Regulating Data Breaches: A Data

Collecting and processing large amounts of personal data has become a fundamental feature of the modern economy. Personal data, combined with good data analytics, are valuable to businesses as they can provide highly detailed information about individual preferences and behaviors. This data collecti...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Veröffentlicht in:Vanderbilt journal of entertainment and technology law 2021-03, Vol.23 (3), p.648
1. Verfasser: Mckibbin, Kyle
Format: Artikel
Sprache:eng
Schlagworte:
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
container_end_page
container_issue 3
container_start_page 648
container_title Vanderbilt journal of entertainment and technology law
container_volume 23
creator Mckibbin, Kyle
description Collecting and processing large amounts of personal data has become a fundamental feature of the modern economy. Personal data, combined with good data analytics, are valuable to businesses as they can provide highly detailed information about individual preferences and behaviors. This data collection can also be valuable to the consumer as it generates innovative products and digital platforms. The era of big data promises great rewards, but it is not without its costs. Data breaches, or the release of personal data into unwanted hands, are pervasive and increasingly massive in scale. Despite the personal privacy harm caused by data breaches, businesses can largely externalize the costs of these breaches to the public. While privacy harm is undoubtedly an important issue, the release of data generates arguably more significant social costs. This Note argues that policy makers should view the unwanted release of data as a form of pollution that dilutes critical public goods. As such, an effective regulatory solution to data breaches should mirror the current regulatory approaches to environmental pollution. Like the physical environment, the data environment is a complex and highly interconnected system; accordingly, there is unlikely to be a single best way to regulate it. Thus far, the United States has approached data regulation in a stepwise and targeted fashion, much like environmental regulation. This approach has some advantages, but there is a pressing need for more comprehensive regulation. Current proposals point to omnibus privacy laws like the European Union's General Data Protection Regulation and the California Consumer Privacy Act as a solution. However, these regulations are ultimately privacy focused and impose high costs on the data economy. To balance these concerns, this Note proposes that Congress enact federal legislation implementing a data protection statute modeled after the Comprehensive Environmental Response, Compensation, and Liability Act.
format Article
fullrecord <record><control><sourceid>gale</sourceid><recordid>TN_cdi_gale_infotracmisc_A665415452</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><galeid>A665415452</galeid><sourcerecordid>A665415452</sourcerecordid><originalsourceid>FETCH-LOGICAL-g1052-121a75efd127e79cb98014603cd35d9a72f4630586e44f6db7c37b79a10a69e53</originalsourceid><addsrcrecordid>eNptjEtLxDAUhbNQcBz9DwXXlbxu0rir42OEAUEU3A23yU2MdDrQ1P9vUTdCOYsDH985J2wlnJa1sc37GTsv5ZNzDaD0ilUvlL56nPKQqjucsLodCf0HlZuq_QEX7DRiX-jyr9fs7eH-dbOtd8-PT5t2VyfBQdZCCrRAMQhpyTrfuYYLbbjyQUFwaGXURnFoDGkdTeisV7azDgVH4wjUml39_ibsaZ-HeJxG9Idc_L41BrQADXK26gUr0UAj9seBYp7xP_96wZ8T6JD9wuAbf5xVuw</addsrcrecordid><sourcetype>Aggregation Database</sourcetype><iscdi>true</iscdi><recordtype>article</recordtype></control><display><type>article</type><title>Regulating Data Breaches: A Data</title><source>HeinOnline Law Journal Library</source><source>Alma/SFX Local Collection</source><creator>Mckibbin, Kyle</creator><creatorcontrib>Mckibbin, Kyle</creatorcontrib><description>Collecting and processing large amounts of personal data has become a fundamental feature of the modern economy. Personal data, combined with good data analytics, are valuable to businesses as they can provide highly detailed information about individual preferences and behaviors. This data collection can also be valuable to the consumer as it generates innovative products and digital platforms. The era of big data promises great rewards, but it is not without its costs. Data breaches, or the release of personal data into unwanted hands, are pervasive and increasingly massive in scale. Despite the personal privacy harm caused by data breaches, businesses can largely externalize the costs of these breaches to the public. While privacy harm is undoubtedly an important issue, the release of data generates arguably more significant social costs. This Note argues that policy makers should view the unwanted release of data as a form of pollution that dilutes critical public goods. As such, an effective regulatory solution to data breaches should mirror the current regulatory approaches to environmental pollution. Like the physical environment, the data environment is a complex and highly interconnected system; accordingly, there is unlikely to be a single best way to regulate it. Thus far, the United States has approached data regulation in a stepwise and targeted fashion, much like environmental regulation. This approach has some advantages, but there is a pressing need for more comprehensive regulation. Current proposals point to omnibus privacy laws like the European Union's General Data Protection Regulation and the California Consumer Privacy Act as a solution. However, these regulations are ultimately privacy focused and impose high costs on the data economy. To balance these concerns, this Note proposes that Congress enact federal legislation implementing a data protection statute modeled after the Comprehensive Environmental Response, Compensation, and Liability Act.</description><identifier>ISSN: 1942-678X</identifier><language>eng</language><publisher>Vanderbilt University, School of Law</publisher><subject>Comparative analysis ; Computer crimes ; Data security ; Economic incentives ; Environmental remediation ; Harm principle (Ethics) ; Laws, regulations and rules ; Liability for environmental damages ; Prevention ; Privacy, Right of</subject><ispartof>Vanderbilt journal of entertainment and technology law, 2021-03, Vol.23 (3), p.648</ispartof><rights>COPYRIGHT 2021 Vanderbilt University, School of Law</rights><lds50>peer_reviewed</lds50><woscitedreferencessubscribed>false</woscitedreferencessubscribed></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><link.rule.ids>314,776,780</link.rule.ids></links><search><creatorcontrib>Mckibbin, Kyle</creatorcontrib><title>Regulating Data Breaches: A Data</title><title>Vanderbilt journal of entertainment and technology law</title><description>Collecting and processing large amounts of personal data has become a fundamental feature of the modern economy. Personal data, combined with good data analytics, are valuable to businesses as they can provide highly detailed information about individual preferences and behaviors. This data collection can also be valuable to the consumer as it generates innovative products and digital platforms. The era of big data promises great rewards, but it is not without its costs. Data breaches, or the release of personal data into unwanted hands, are pervasive and increasingly massive in scale. Despite the personal privacy harm caused by data breaches, businesses can largely externalize the costs of these breaches to the public. While privacy harm is undoubtedly an important issue, the release of data generates arguably more significant social costs. This Note argues that policy makers should view the unwanted release of data as a form of pollution that dilutes critical public goods. As such, an effective regulatory solution to data breaches should mirror the current regulatory approaches to environmental pollution. Like the physical environment, the data environment is a complex and highly interconnected system; accordingly, there is unlikely to be a single best way to regulate it. Thus far, the United States has approached data regulation in a stepwise and targeted fashion, much like environmental regulation. This approach has some advantages, but there is a pressing need for more comprehensive regulation. Current proposals point to omnibus privacy laws like the European Union's General Data Protection Regulation and the California Consumer Privacy Act as a solution. However, these regulations are ultimately privacy focused and impose high costs on the data economy. To balance these concerns, this Note proposes that Congress enact federal legislation implementing a data protection statute modeled after the Comprehensive Environmental Response, Compensation, and Liability Act.</description><subject>Comparative analysis</subject><subject>Computer crimes</subject><subject>Data security</subject><subject>Economic incentives</subject><subject>Environmental remediation</subject><subject>Harm principle (Ethics)</subject><subject>Laws, regulations and rules</subject><subject>Liability for environmental damages</subject><subject>Prevention</subject><subject>Privacy, Right of</subject><issn>1942-678X</issn><fulltext>true</fulltext><rsrctype>article</rsrctype><creationdate>2021</creationdate><recordtype>article</recordtype><recordid>eNptjEtLxDAUhbNQcBz9DwXXlbxu0rir42OEAUEU3A23yU2MdDrQ1P9vUTdCOYsDH985J2wlnJa1sc37GTsv5ZNzDaD0ilUvlL56nPKQqjucsLodCf0HlZuq_QEX7DRiX-jyr9fs7eH-dbOtd8-PT5t2VyfBQdZCCrRAMQhpyTrfuYYLbbjyQUFwaGXURnFoDGkdTeisV7azDgVH4wjUml39_ibsaZ-HeJxG9Idc_L41BrQADXK26gUr0UAj9seBYp7xP_96wZ8T6JD9wuAbf5xVuw</recordid><startdate>20210322</startdate><enddate>20210322</enddate><creator>Mckibbin, Kyle</creator><general>Vanderbilt University, School of Law</general><scope>ILT</scope></search><sort><creationdate>20210322</creationdate><title>Regulating Data Breaches: A Data</title><author>Mckibbin, Kyle</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-LOGICAL-g1052-121a75efd127e79cb98014603cd35d9a72f4630586e44f6db7c37b79a10a69e53</frbrgroupid><rsrctype>articles</rsrctype><prefilter>articles</prefilter><language>eng</language><creationdate>2021</creationdate><topic>Comparative analysis</topic><topic>Computer crimes</topic><topic>Data security</topic><topic>Economic incentives</topic><topic>Environmental remediation</topic><topic>Harm principle (Ethics)</topic><topic>Laws, regulations and rules</topic><topic>Liability for environmental damages</topic><topic>Prevention</topic><topic>Privacy, Right of</topic><toplevel>peer_reviewed</toplevel><toplevel>online_resources</toplevel><creatorcontrib>Mckibbin, Kyle</creatorcontrib><collection>Gale OneFile: LegalTrac</collection><jtitle>Vanderbilt journal of entertainment and technology law</jtitle></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext</fulltext></delivery><addata><au>Mckibbin, Kyle</au><format>journal</format><genre>article</genre><ristype>JOUR</ristype><atitle>Regulating Data Breaches: A Data</atitle><jtitle>Vanderbilt journal of entertainment and technology law</jtitle><date>2021-03-22</date><risdate>2021</risdate><volume>23</volume><issue>3</issue><spage>648</spage><pages>648-</pages><issn>1942-678X</issn><abstract>Collecting and processing large amounts of personal data has become a fundamental feature of the modern economy. Personal data, combined with good data analytics, are valuable to businesses as they can provide highly detailed information about individual preferences and behaviors. This data collection can also be valuable to the consumer as it generates innovative products and digital platforms. The era of big data promises great rewards, but it is not without its costs. Data breaches, or the release of personal data into unwanted hands, are pervasive and increasingly massive in scale. Despite the personal privacy harm caused by data breaches, businesses can largely externalize the costs of these breaches to the public. While privacy harm is undoubtedly an important issue, the release of data generates arguably more significant social costs. This Note argues that policy makers should view the unwanted release of data as a form of pollution that dilutes critical public goods. As such, an effective regulatory solution to data breaches should mirror the current regulatory approaches to environmental pollution. Like the physical environment, the data environment is a complex and highly interconnected system; accordingly, there is unlikely to be a single best way to regulate it. Thus far, the United States has approached data regulation in a stepwise and targeted fashion, much like environmental regulation. This approach has some advantages, but there is a pressing need for more comprehensive regulation. Current proposals point to omnibus privacy laws like the European Union's General Data Protection Regulation and the California Consumer Privacy Act as a solution. However, these regulations are ultimately privacy focused and impose high costs on the data economy. To balance these concerns, this Note proposes that Congress enact federal legislation implementing a data protection statute modeled after the Comprehensive Environmental Response, Compensation, and Liability Act.</abstract><pub>Vanderbilt University, School of Law</pub></addata></record>
fulltext fulltext
identifier ISSN: 1942-678X
ispartof Vanderbilt journal of entertainment and technology law, 2021-03, Vol.23 (3), p.648
issn 1942-678X
language eng
recordid cdi_gale_infotracmisc_A665415452
source HeinOnline Law Journal Library; Alma/SFX Local Collection
subjects Comparative analysis
Computer crimes
Data security
Economic incentives
Environmental remediation
Harm principle (Ethics)
Laws, regulations and rules
Liability for environmental damages
Prevention
Privacy, Right of
title Regulating Data Breaches: A Data
url https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-01-23T20%3A53%3A10IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-gale&rft_val_fmt=info:ofi/fmt:kev:mtx:journal&rft.genre=article&rft.atitle=Regulating%20Data%20Breaches:%20A%20Data&rft.jtitle=Vanderbilt%20journal%20of%20entertainment%20and%20technology%20law&rft.au=Mckibbin,%20Kyle&rft.date=2021-03-22&rft.volume=23&rft.issue=3&rft.spage=648&rft.pages=648-&rft.issn=1942-678X&rft_id=info:doi/&rft_dat=%3Cgale%3EA665415452%3C/gale%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_id=info:pmid/&rft_galeid=A665415452&rfr_iscdi=true