Insights

International Data Transfers Between the EU and the U.S.: Legal and Technical Requirements

EU–U.S. data transfers are essential for modern business but are governed by different legal systems. Under the GDPR, transfers require mechanisms such as adequacy decisions (like the EU–U.S. Data Privacy Framework), Standard Con-tractual Clauses, or limited exceptions. In the U.S., laws like the CLOUD Act allow authorities access to data even if it is stored in Europe, creating legal conflicts with EU rules. These challenges can be managed through frameworks like the DPF and strong technical safeguards such as encryption and access controls.

Data Subjects’ Rights in the EU (Germany) vs the US (California): What’s the Difference?

The Digital World Has No Borders — But Rights Do! Personal data now constantly moves between individuals and organi-sations, making privacy protection a key issue in the digital age. GDPR is built on a rights-based, human dignity approach, while CCPA focuses on consumer transparency and fair business practices. Together, both frameworks give people important rights and control over their data, but they differ in scope, philosophy, and legal strength depending on the juris-diction.

The Missing Link: Data Privacy & Information Security – 
A Question for Prof. Dr. Louise Specht-Riemenschneider

Digital transformation is often seen as being in conflict with data privacy, but this discussion with Prof. Dr. Louisa Specht-Riemenschneider shows a different pers-pective. Information security frameworks such as ISO standards and ISMS are key enablers of secure, lawful, and trustworthy data processing rather than obstacles to innovation. They create controlled envi-ronments that support compliance while building digital trust and enabling respon-sible data use. At the same time, organizations often underestimate cyber risks, highlighting the need to position information security as both a protective measure and a strategic advantage.

More Than a Book Launch: Building a Dialogue on International Data Transfers

International data transfers between the EU and the U.S. are a key part of modern business but require complex legal and technical safeguards. The event ''International Data Transfer between the EU and the U.S.'' highlighted these challenges and promoted a practical exchange between legal, technical, and business perspectives. It emphasized the need for combining legal mechanisms with strong information security measures. Overall, the discussion showed that compliant data transfers can also build trust and enable digital business.

Are Municipalities Ready for Today’s Cybersecurity Threat Landscape?

Municipalities are facing an increasing cybersecurity threat landscape, with public administrations becoming frequent targets of cyberattacks. Effective protection requires structured risk management, strong incident response capabilities, and robust technical safeguards to secure sensitive data and essential public services. Beyond technical measures, cybersecurity is also crucial for ensuring operational resilience and maintaining public trust in digital government systems.

DSRA - Digital Security & Regulatory Advisory © 2026         All rights reserved        Legal & Privacy Notice        Imprint         

Information icon

Wir benötigen Ihre Zustimmung zum Laden der Übersetzungen

Wir nutzen einen Drittanbieter-Service, um den Inhalt der Website zu übersetzen, der möglicherweise Daten über Ihre Aktivitäten sammelt. Bitte überprüfen Sie die Details in der Datenschutzerklärung und akzeptieren Sie den Dienst, um die Übersetzungen zu sehen.