The new General Data Protection Regulations (GDPR) promise to be a game changer for all organisations when they come into force in May 2018. Until now data protection may not have been a high priory issue in many workplaces, but with the introduction of fines of up to 20 Million Euros or 4% of a company’s global turnover for a major breech (whichever is higher), the stakes have certainly risen.
The new regulations focus on strengthening the rights of the individual and set out six key principles which companies will need to abide by:
To process data lawfully
To only process data for specific legitimate purposes
To ensure data is accurate and up to date
To process data in a form that permits the identification of the subject of no longer than is needed.
To ensure that data is adequate, relevant and limited in relation to the purpose
To process data in a manner that ensures appropriate security.
Another key change is that data now includes online identifier and location data which now means that an IP address, mobile device Ids and alike are classed as personal data, even if encrypted and therefore are covered by the regulations.
Anyone whose data you process must give their informed consent – it is no longer possible to assume that consent has been given and people may withdraw their consent at any time. Similarly, people will have the right to ensure that data held on them is erased and any inaccuracies corrected. They may also have the right to be told of a data breech in some circumstances.
Whilst it is still some months until the new regulations come into force, it’s essential that organisations act now to review their current practices and make any changes needed to ensure compliance in the future.
Key things to think about are:
The biggest risks for most organisations will be the risk of staff failing to take adequate care with data. Even the best systems may not prevent the member of staff who leaves a lap top on the train!
Therefore, staff education it key, so, take action now:
By acting now, you have time to get things in order before next May and to ensure you are ready for the full impact of the GDPR.
Find it useful? Please share!
Find it useful? Please share!
Last updated: 23 January 2020 | © KIS Bridging Loans 2024 | Terms & Conditions