Amy Smyth#9496

Amy Smyth

Knowledge Management Lawyer, Latham & Watkins
Amy is a knowledge management lawyer for the Privacy and Cyber group of Latham & Watkins. She has extensive experience in a broad range of technology, commercial, data, and intellectual property matters, with a particular focus on privacy and cyber security.
Contributed to

8

EU GDPR—clause to incorporate module four of the 2021 EU SCCs
EU GDPR—clause to incorporate module four of the 2021 EU SCCs
Precedents

This precedent clause is designed to incorporate module four (processor to controller) of the EU Standard Contractual Clauses (also known as the Model Clauses or SCCs) introduced by Commission Implementing Decision (EU) 2021/914 (the 2021 EU SCCs) for the transfer of personal data from a data processor subject to the EU’s General Data Protection Regulation (EU) 2016/679 (EU GDPR) to a data controller outside the EEA that is not subject to the EU GDPR.

EU GDPR—clause to incorporate module one of the 2021 EU SCCs
EU GDPR—clause to incorporate module one of the 2021 EU SCCs
Precedents

This precedent clause is designed to incorporate module one (controller to controller) of the EU Standard Contractual Clauses (also known as the Model Clauses or SCCs) introduced by Commission Implementing Decision (EU) 2021/914 (the 2021 EU SCCs) for the transfer of personal data from a data controller subject to the EU’s General Data Protection Regulation (EU) 2016/679 (EU GDPR) to a data controller outside the EEA that is not subject to the EU GDPR.

EU GDPR—clause to incorporate module three of the 2021 EU SCCs
EU GDPR—clause to incorporate module three of the 2021 EU SCCs
Precedents

This precedent clause is designed to incorporate module three (processor to processor) of the EU Standard Contractual Clauses (also known as the Model Clauses or SCCs) introduced by Commission Implementing Decision (EU) 2021/914 (the 2021 EU SCCs) for the transfer of personal data from a data processor subject to the EU’s General Data Protection Regulation (EU) 2016/679 (EU GDPR) to a data processor outside the EEA that is not subject to the EU GDPR.

EU GDPR—clause to incorporate module two of the 2021 EU SCCs
EU GDPR—clause to incorporate module two of the 2021 EU SCCs
Precedents

This precedent clause is designed to incorporate module two (controller to processor) of the EU Standard Contractual Clauses (also known as the Model Clauses or SCCs) introduced by Commission Implementing Decision (EU) 2021/914 (the 2021 EU SCCs) for the transfer of personal data from a data controller subject to the EU’s General Data Protection Regulation (EU) 2016/679 (EU GDPR) to a data processor outside the EEA that is not subject to the EU GDPR.

UK GDPR—clause to incorporate UK Addendum for module four of the 2021 EU SCCs
UK GDPR—clause to incorporate UK Addendum for module four of the 2021 EU SCCs
Precedents

This precedent provides provisions for the parties to an agreement to incorporate an addendum approved by the UK’s Information Commissioner’s Office (ICO) as a transfer mechanism for the transfer of personal data from a UK processor to a controller outside the UK that is not subject to the United Kingdom General Data Protection Regulation, Assimilated Regulation (EU) 2016/679 (UK GDPR).

UK GDPR—clause to incorporate UK Addendum for module one of the 2021 EU SCCs
UK GDPR—clause to incorporate UK Addendum for module one of the 2021 EU SCCs
Precedents

This precedent provides provisions for the parties to an agreement to incorporate an addendum approved by the UK’s Information Commissioner’s Office (ICO) as a transfer mechanism for the transfer of personal data from a controller subject to the United Kingdom General Data Protection Regulation, Assimilated Regulation (EU) 2016/679 (UK GDPR) to a controller outside the UK that is not subject to the UK GDPR.

UK GDPR—clause to incorporate UK Addendum for module three of the 2021 EU SCCs
UK GDPR—clause to incorporate UK Addendum for module three of the 2021 EU SCCs
Precedents

This precedent provides provisions for the parties to an agreement to incorporate an addendum approved by the UK’s Information Commissioner’s Office (ICO) as a transfer mechanism for the transfer of personal data from a processor that is subject to the United Kingdom General Data Protection Regulation, Assimilated Regulation (EU) 2016/679 (UK GDPR) to a processor outside the UK that is not subject to the UK GDPR.

UK GDPR—clause to incorporate UK Addendum for module two of the 2021 EU SCCs
UK GDPR—clause to incorporate UK Addendum for module two of the 2021 EU SCCs
Precedents

This precedent provides provisions for the parties to an agreement to incorporate an addendum approved by the UK’s Information Commissioner’s Office (ICO) as a transfer mechanism for the transfer of personal data from a controller that is subject to the United Kingdom General Data Protection Regulation, Assimilated Regulation (EU) 2016/679 (UK GDPR) to a processor outside the UK that is not subject to the UK GDPR.

Practice Area

Panel

  • Contributing Author

Qualified Year

  • 2010

Education

  • Oxford University
  • Cardiff University School of Law

If you expected to see yourself on this page, click here.