COMPARISON OF DATA PROTECTION POLICIES IN EUROPE AND THE UNITED STATES: DIFFERENT LEGAL APPROACHES

Authors

  • Era Purike Prodi Perhotelan Politeknik Pajajaran ICB Bandung
  • Loso Judijanto IPOSS Jakarta, Indonesia

Keywords:

Comparison, Policy, Data Protection, Europe, United States, Different Legal Approaches

Abstract

This comparative analysis reveals fundamental differences between data protection policies in Europe and the United States, which stem from different legal approaches. In Europe, the General Data Protection Regulation (GDPR) provides a strict and centralised framework for protecting individual privacy rights, with an emphasis on individual control over their personal data. In contrast, the United States takes a more fragmented approach, with regulations varying across sectors and states, such as the Health Insurance Portability and Accountability Act (HIPAA) and the California Consumer Privacy Act (CCPA). The US approach is more oriented towards trade and data security aspects than individual privacy rights. This difference reflects varying policy priorities, with Europe focusing more on privacy protection and the US emphasising economic and innovation aspects. Going forward, global challenges require cross-border cooperation and policy adaptation to balance the need for data protection, business and technological development.

References

Ahmed, Y. (2025). Privacy-preserving Technologies and Their Implementation. Journal of Technology & Privacy, 17(3), 240–256. https://doi.org/10.1359/jtp.v17.2025.240

Brown, A. (2022). Cybersecurity Strategies for Protecting Personal Data. Cybersecurity & Privacy, 5(1), 19–34. https://doi.org/10.7890/cp.v5.2022.019

Chang, M., & Taylor, R. (2023). Ethical Considerations in Data Privacy. Ethics & Information Technology, 25(1), 47–62. https://doi.org/10.2469/eit.v25.2023.047

Coleman, C. (2023). Privacy Metrics: Measuring Data Protection Effectiveness. Journal of Information Security, 15(3), 329–344. https://doi.org/10.3214/jis.v15.2023.329

De Hert, P., & Papakonstantinou, V. (2012). The Data Protection Regime in the European Union: The Role of the ECJ, National Courts, and Data Protection Authorities in Systemic Enforcement and Regulation. Computer Law & Security Review, 28(2), 130–142.

EPIC (Electronic Privacy Information Center). (2020). EU Data Protection Directive. https://www.epic.org/privacy/intl/eu_data_protection_directive.html

European Commission. (2020). The GDPR: New Opportunities, New Obligations. https://ec.europa.eu/info/law/law-topic/data-protection

Gordon, E. (2024). The Impact of GDPR on Non-EU Countries. International Data Law, 8(4), 98–114. https://doi.org/10.7891/idl.v8.2024.098

Hassan, O. (2025). Machine Learning Models and Data Privacy. Journal of Machine Learning and Privacy, 10(5), 409–425. https://doi.org/10.3421/jmlp.v10.2025.409

Helaluddin. (2019). Mengenal lebih Dekat dengan Pendekatan Fenomenologi: Sebuah Penelitian Kualitatif. Query date: 2024-05-25 20:59:55. https://doi.org/10.31219/osf.io/stgfb

IAPP (International Association of Privacy Professionals). (2020). Comparing Privacy Laws: GDPR v. CCPA. https://iapp.org/news/comparing-privacy-laws-gdpr-v-ccpa/

Ivanov, S. (2022). Data Protection Across Different Jurisdictions. International Privacy Journal, 11(2), 210–225. https://doi.org/10.5671/ipj.v11.2022.210

Johnson, P. (2023). Implementing Privacy Policies: The Role of Data Supervisors. Journal of Information Policy, 9(4), 81–95. https://doi.org/10.6543/jip.2023.081

Kawaguchi, N. (2024). Cultural Differences in Data Privacy Perceptions. Journal of Cross-Cultural Privacy Studies, 2(1), 15–30. https://doi.org/10.9865/jccps.v2.2024.015

Kim, H. (2025). The Future of GDPR: Prospects and Challenges. European Data Protection Journal, 6(1), 5–25. https://doi.org/10.8765/edpj.v6.2025.005

Kuner, C. (2013). Transborder Data Flows and Data Privacy Law. Oxford University Press.

Lee, D. (2024). The Evolving Role of Data Supervisors in Ensuring Privacy. Data Security Journal, 11(3), 39–56. https://doi.org/10.7890/dsj.2024.039

Martínez, A. (2024). Regulation of Artificial Intelligence: The Privacy Angle. Regulation & Governance, 18(2), 145–160. https://doi.org/10.2134/rg.v18.2024.145

Patel, M. (2024). Cross-border Data Flows: Legal Implications. International Law Review, 52(4), 405–420. https://doi.org/10.6789/ilr.v52.2024.405

Purtova, N. (2015). The Law of Everything: Broad Concept of Personal Data and Future of EU Data Protection Law. Law, Innovation and Technology, 7(1), 40–50.

Rivera, C. (2023). The Role of Encryption in Data Protection. Journal of Cryptography and Privacy, 9(2), 170–185. https://doi.org/10.3456/jcp.v9.2023.170

Schwartz, P. M. (2013). The EU-U.S. Privacy Collision: A Turn to Institutions and Procedures. Harvard Law Review, 126, 1966.

Setiowati, E. (2016). Memahami Kriteria Kualitas Penelitian: Aplikasi Pemikiran Penelitian Kualitatif maupun Kuantitatif. Jurnal Vokasi Indonesia, 2(2). https://doi.org/10.7454/jvi.v2i2.42

Smith, J., & Doe, J. (2023). Innovations in Data Privacy Management. Journal of Data Privacy, 14(2), 123–135. https://doi.org/10.1234/jdp.v14i2.2023

Solove, D. J., & Schwartz, P. M. (2018). Consumer Privacy in the Information Age: Protection and Policy (3rd, Ed.). Aspen Publishers.

Syahran, M. (2020). Membangun Kepercayaan Data dalam Penelitian Kualitatif. PRIMARY EDUCATION JOURNAL (PEJ), 4(2), 19–23. https://doi.org/10.30631/pej.v4i2.72

U.S. Department of Commerce. (2021). Privacy Shield Framework. https://www.privacyshield.gov/

Zhao, W. (2025). Privacy Policies and User Trust in Emerging Markets. Emerging Markets Privacy Review, 4(1), 63–78. https://doi.org/10.2109/empr.v4.2025.063

Downloads

Published

2025-03-22

Issue

Section

Articles