Data Protection

Lord Clement-Jones Excerpts
Thursday 23rd March 2023

(1 year, 1 month ago)

Lords Chamber
Read Full debate Read Hansard Text Watch Debate Read Debate Ministerial Extracts
Viscount Camrose Portrait Viscount Camrose (Con)
- View Speech - Hansard - - - Excerpts

I thank the noble Lord for his question. My first observation is that Palantir is a very good illustration of some of the new technology providers we are seeing, because the value it was able to provide and demonstrate is very great. However, the perfectly legitimate concerns about data privacy are, none the less, equally great. Any organisation operating in the UK or processing the personal data of people in the UK must comply with our strong and internationally renowned data protection laws, and those laws set out robust penalties for those who do not, including, as necessary, Palantir. Lastly, with respect to the Secretary of State’s remarks, the intention is by no means to reduce the requirement for data protection, merely in some cases to make it more straightforward to demonstrate that the requirements are being met.

Lord Clement-Jones Portrait Lord Clement-Jones (LD)
- View Speech - Hansard - -

My Lords, I join in welcoming the noble Viscount to the Dispatch Box in his role as the first Minister for AI and IP—I think it is the first time those two responsibilities have been joined together. I wish him every success. Given that there is a new data protection Bill in the Commons, does he agree that it would be highly damaging to our AI developers if we were to diverge too widely from the EU GDPR and risk access to the datasets on which they rely so heavily?

Viscount Camrose Portrait Viscount Camrose (Con)
- View Speech - Hansard - - - Excerpts

I thank the noble Lord and pay tribute to his expertise and knowledge in the area, of which I look forward to taking full advantage. The EU adequacy requirements are uppermost in our minds in continuing our ability to maintain the data relationship with it. I note that EU adequacy does not set out any particular legislative requirements to maintain adequacy, judged as it is on outcomes of data protection rather than its specific mechanisms. I am told that there are currently 14 jurisdictions that meet EU adequacy but have different legislative approaches to acquiring it. Our well-founded ambition is to be among them as well.