Summary

Contact us

Biden's New Approach to US Personal Data Transfers

The Biden Administration issued an executive order authorizing the Department of Justice (DOJ) and other federal agencies to take steps to prevent “the large-scale transfer of Americans’ personal data to countries of concern.” It represents an effort by the administration to put more safeguards on the data broker industry and limit the ability of US adversaries to purchase granular data on American citizens.

The Biden Administration has enacted an executive order empowering the Department of Justice (DOJ) and additional federal bodies to act against the significant movement of personal data of Americans to nations deemed as threats. This move aims to bolster the protections around the data brokerage industry and curb the potential for adversaries of the U.S. to acquire detailed information about American individuals.

Furthermore, the order mandates the following actions:

  • It directs the Committee for the Assessment of Foreign Participation in the United States Telecommunications Services Sector (Committee) to continually manage the national security and law enforcement dangers posed by the access of 'countries of concern' to extensive sensitive personal data as outlined in this directive. This applies to any new or existing application or license the Committee reviews concerning submarine cable systems' landing or operation.
  • It calls upon the Secretary of Defense, the Secretary of Health and Human Services, the Secretary of Veterans Affairs, and the Director of the National Science Foundation to explore actions, including the enactment of regulations, guidance, or directives. These actions aim to block assistance that grants 'countries of concern' or specified entities access to the bulk sensitive personal data of U.S. citizens, particularly data related to personal health and human genomic information.
  • It instructs the Director of the Consumer Financial Protection Bureau (CFPB) to assess steps, in line with the CFPB's legal powers, to counter this threat dimension and to strengthen adherence to Federal consumer protection laws.
  • It requires the Attorney General, the Secretary of Homeland Security, and the Director of National Intelligence, in collaboration with leaders of pertinent agencies, to "recommend measures to identify, evaluate, and counteract national security threats stemming from past transfers of bulk sensitive personal data of U.S. individuals to countries of concern.

Read more

Contact us

FAQs

Our frequently questions

No items found.

Seamus Larroque

CDPO / CPIM / ISO 27005 Certified

Find out how iliomad can help your company.

[Map placeholder]
Only visible in production
38.709099
-39.182035
1.6
6d17042a3425c5b3
Your message has been received!
We'll get back to you as soon as possible.
Something went wrong, please try again.
Home

Discover our latest articles

View All Blog Posts
Abstract graphic showing a digital EU flag alongside a US state outline representing new AI regulation milestones in Europe and Rhode Island in July 2026
July 29, 2026
Healthtech
Regulations & Guidelines
DPIA
Biotech & Healthtech
Health Data Warehouse

EU Digital Omnibus Simplifies AI Act Obligations; Rhode Island Enacts AI Healthcare Laws

Regulation (EU) 2026/1744 streamlines EU AI Act compliance, while Rhode Island enacts three AI healthcare laws. Key updates for biotech and healthtech teams.

Diagram illustrating the EDPB three-criteria anonymisation test applied to clinical trial datasets under GDPR, with icons for record isolation, linkage and inference
July 13, 2026
DPIA
AI
Testimonial
EU Privacy Law
Regulations & Guidelines

EDPB Anonymisation Guidelines 2026 and Clinical Trial Data: What Life Sciences Organisations Must Know

EDPB Guidelines 02/2026 on anonymisation set new standards for clinical trial data. Learn the three-criteria test, enforcement lessons and compliance steps. iliomad.

Abstract digital network connecting a hospital, a regulatory building and a courtroom, representing AI governance, health data privacy and transatlantic data transfer risks in 2026
July 8, 2026
Healthtech
Regulations & Guidelines
DPIA
Regulation
LLMS

AI Triage, Biopharma Workbenches and Crumbling Data Bridges: iliomad Weekly Digest

NHS AI triage, Anthropic Claude Science, medical AI privacy risks, MHRA GxP guidance, EDPS ADM checklist and the EU-US data transfer threat explained.