Sergio Maldonado
Masters of Privacy
Interviews and updates at the intersection of marketing, data, privacy, and technology. With an eye on a human-centric, demand-led future in which transparency, control, and personal agency play a crucial role. Sergio Maldonado (host) is a triple-qualified lawyer (California, England & Wales, Spain), entrepreneur, investor, guest lecturer at various universities. LL.M in IT & Internet Law, FIP, CIPP/E/US, CIPT. www.mastersofprivacy.com
Author
Sergio Maldonado
Category
Podcast website
Latest episode
Jun 21, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Matthew Junod: the US-based DPO in the face of AI governance 01.12.2024 28:02
How is the role of the DPO (Data Protection/Privacy Officer) evolving in the US? What is the best approach to managing AI governance once a privacy program has been implemented? Matt Junod is a US privacy attorney and Florida native with a prior background in network engineering and security. He has worked in-house, rolling out and managing data protection programs as well as dealing with security...
Robert Bateman: the EDPB’s Opinion on auditing subprocessors and the future of Meta’s unskippable ads 25.11.2024 32:27
Robert Bateman is a data protection writer, trainer, and consultant. He has published innumerable articles on the topic, as well as led panel discussions and interviewed key well-known figures in the space on stage, at well-known privacy conferences. Besides freelancing as content creator, he is an associate with Act Now Training and a Subject Matter Expert with Heward Mills, a data protection con...
Newsroom: Fall 2024 18.11.2024 16:46
Time for a Newsroom summarizing everything that’s happened in our usual areas of focus, although we are dropping the last two (Zero-Party Data and Future of media) this time around. ePrivacy & Regulatory Updates Enforcement On September 5th, the CNIL fined CEGEDIM SANTÉ 800,000 euros for processing health data without authorization . The healthcare software provider collected sensitive personal i...
Peter Craddock: ePrivacy exceptions, advertising, analytics, the limits of consent and server-side processing 10.11.2024 59:13
The EDPB has finally adopted its much feared Guidelines on the scope of article 5.3 of the ePrivacy Directive, but consent may still be avoided in some cases not specifically covered by an exemption (e.g., analytics). Absent such an exception, and in light of dismal consent rates, publishers and platforms have embraced highly controversial “Consent or Pay” models. Plan C? Server-side processing (C...
Lukasz Olejnik: Propaganda, misinformation, the DSA, Section 230, and the US elections 03.11.2024 28:29
Dr Lukasz Olejnik (@lukOlejnik), LL.M, is an independent cybersecurity, privacy and data protection researcher and consultant. Senior Visiting Research Fellow of the Department of War Studies, King’s College London. He holds a Computer Science PhD at INRIA (French Institute for Research in Digital Science and Technology), and LL.M. from University of Edinburgh. He worked at CERN (European Organisa...
Ben Winokur: data anonymization through AI-generated synthetic data 27.10.2024 33:35
Can we leverage AI-generated synthetic data as a privacy-enhancing or data anonymization solution? How compatible is it with Data Clean Rooms? Will there be a path to effectively anonymize unstructured data? Ben Winokur is the co-founder and CEO of Subsalt, the leading platform for anonymous synthetic data. Prior to Subsalt, Ben worked in a variety of legal, product, and operational roles at Passp...
Monica Meiterman-Rodriguez: automation, data minimization and comparative law in DSRs (US focus) 20.10.2024 37:48
Monica Meiterman-Rodriguez is a Partner at Tueoris, an international privacy and security consulting firm, currently residing in Barcelona. She utilizes her US law degree and her experience in data protection and privacy to assist global clients in developing, maintaining, or growing their privacy programs. She has experience supporting compliance across global regulations including US state and f...
Simon Hania (Uber): Uber Ads, vendor audits, location data, AI, and the role of the DPO 13.10.2024 28:41
Simon Hania is Global Data Protection Officer at Uber, heading the team that independently advises on and monitors Ubers compliance with data protection laws. In the past Simon held the position of VP Privacy & Security at TomTom and before that various positions in IT service management. Simon is a trained engineer who has learned to love the law. References: Simon Hania on LinkedIn Masters of Pr...
AI governance, MHMD, and third-party risks at PSR 2024 06.10.2024 33:00
The IAPP’s annual “Privacy. Security. Risk.” event took place in Los Angeles last week. Both Celine Takatsuno and Sergio Maldonado attended, took some notes, and now share their experiences and takeaways. References: Sergio Maldonado (Medium): PSR 2024 Takeaway (DPAs, Vendor Audits, MHMD Act) Mike Hintze: Blog post series on Washington State’s My Health My Data Act IAPP: Agenda and speakers at PS...
Jonathan Mendez: making the most of first-party data in the age of AI 29.09.2024 42:15
Jonathan Mendez has been a founder and leader in Adtech and Martech for two decades, with a focus on building first-party data products to optimize media performance. He is the founder and CEO at Neuralift AI, having prior to that been Chief Digital Officer at a major cruise line, and having also spent five years building composable CDPs (Customer Data Platform) for global retail brands and telco...
Heidi Saas: AI compliance for MarTech vendors and data controllers 22.09.2024 28:57
What extra steps should data processors and controllers worry about now that every cloud-based tool is somehow AI-powered? A basic transparency principle is common across FIPPs, governance frameworks and existing AI regulations (EU, Colorado), but even that can sometimes become a luxury. Attorney Heidi Saas (CIPP/US) has over eighteen years of experience in consumer rights, six years in data pri...
Daniel Jaye: non-deprecated cookies (II), hyper-federated data, p3p and publishers 16.09.2024 23:14
This is our second interview analyzing the impact of Google’s decision not to deprecate third-party cookies on its Chrome browser. Daniel Jaye is a seasoned technology industry executive and currently is CEO and founder of Aqfer, a Marketing Data Platform on top of which businesses can build their own MarTech and AdTech solutions. Daniel has provided strategic, tactical and technology advisory se...
Robin de Wouters: non-deprecated cookies, legitimate interest and small businesses 08.09.2024 23:57
Earlier this summer, Google announced that its Chrome browser would after all keep third party cookies. This interview with Robin de Wouters is the first of two episodes exploring the consequences of that update from the point of view of our usual stakeholders (DPOs, CMOs, CDOs). Robin de Wouters is the Director General for the Federation of European Data & Marketing (FEDMA), in Brussels. He has...
Newsroom: Summer 2024 03.09.2024 28:07
Ok, the summer is nearly over, which means it is time for a Newsroom summarizing everything that’s happened in the last two months at the intersection of marketing, data, privacy and technology. California and the FTC have more specific weight on our list this time around - perhaps because much of Europe, including regulators and hackers, was OOO during the entire month of August. So, expect to h...
Jay Averitt: the evolving role of the Privacy Engineer, technical privacy reviews and DPIAs 30.08.2024 27:55
Jay Averitt is currently a Senior Privacy Product Manager at Microsoft, where he manages technical privacy reviews involving Microsoft365 products including CoPilot, GPT, and other LLM products. He was previously a Privacy Engineer at Twitter, where he managed technical privacy reviews across the platform. He’s been working in privacy for over a decade as both a privacy technologist and a privacy...
Nick Manning: Advertising, Who Cares? 25.08.2024 38:10
Nick Manning is a commentator, author and speaker on advertising, with a specialization in media. He co-founded Manning Gottlieb Media in 1990, and following its purchase by Omnicom he became CEO of the OMD UK Group. He also co-founded OPera, the media negotiation arm for OMD and PHD. In 2007 Nick joined Ebiquity as Chief Operating Officer before becoming responsible for Ebiquity’s non-UK based o...
Tony Fish: Is our philosophy of data consistent with our approach to privacy and data ethics? 19.08.2024 35:21
Tony Fish is an investor, author and self-confessed maverick. He has been building digital businesses since 1990, with a first exit in 1995 and many businesses founded, co-founded, sold and listed after that. He thrives in complex, groundbreaking and uncertain environments, being currently focused on rethinking corporate governance models, ethics and AI, data policy and evidence-based decision mak...
Newsroom: Spring 2024 19.06.2024 22:00
We are closing this season with a Spring Newsroom before we officially kick off the summer, summarizing everything that’s happened in the past quarter across our usual five sections: ePrivacy (enforcement, regulatory updates), MarTech / AdTech , AI / Competition / Digital Markets , PETs / Zero-Party Data , Future of media . This includes: EDPB’s ChatGPT Task Force report EU Digital Wallets Privac...
John Cavanaugh: Privacy as a grassroots movement 10.06.2024 32:39
John Cavanaugh is a founding member of the Plunk Foundation, a non-profit dedicated to empowering individuals and communities so they have autonomy over their digital identities and protect their sensitive information. John is helping promote digital data privacy for women, children, veterans, and marginalized communities. Our mission today: exploring a grassroots approach to privacy or data prote...
Adrian Doerk: digital identity, digital wallets and data protection 03.06.2024 20:23
Adrian Doerk is co-founder of Lissi GmbH and co-coordinator of the IDunion research project. He has extensive experience in the rollout of digital wallets, specializing in the European digital identity wallet (EUDI-Wallet) under the eIDAS 2.0 Regulation. Adrian has helped us answer a few important questions on this topic: How much of our lives will soon be intermediated through digital wallets or...
Brian Focht: Can the American Privacy Rights Act find a path to survival? 28.05.2024 37:00
Does the inclusion of both a private right of action and a general preemption of overlapping state laws (not limited to privacy, but also including AI or confidential information) condemn the APRA to the fire? Brian Focht is a cybersecurity and data privacy attorney practicing in Charlotte, North Carolina. His legal practice is focused on helping clients ranging from individuals to international c...
Alan Chapell: The many struggles of Google’s Privacy Sandbox, and how to deploy it in compliance with EU and US privacy laws 22.05.2024 30:43
Can Google overcome competition and performance concerns to make the Privacy Sandbox a reality? Does it really matter in terms of privacy compliance, in the face of the EU ePrivacy Directive? How would Universal Opt-Outs affect the Topics API in the US? Alan Chapell is outside privacy and AI counsel for dozens of AdTech and Mart¿Tech companies. He started his career in the digital space in 1997 at...
Stephen Almond (ICO): data protection law as a primary tool to ensure AI governance 06.05.2024 25:04
“There is a UK AI Regulation - It is called the UK GDPR” (John Edwards, February 2024). Stephen Almond is Executive Director for Regulatory Risk at the UK’s Information Commissioner’s Office (ICO), leading the teams charged with engineering information rights into the fabric of new ideas, technologies and business models as part of our dynamic digital economy, including through the Digital Regulat...
Amy Worley: US privacy compliance for B2B startups, cross-border AI regulation, and a first glance at the American Privacy Rights Act 15.04.2024 29:33
Amy Worley is Managing Director at BRG, a global leader in data protection, information security, and AI governance. A licensed attorney, certified privacy professional, and certified information systems security professional, Amy formerly served as the Chief Privacy Officer for a billion-dollar pharmaceutical and medical device company and now serves as a fractional Data Protection Officer for se...
Luke Mulks: Brave’s privacy-preserving ads, publisher dilemmas, AI, and Google’s Privacy Sandbox 09.04.2024 48:00
Luke Mulks is VP of Business Operations at Brave Software, makers of the Brave browser. He has previously worked in AdTech and print publishing, and he has also founded a few businesses. He is in charge of new business initiatives and strategic revenue growth and oversees the BAT community. Our wide-range conversation has encompassed new business models for media owners, privacy-preserving ads, p...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.