

The Privacy Advisor Podcast
Jedidiah Bracy, IAPP Editorial Director
The International Association of Privacy Professionals is the largest and most comprehensive global information privacy community and resource, helping practitioners develop and advance their careers and organizations manage and protect their data. More than just a professional association, the IAPP provides a home for privacy professionals around the world to gather, share experiences and enrich their knowledge.
Founded in 2000, the IAPP is a not-for-profit association with more than 70,000 members in 100 countries. The IAPP helps define, support and improve the privacy profession through networking, education and certification.
This podcast features IAPP Editorial Director Jedidiah Bracy, who interviews privacy pros and thought leaders from around the world about technology, law, policy and the privacy profession.
Founded in 2000, the IAPP is a not-for-profit association with more than 70,000 members in 100 countries. The IAPP helps define, support and improve the privacy profession through networking, education and certification.
This podcast features IAPP Editorial Director Jedidiah Bracy, who interviews privacy pros and thought leaders from around the world about technology, law, policy and the privacy profession.
Episodes
Mentioned books

Aug 13, 2021 • 25min
Ohio Lt. Governor Jon Husted discusses the state's privacy bill
On July 13, Ohio Lt. Governor Jon Husted announced the introduction of the Ohio Personal Privacy Act. The law applies to organizations doing business in Ohio or whose products or services target consumers in the state. Businesses with annual gross revenues exceeding $25 million, or process personal data of 100,000 or more Ohio consumers, or derive 50% of gross annual revenues from the sale of personal data would be covered. Like other laws, it does offer some consumer rights, including correction, deletion and portability, as well as an opt-out right for the sale of personal data. Most notably, the OPPA includes a carve out for businesses that reasonably conform with the U.S. National Institution of Standards and Technology's Privacy Framework. Host Jedidiah Bracy recently caught up with Husted to discuss the bill, the NIST provision, and what the OPPA could mean for the future of privacy law at the state, federal and international levels.

Jul 9, 2021 • 59min
The rise of the voice-intelligence industry: A discussion with Joseph Turow
Voice-activated products and services are proliferating, while voice-recognition technology is on the rise. In addition to popular voice-activated assistants, call centers are beginning to use advanced voice-intelligence technology in novels ways. The technology could lead to plenty of innovation, but the potential privacy, safety and fairness issues will need some thinking. In his new book "The Voice Catchers: How Marketers Listen In to Exploit Your Feelings, Your Privacy, and Your Wallet," Joseph Turow describes the rise of what he calls the "voice intelligence industry" and how artificial intelligence is enabling personalized marketing and profiling through voice analysis. IAPP Editorial Director Jedidiah Bracy caught up with Turow to discuss the potential privacy issues and what privacy pros and policy makers should be thinking about with this nascent industry.

Jun 25, 2021 • 47min
Rethinking notice and consent - A chat with Jen King
Notice and consent have been foundational principles in privacy and data protection for decades. But do they provide individuals with the ability to make informed decisions as they navigate products and services? Will laws like the California Privacy Rights Act help change how companies design their privacy notices? For Jennifer King, the Privacy and Data Policy Fellow at Stanford's Institute for Human-Centered Artificial Intelligence, the notice-and-consent paradigm as it currently stands is a "farce" that needs an overhaul, not just from a legal standpoint, but also from a human-technology interaction perspective. IAPP Editorial Director Jedidiah Bracy chats with King about what's needed for an effective paradigm shift in this space.

Jun 4, 2021 • 40min
Rep. Suzan DelBene on the need for a federal US privacy law
Prospects for a federal privacy law in the U.S. ramped up in recent years, but even though data protection is a bipartisan issue, nothing has come close to passing. At the same time, U.S. state activity is swarming, and many countries around the world are developing and implementing their own national privacy laws. So what's it going to take for the U.S. to pass a federal law? Rep. Suzan DelBene, D-Wash., was the first congressional lawmaker to propose federal privacy legislation in 2021. Her bill received praise from the U.S. Chamber of Commerce and other industry groups for its approach, but does the bill have what it takes to cross the finish line? The Privacy Advisor Podcast host Jedidiah Bracy recently caught up with DelBene to talk about her proposed bill, the state of play on Capitol Hill, and what it will take for the U.S. to pass federal privacy legislation.

May 14, 2021 • 42min
Exploring emotion-detection technology: A conversation with Ben Bland
Artificial intelligence and machine learning technologies are rapidly developing across virtually all sectors of the global economy. One nascent field is empathic technology, which, for better or worse, includes emotion detection. It is estimated that the emotion detection industry could be worth $56 billion by 2024. However, judging a person's emotional state is subjective and raises a host of privacy, fairness, and ethical questions. Ben Bland has worked in the empathic technology space in recent years and now chairs the IEEE's P7014 Working Group to develop a global standard for the ethics of empathic technology. We recently caught up to discuss the pros and cons of the technology and his work with IEEE.

Apr 30, 2021 • 48min
US government surveillance, global data flows and the Russia investigation: A chat with April Doss
U.S. government surveillance bubbled back up in headlines in recent weeks. Portugal's data protection authority halted transfers of data to the U.S. after complaints that census data were being sent back to the U.S. The same week, a U.S. Foreign Intelligence Surveillance Court decision was published, in which it renewed a U.S. surveillance program even though it found some Federal Bureau of Investigation employees illegally accessed email data. This comes as the U.S. and EU try to hammer out a renewed data transfer agreement in the wake of the "Schrems II" decision that invalidated Privacy Shield. April Falcon Doss worked at the U.S. National Security Agency for 13 years. In 2017, Doss joined the U.S. Senate Select Committee on Intelligence for the Russia investigation. She also wrote a book, "Cyber Privacy: Who Has Your Data and Why You Should Care," and took a new job at Georgetown University Law Center. Host Jedidiah Bracy recently caught up with Doss to discuss the state of play of U.S. surveillance law, her new book, what she found out while investigating the 2016 presidential election, and what's on the horizon with her new gig at Georgetown.

Mar 23, 2021 • 55min
A discussion about 'dark patterns' with Finn Myrstad
The Norwegian Consumer Council made waves in early 2021 after its complaint to Norway's data protection authority, Datatilsynet, against Grindr resulted in an intention to fine the company $12 million, the highest fine ever levied by the nation's DPA. Grindr responded to the proposed enforcement action, arguing it has refined its consent mechanism, but the case isn't over. The NCC has long worked with other advocacy organizations to bring protections and awareness for consumers around privacy issues in the marketplace. In 2018, they released an in-depth report on "dark patterns" to demonstrate how companies nudge users into making decisions that may not always be in their best interest. IAPP Editorial Director Jedidiah Bracy, CIPP, recently caught up with the NCC's Finn Myrstad to discuss the NCC's case against Grindr and, more broadly, what companies can do to avoid using dark patterns at the expense of their users.

Mar 11, 2021 • 41min
Is a 'multilateral privacy treaty' the answer to 'Schrems II'?
In the wake of "Schrems II," the future of data transfers is on shaky ground. True, the Biden administration has demonstrated that it's taking trans-Atlantic data flows seriously after appointing Christopher Hoff in January, not long after Biden was inaugurated. And though both the U.S. Department of Commerce and European Commission are working together in earnest, short of changing its national security laws, what else can be done to prevent another legal challenge and potential invalidation to a future agreement? Baker MacKenzie Global Data Privacy and Security Group Chair Brian Hengesbaugh has an idea. Using his background in international policy and data protection, Hengesbaugh thinks now is the time for the Biden administration to "go big" and initiate an international treaty among democratic nations and their shared values around both human rights and national security. He explains in this latest episode of The Privacy Advisor Podcast.

Mar 5, 2021 • 47min
The Privacy Advisor Podcast: All things Virginia Consumer Data Protection Act with Odia Kagan
Virginia joined rarified air March 2 after its governor signed the Consumer Data Protection Act into law. Though California was the first state to pass baseline privacy legislation, Virginia was the first to do so absent a ballot initiative. So, what is in Virginia's CDPA? Where does it overlap with provisions in the California Consumer Privacy Act, California Privacy Rights Act or EU General Data Protection Regulation? What are some early steps businesses should consider as they make preparations? And, what effect will the CDPA — if at all — have on other state privacy laws, and ultimately, on potential federal privacy legislation? These are a few of the issues IAPP Editorial Director Jedidiah Bracy, CIPP, discussed with Fox Rothschild Partner Odia Kagan, CIPP/E, CIPP/US, CIPM, FIP.

Feb 26, 2021 • 50min
The Privacy Advisor Podcast: Privacy engineering and design with Nishant Bhajaria
Concepts like "privacy engineering" and "privacy by design" have been in the privacy lexicon for several years, but do we all know or agree about what they mean? What is a privacy engineer? Sure, when we discuss privacy by design, we're talking about baking privacy considerations in from the start and not just bolting them on after a product or service has been designed, but what is privacy by design in practice? How do you ensure your tech and legal teams can understand each other, and how can you get senior leadership to buy into privacy as a business advantage instead of an obstacle? These are a couple of issues IAPP Editorial Director Jedidiah Bracy, CIPP, recently discussed with Nishant Bhajaria, head of technical privacy and governance at Uber.


