• 18-19 College Green, Dublin 2
  • 01 685 9088
  • info@cunninghamwebsolutions.com
  • cunninghamwebsolutions
    Cunningham Web Solutions
    • Home
    • About Us
    • Our Services
      • Web Design
      • Digital Marketing
      • SEO Services
      • E-commerce Websites
      • Website Redevelopment
      • Social Media Services
    • Digital Marketing
      • Adwords
      • Social Media Services
      • Email Marketing
      • Display Advertising
      • Remarketing
    • Portfolio
    • FAQ’s
    • Blog
    • Contact Us
    MENU CLOSE back  

    Questions remain about GDPR enforcement in the US as the compliance deadline inches closer

    You are here:
    1. Home
    2. Digital Marketing
    3. Questions remain about GDPR enforcement in the US as the compliance deadline inches closer
    Thumbnail for 20788

    If you read these pages regularly, you know that the General Data Protection Regulation (GDPR), a European law that governs the handling of European Union (EU) members’ data, will come into full force on May 25. But even with all the coverage — and there’s a lot — we’re still unclear as to how the law will be enforced in the United States.

    I spoke with Kristina Podnar, a digital policy consultant who is a GDPR advisor to Third Door Media, to see if we could get some clarity. We got — well, some. Here’s what we learned.

    Who regulates GDPR compliance for US companies?

    Who regulates US companies depends on your definition of “US company.” If a US company is a multinational with local legal market presence in the EU (i.e., they are a company’s local business entity), then the EU Data Protection Act (DPA) regulations prevail and the company is subject to the local member state system.

    If you are talking about a US company that does business in the EU but is not a multinational, then the Federal Trade Commission (FTC) regulates US companies. The FTC has made itself the de facto DPA under Section 5 of the FTC Act (invoking unfair or deceptive trade practices, they have been able to make proclamations such as [if] a company failed to adopt reasonable security measures). This FTC concept of a DPA has been challenged, of course (TJX, Google, etc.), but the FTC is looked to from an EU perspective for enforcement because of the tradition that was created pre-GDPR in the ePrivacy Directive era.

    Who do US companies notify in case there’s a breach?

    GDPR requires businesses to report a breach within 72 hours. Podnar says that companies need only notify data subjects if the breach is likely to result in high risk to the rights and freedoms of the individuals.

    In terms of the company reporting, it depends on what data is breached and again, where the organization is operating in terms of its status. If it is a multinational, the organization ought to report the breach to the supervisory authority of the relevant EU member state (or multiple states, as the case may be). In the US, we now have data breach reporting requirements for all 50 states as well; the lowest thresholds are in California. Therefore, the US company would also need to comply with those requirements separately from GDPR obligations and report the breach domestically (FBI and FTC are notified as an extension of the state AG).

    Who does a consumer report a data handling issue to?

    Podnar said that if a consumer (or data subject) has an issue with a data processor or a controller, they should address the situation first with the controller.

    The [European] member state DPA is the escalation point to report issues to with a controller or even with a processor who is unresponsive to the request made to the controller.

    So, for example, if I live in London and make a request to a controller for data correction of an error, but the processor continues to retain the incorrect data, I could report the issue to the ICO for correction.

    Getting enforcement of such on a US company with no regional legal business entity may be challenging, but … the arm of international business law is long and there are established protocols for enforcement of foreign judgements in the US (albeit they might be lengthy and impractical!).

    So there you have it. What we know for certain is that on May 25, companies that handle EU residents’ data are legally required to be compliant with GDPR. If they aren’t compliant? Well, that’s anybody’s guess.

    Questions about GDPR? Download our free guide, The General Data Protection Regulation: GDPR — A Guide for Marketers.

    [This article originally appeared on MarTech Today.]

    The post Questions remain about GDPR enforcement in the US as the compliance deadline inches closer appeared first on Marketing Land.

    From our sponsors: Questions remain about GDPR enforcement in the US as the compliance deadline inches closer

    Posted on 17th May 2018Digital Marketing
    FacebookshareTwittertweetGoogle+share

    Related posts

    Thumbnail for 25786
    The Future of CX with Larry Ellison
    19th October 2020
    20201019 ML Brief
    19th October 2020
    Must-know tips for boosting your video strategy
    19th October 2020
    20201016 ML Brief
    19th October 2020
    NewsCred rebrands as Welcome
    13th October 2020
    Thumbnail for 25769
    How to make your data sing
    13th October 2020
    Latest News
    • Archived
      22nd March 2023
    • Archived
      18th March 2023
    • Archived
      20th January 2023
    • 20201019 ML Brief
      19th October 2020
    • Thumbnail for 25788
      Handling Continuous Integration And Delivery With GitHub Actions
      19th October 2020
    • Thumbnail for 25786
      The Future of CX with Larry Ellison
      19th October 2020
    News Categories
    • Digital Marketing
    • Web Design

    Our services

    Website Design
    Website Design

    A website is an important part of any business. Professional website development is an essential element of a successful online business.

    We provide website design services for every type of website imaginable. We supply brochure websites, E-commerce websites, bespoke website design, custom website development and a range of website applications. We love developing websites, come and talk to us about your project and we will tailor make a solution to match your requirements.

    You can contact us by phone, email or send us a request through our online form and we can give you a call back.

    More Information

    Digital Marketing
    Digital Marketing

    Our digital marketeers have years of experience in developing and excuting digital marketing strategies. We can help you promote your business online with the most effective methods to achieve the greatest return for your marketing budget. We offer a full service with includes the following:

    1. Social Media Marketing

    2. Email & Newsletter Advertising

    3. PPC - Pay Per Click

    4. A range of other methods are available

    More Information

    SEO
    SEO Services

    SEO is an essential part of owning an online property. The higher up the search engines that your website appears, the more visitors you will have and therefore the greater the potential for more business and increased profits.

    We offer a range of SEO services and packages. Our packages are very popular due to the expanse of on-page and off-page SEO services that they cover. Contact us to discuss your website and the SEO services that would best suit to increase your websites ranking.

    More Information

    E-commerce
    E-commerce Websites

    E-commerce is a rapidly growing area with sales online increasing year on year. A professional E-commerce store online is essential to increase sales and is a reflection of your business to potential customers. We provide professional E-commerce websites custom built to meet our clients requirements.

    Starting to sell online can be a daunting task and we are here to make that journey as smooth as possible. When you work with Cunningham Web Solutions on your E-commerce website, you will benefit from the experience of our team and every detail from the website design to stock management is carefully planned and designed with you in mind.

    More Information

    Social Media Services
    Social Media Services

    Social Media is becoming an increasingly effective method of marketing online. The opportunities that social media marketing can offer are endless and when managed correctly can bring great benefits to every business.

    Social Media Marketing is a low cost form of advertising that continues to bring a very good ROI for our clients. In conjuction with excellent website development and SEO, social media marketing should be an essential part of every digital marketing strategy.

    We offer Social Media Management packages and we also offer Social Media Training to individuals and to companies. Contact us to find out more.

    More Information

    Cunningham Web Solutions
    © Copyright 2025 | Cunningham Web Solutions
    • Home
    • Our Services
    • FAQ's
    • Account Services
    • Privacy Policy
    • Contact Us