorado USA, Delaware USA, District of Columbia (Federal Law) USA, Kansas USA, Louisiana USA, Mississippi USA, Nebraska USA, New Hampshire USA, Tennessee Loading guides... Create Guide Choose a jurisdiction. Select a jurisdiction Nigeria South Africa Australia Bangladesh Cambodia China Hong Kong India Indonesia Japan Macau Malaysia Myanmar New Zealand Pakistan Thailand Singapore Sri Lanka Taiwan Nepal Barbados British Virgin Islands Cayman Islands Curacao Trinidad and Tobago Turks & Caicos Islands USA, Puerto Rico Austria Belgium Bulgaria Croatia Cyprus Czech Republic Denmark Finland France Greece Hungary Iceland Ireland Italy Latvia Liechtenstein Lithuania Luxembourg Malta Netherlands Norway Poland Portugal Romania Serbia Slovakia Slovenia Spain Sweden Switzerland Turkey United Kingdom Argentina Bolivia Brazil Chile Colombia Costa Rica Ecuador Mexico Nicaragua Panama Peru Bahrain Qatar USA, Alabama USA, Arizona USA, Arkansas USA, Colorado USA, Delaware USA, District of Columbia (Federal Law) USA, Kansas USA, Louisiana USA, Mississippi USA, Nebraska USA, New Hampshire USA, Tennessee Next