Skip to main content
  1. Home
  2. Computing
  3. Business
  4. Web
  5. News

Privacy Shield data protection program now has a new member: Microsoft

Add as a preferred source on Google

This week during the Ignite 2016 conference in Atlanta, Microsoft said that it is the first global cloud service provider to appear on the Privacy Shield list. That means the personal data Microsoft transfers across the Atlantic must abide by the European Union (EU) data protection requirements. The Privacy Shield framework went into effect on July 12, and replaces the older mechanism used to transfer data between the EU, Switzerland, and the United States.

“The EU-U.S. Privacy Shield Framework was designed by the U.S. Department of Commerce and European Commission to provide companies on both sides of the Atlantic with a mechanism to comply with EU data protection requirements when transferring personal data from the European Union to the United States in support of transatlantic commerce,” the Privacy Shield site states.

Recommended Videos

The previous platform used to transfer data was called the International Safe Harbor Privacy Principles. These were created by the U.S. Department of Commerce, the EU, and the Federal Data Protection and Information Commissioner of Switzerland in 2000 to protect the personal data of EU/Swiss citizens passed to and from the United States.

Safe Harbor was based on seven principles: notice, choice, onward transfer, security, data integrity, access, and enforcement. Essentially, individuals must be notified if their data is collected, and they must have an option to opt out of the collection process. Data transfer must adhere to certain standards, data must be secured, data must be reliable and relevant, and data must be accessible by the owner. All of this must be enforced in the process.

However, Safe Harbor was overturned by the European Court of Justice in October 2015. The decision led to consumer complaints about the protection of their data, which then ignited new talks between the EU and U.S. authorities to establish a new foundation. That’s where the new Privacy Shield platform begins.

“Microsoft’s participation in the Privacy Shield applies to all personal data that is subject to the Microsoft Privacy Statement and is received from the European Union, European Economic Area, and Switzerland,” Microsoft states. “Microsoft will comply with the Privacy Shield Principles in respect of such personal data. Microsoft also maintains an affirmative commitment to the U.S.-Swiss Safe Harbor Framework and its principles, which will not be affected by our participation in the Privacy Shield.”

Companies wanting to jump on the Privacy Shield bandwagon must meet specific requirements. They must inform individuals about data processing, provide free and accessible dispute resolutions, cooperate with the Department of Commerce, maintain data integrity and purpose limitation, and ensure accountability for data transferred to third parties. Transparency related to enforcement actions is required as well along with a commitment to protect data as long as the data is held.

The Privacy Shield program is administered by the International Trade Administration (ITA), which is part of the U.S. Department of Commerce. In order for American companies to join, they need to publicly agree to the platform’s principles and self-certify to the Department of Commerce. Joining the Privacy Shield platform is completely voluntary.

In addition to Microsoft, Dropbox has also jumped under the Privacy Shield umbrella. The cloud-based storage company received Privacy Shield certification on September 23, which will expire a year from that date. Dropbox also said that it is one of the first major cloud service providers to achieve the ISO 27018 certification, a standard for cloud and privacy data protection honored around the globe.

Kevin Parrish
Kevin started taking PCs apart in the 90s when Quake was on the way and his PC lacked the required components. Since then…
Cornell researchers found a way to spot future hits before they become popular
Early downloads can now call a research paper's fame years before it happens.
man doing research

Ever wonder if a research paper is destined to be a big deal long before it actually becomes one? Researchers at Cornell University think they have figured out how to tell, and it comes down to something as simple as downloads.

The team published new datasets pulled from arXiv, the go-to repository for unreviewed research papers, and GitHub, the platform coders use to store and share their projects. The goal is to test "lead-lag forecasting," a method that uses early engagement, including views, downloads, and likes, to predict which papers or projects will matter years down the line.

Read more
The U.S. needs air traffic controllers, and it’s turning to gamers for help
Secretary Sean Duffy says gamer recruitment is helping the FAA reach its hiring goals.
Airport, Aircraft, Airplane

Perhaps all those hours spent playing Counter-Strike 2, Valorant, or StarCraft II could finally prove useful outside your gaming setup. The U.S. Department of Transportation has been recruiting gamers to become air traffic controllers, and Transportation Secretary Sean Duffy says the unusual approach is already helping the Federal Aviation Administration make progress toward its hiring target.

The FAA says its gamer recruitment push is working

Read more
After Google, Apple may quietly turn iCloud+ into a tiered AI subscription
iOS 27 beta 5 reveals that Apple Intelligence feature limits now scale with your iCloud+ storage tier.
apple-icloud+

iOS 27's fifth beta quietly shows something Apple only hinted at during its last earnings call: paying for a higher iCloud+ tier unlocks more access to Apple Intelligence features, starting with your smart home cameras.

So how is this actually showing up right now?

Read more