SlideShare a Scribd company logo
1 of 46
Download to read offline
B2B TECH MARKETINGB2B TECH MARKETING
Are you ready?
The New General Data
Protection Regulation
(GDPR) is Here
Activate Webinar Sponsored by:
B2B Tech Marketing :: activatems.com 2
Today’s presenters
Stan Gibson
Moderator
Activate
Gregory Campbell
Governance, Regulatory and Legal Consultant
IBM Analytics
Richard Hogg
Global GDPR & Governance Offerings Evangelist
IBM Analytics
© 2017 IBM Corporation 3
Biographies
Richard Hogg
Global GDPR & Governance
Offerings Evangelist
With 15+ years experience across RM & ECM, In the last 6
years he's consulted with Fortune 10 organizations to assess
information governance initiatives and their cost and risk,
developing business cases with focused recommendations on
quick wins to further the clients objectives, by engaging with
them on executing an IG Program.
Client benefits have covered defensible disposal, ediscovery,
records and retention management, privacy, legacy data
cleanup and archiving. In the last 2.5 years consulting with
global organizations progressing their GDPR readiness &
execution.
Frequent Speaker annually across AIIM, ARMA, MER,
LegalTech, Insight & IPBA.
rghogg@us.ibm.com
Gregory Campbell
Governance, Regulatory
and Legal Consultant
As a subject matter expert for IBM, Gregory has a specialism
in the detail and the practicalities of the GDPR. Aside from
multiple client engagements and workshops, has spoken at
20+ events and webinars on the topic. He has a BA Hons. in
Law and an MA, both from the University of Cambridge. In
respect of his career prior to IBM, he trained with a Silver
Circle London legal firm, and subsequently worked as a
litigation and dispute resolution focussed solicitor in London,
culminating in a client appointed role on a significant arbitration
matter at a top-10 London legal firm. He moved into the legal
technology sector as a legal counsel and consultant for an
eDiscovery consultancy, followed by a senior role within the
litigation support function of a Magic Circle London legal firm,
concentrating on eDiscovery and Information Governance.
gcampbell@uk.ibm.com
IBM Confidential
© 2017 IBM Corporation 4
Poll Question 1
Does GDPR Apply to your Organisation?
1. Yes
2. No
3. Not sure
4. Don’t know what GDPR is
4
© 2017 IBM Corporation
GDPR
Background and Overview
Richard Hogg
Global GDPR & Governance Offerings Evangelist
rghogg@us.ibm.com
© 2017 IBM Corporation 6
Notice
Notice: Clients are responsible for ensuring their own compliance with various laws and regulations, including the
European Union General Data Protection Regulation. Clients are solely responsible for obtaining advice of
competent legal counsel as to the identification and interpretation of any relevant laws and regulations that may
affect the clients’ business and any actions the clients may need to take to comply with such laws and regulations.
The products, services, and other capabilities described herein are not suitable for all client situations and may
have restricted availability. IBM does not provide legal, accounting or auditing advice or represent or warrant that
its services or products will ensure that clients are in compliance with any law or regulation.
References to GDPR are references to REGULATION (EU) 2016/679 OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation)
© 2017 IBM Corporation 7
Are you Ready?
© 2017 IBM Corporation 8
The General Data Protection Regulation (GDPR) – Applies from 25 May 2018
§ The General Data Protection Regulation (GDPR) was
published on 4 May 2016, and will be immediately
applicable after a 2 year transition period on 25 May 2018
to any organisation which operates in the EU market
§ Introduces cross-industry 72H breach reporting to
regulators and without undue delay to individuals with
associated risk of severe reputational harm
§ Non-compliance has the potential to lead to huge fines of
up to €20m or 4% of total annual worldwide turnover, so
now is the time to build on the foundations you already
have to ensure you Protect, Govern and Know Your Data
© 2017 IBM Corporation 9
How Do You Rate Your Organisation’s Ability to Track Personal Data?
Hurwitz & Associates Survey Results 2017-3-2
https://securityintelligence.com/prepared-for-the-general-data-protection-regulation-gdpr-top-10-findings-from-hurwitz-associates-survey/
© 2017 IBM Corporation
Why does the EU GDPR matter
outside the EU?
Gregory Campbell
Governance, Regulatory and Legal Consultant, IBM Analytics
gcampbell@uk.ibm.com
© 2017 IBM Corporation 11
The GDPR Envisages a Global Reach – Extra-Territoriality
GDPR Article 3
© 2017 IBM Corporation 12
Data
Governance
Data
Privacy
Data
Security
EU Data
Protection
Data Protection in the EU – A Working Definition
© 2017 IBM Corporation 13
Privacy Shield and GDPR – How do they Interrelate?
© 2017 IBM Corporation
GDPR
Technical
Preparedness Overview
Gregory Campbell
Governance, Regulatory and Legal Consultant, IBM Analytics
gcampbell@uk.ibm.com
© 2017 IBM Corporation 15
GDPR Technical Preparedness – Key Duties, Obligations & Sanctions
Archiving
Legal
Curation
Records &
Retention
Administrative Fines
for Non
Compliance
Rights of EU
Data Subjects
Security of
Personal Data
Lawfulness
and Consent
Accountability
of Compliance
Design
and Default
© 2017 IBM Corporation 16
GDPR Technical Preparedness – Key Duties, Obligations & Sanctions
Archiving
Legal
Curation
Records &
Retention
Administrative Fines
for Non
Compliance
Rights of EU
Data Subjects
Security of
Personal Data
Lawfulness
and Consent
Accountability
of Compliance
Design
and Default
Rights of EU Data Subjects
• Enhanced rights for data subjects in the EU
including erasure, access and portability
ü Maintain data quality, amending, manipulating,
erasing and exporting it into usable formats in
both structured and unstructured environments
© 2017 IBM Corporation 17
GDPR Technical Preparedness – Key Duties, Obligations & Sanctions
Archiving
Legal
Curation
Records &
Retention
Administrative Fines
for Non
Compliance
Rights of EU
Data Subjects
Security of
Personal Data
Lawfulness
and Consent
Accountability
of Compliance
Design
and Default
Security of Personal Data
§ Need to ensure a level of security appropriate to
the risk including 72H breach reporting
ü Implement pervasive and intelligent internal and
external network defences and restrictions to
reduce data risks, including data minimisation,
pseudonymisation and encryption techniques
© 2017 IBM Corporation 18
GDPR Technical Preparedness – Key Duties, Obligations & Sanctions
Archiving
Legal
Curation
Records &
Retention
Administrative Fines
for Non
Compliance
Rights of EU
Data Subjects
Security of
Personal Data
Lawfulness
and Consent
Accountability
of Compliance
Design
and Default
Lawfulness and Consent
• Processing is only lawful if there is one of consent, necessity, legal obligation, protection, public interest, official authority or legitimate interest
ü Keep data subjects informed and manage requests in a transparent, efficient and effective manner, and consider appointing a DPO
© 2017 IBM Corporation 19
GDPR Technical Preparedness – Key Duties, Obligations & Sanctions
Archiving
Legal
Curation
Records &
Retention
Administrative Fines
for Non
Compliance
Rights of EU
Data Subjects
Security of
Personal Data
Lawfulness
and Consent
Accountability
of Compliance
Design
and Default
Accountability of Compliance
• Need to demonstrate compliance with the
principles relating to personal data processing
pervades throughout the GDPR
ü Consider how compliance can be proven,
including data protection impact assessments,
codes of conduct and proactive certification
© 2017 IBM Corporation 20
GDPR Technical Preparedness – Key Duties, Obligations & Sanctions
Archiving
Legal
Curation
Records &
Retention
Administrative Fines
for Non
Compliance
Rights of EU
Data Subjects
Security of
Personal Data
Lawfulness
and Consent
Accountability
of Compliance
Design
and Default
By Design and By Default
• Data controllers must implement technical and
organisational measures which demonstrate
compliance with GDPR core principles
ü Plan for this in the long term e.g. instrument and
manage data syndication and data lineage
© 2017 IBM Corporation 21
GDPR Technical Preparedness – Key Duties, Obligations & Sanctions
Archiving
Legal
Curation
Records &
Retention
Administrative Fines
for Non
Compliance
Rights of EU
Data Subjects
Security of
Personal Data
Lawfulness
and Consent
Accountability
of Compliance
Design
and Default
Administrative Fines for Non-Compliance
§ Regulators can impose Administrative Fines of up to €20m or 4% of total annual worldwide turnover, whichever is higher
§ Additional powers also/ alternatively available to regulators, including gaining access to data and premises, and to auditing
© 2017 IBM Corporation 22
Poll Question 2
Your main GPDR preparedness gaps are?
1. No risk readiness assessment done yet
2. No Personal Data Discovery/inventory yet
3. Know what and where our Personal Data is, but can’t
yet address Rights to Access, Rectify, Erasure…
4. Consent - not yet considered how to
5. Security & Breach Reporting Management
© 2017 IBM Corporation
GDPR
Architectural
Preparedness Overview
Richard Hogg
Global GDPR & Governance Offerings Evangelist
rghogg@us.ibm.com
© 2017 IBM Corporation 24
GDPR Architectural Preparedness
Archiving
Legal
Curation
Records &
Retention
Administrative Fines
for Non
Compliance
Rights of EU
Data Subjects
Security of
Personal Data
Lawfulness
and Consent
Accountability
of Compliance
Design
and Default
© 2017 IBM Corporation 25
GDPR Architectural Preparedness – Broad Requirements & Broad Capabilities
Lawfulness
and Consent
Design
and Default
Rights of EU
Data Subjects
Lawfulness
and Consent
Accountability
of Compliance
Security of
Personal Data
© 2017 IBM Corporation 26
GDPR Architectural Preparedness – Dynamic Policy Management
Dynamic Policy
Management:
Define what, why,
how long
Lawfulness
and Consent
Design
and Default
Rights of EU
Data Subjects
Lawfulness
and Consent
Accountability
of Compliance
Security of
Personal Data
P o l i c i e s R u l e s A u d i t
P r o c e s s e s An a l y s e s
© 2017 IBM Corporation 27
GDPR Architectural Preparedness – Implementation Services/ Data Management
Dynamic Policy
Management:
Define what, why,
how long
Implementation
Services:
Distribute policies
to data sources
Data Management
Lawfulness
and Consent
Design
and Default
Rights of EU
Data Subjects
Lawfulness
and Consent
Accountability
of Compliance
Security of
Personal Data
P o l i c i e s R u l e s A u d i t
P r o c e s s e s An a l y s e s
© 2017 IBM Corporation 28
GDPR Architectural Preparedness – Data Infrastructure
Dynamic Policy
Management:
Define what, why,
how long
Data
Infrastructure:
Control use,
align cost to
value
Implementation
Services:
Distribute policies
to data sources
Data Management
Email
Servers
User
Devices
& File
SharesECM &
Collaboration
Archive
Platform
Master
Data
Cloud &
Social
Databases &
Data Warehouse
Hadoop
Platform
Lawfulness
and Consent
Design
and Default
Rights of EU
Data Subjects
Lawfulness
and Consent
Accountability
of Compliance
Security of
Personal Data
P o l i c i e s R u l e s A u d i t
P r o c e s s e s An a l y s e s
© 2017 IBM Corporation 29
GDPR Architectural Preparedness – Security & Compliance Monitoring
Dynamic Policy
Management:
Define what, why,
how long
Data
Infrastructure:
Control use,
align cost to
value
Implementation
Services:
Distribute policies
to data sources
Data Management
Email
Servers
User
Devices
& File
SharesECM &
Collaboration
Archive
Platform
Master
Data
Cloud &
Social
Databases &
Data Warehouse
Hadoop
Platform
Lawfulness
and Consent
Design
and Default
Rights of EU
Data Subjects
Lawfulness
and Consent
Accountability
of Compliance
Security of
Personal Data
P o l i c i e s R u l e s A u d i t
P r o c e s s e s An a l y s e s
Security&ComplianceMonitoring
© 2017 IBM Corporation 30
GDPR Architectural Preparedness – Solution Framework
Dynamic Policy
Management:
Define what, why,
how long
Data
Infrastructure:
Control use,
align cost to
value
Implementation
Services:
Distribute policies
to data sources
Data Management
Email
Servers
User
Devices
& File
SharesECM &
Collaboration
Archive
Platform
Master
Data
Cloud &
Social
Databases &
Data Warehouse
Hadoop
Platform
Lawfulness
and Consent
Design
and Default
Rights of EU
Data Subjects
Lawfulness
and Consent
Accountability
of Compliance
Security of
Personal Data
P o l i c i e s R u l e s A u d i t
P r o c e s s e s An a l y s e s
Security&ComplianceMonitoring
© 2017 IBM Corporation 31
GDPR Architectural Preparedness – Solution Framework – IBM Technology
IBM Case Manager
Dynamic Policy
Management:
Define what, why,
how long
Data
Infrastructure:
Control use,
align cost to
value
Implementation
Services:
Distribute policies
to data sources
Data Management
Email
Servers
User
Devices
& File
SharesECM &
Collaboration
Archive
Platform
Master
Data
Cloud &
Social
Databases &
Data Warehouse
Hadoop
Platform
Lawfulness
and Consent
Design
and Default
Rights of EU
Data Subjects
Lawfulness
and Consent
Accountability
of Compliance
Security of
Personal Data
P o l i c i e s R u l e s A u d i t
P r o c e s s e s An a l y s e s
Security&ComplianceMonitoring
InfoSphereIBM Atlas
Optim
© 2017 IBM Corporation
GDPR
On-Ramps - Where To Start?
Richard Hogg
Global GDPR & Governance Offerings Evangelist
rghogg@us.ibm.com
© 2017 IBM Corporation 33
Sensitive
data
Common On-Ramps
Governance Layer
• Metadata & Policy Mgmt
• Compliance Mgmt
Data Management Layer
• Info Lifecycle Mgmt
Compliance & Security Layer
• Security & Privacy
• Info Gov Utility Services
• Subject Rights Mgmt
Users
Activity
Identity & Access
Mgmt
Incidents
correlation &
identification
CISO, DPO, CPO
Group Compliance
Legal
Security Incidents
Mgmt &
Reporting
DBA
DB & File Activity
Monitoring
Data & Policy
Governance
Retention &
Disposal
Data
Discovery &
Classification
Masking &
Encryption
Vunerabilities
Databases, Apps,
Infrastructure
Dynamic
blocking
© 2017 IBM Corporation 34
GDPR On-Ramp Capabilities
Data Assessment
(main products: Information Analyzer, Information Governance Catalog, StoredIQ)
Data Security
(main products: StoredIQ, Guardium)
Information Governance
(main products: IBM Information Governance Catalog, Atlas)
Consent Management
(main products: IBM Master Data Management, Consent asset from IBM Research)
Right to Erasure
( main products: IBM Case Manager, Atlas, StoredIQ, Optim)
Data Pseudonymization
(main product: IBM Optim Data Privacy)
© 2017 IBM Corporation 35
Data Assessment – Overview of GDPR QuickStart
Purpose
Approach
Outcome
• IBM’s GDPR Quick Start is a fast and effective engagement to help clients identify and assess specific data
and processes potentially impacted by the GDPR and start the client’s journey towards GDPR readiness
• Time-boxed, 8 to 10 week effort, led by senior IBM analytics consultants
• Applying IBM Analytics tools and methodology for structured and unstructured data, we provide a repeatable
process for determining where sensitive data is stored, how it is protected and processed.
• We shall present the results of executing this process against a selection of the client's systems, and a
proposal of next steps.
• From this, clients can assess the risk of GDPR to their organisation's specific landscape and agree on a
roadmap towards GDPR readiness, based on an extrapolation to the full exercise.
• Identification of sensitive data
• Assessment of information handling procedures
• Development of a roadmap to address GDPR gaps
• Data inventory report, presentation of assessment results and roadmap
• Prioritised roadmap of existing and required client initiatives
© 2017 IBM Corporation 36
Data Discovery & Mapping
In order to meet GDPR requirements, many organisations will need to improve
their understanding of the Personal Data they hold through a mapping exercise.
IBM’s Data Mapping approach is targeted and efficient. There are 4 key stages:
3
Step 1
Define objectives and
outputs
Step 2
Bottom-up
identification
Step 3
Top-down
identification
Clarify scope of mapping
exercise, purpose and format
of outputs.
Prepare and agree templates
for each stage.
Define appropriate IT and
business teams to cover
scope. Secure access to
SMEs.
Establish client approach to
defining personal data.
Establish catalogue of
Operational and MI data stores
with IT SME’s.
Define their owners, purpose
and content as much as
possible.
Validate IT understanding with
business.
Work with business SME’s to
identify further stores related
to their processes.
Define purpose, owner and
content.
Iterate back any
outstanding questions to IT
Step 4
Personal
data
identification
Work with business SME’s to
help establish which data is
directly or indirectly personal
data, taking account of
likelihood of joins across data
sets, given organisational and
technical measures.
Capture findings in
information catalogue
aligned to Art 30 Record of
Processing Activities
IBM can accelerate and
enhance the data mapping
activity through the use of
data discovery tools StoredIQ
and InfoSphere Information
Analyser, with IBM Atlas
providing an enterprise-class
Information Catalogue.
© 2017 IBM Corporation 37
Information Governance – Overview of Atlas to help with Article 30 Readiness
Purpose
Approach
Outcome
• GDPR Article 30 lists a set of requirements which have been loosely described by the GDPR consulting
community as “data mapping”
• Atlas includes a set of capabilities that can help enable organisations to map their data across the enterprise
• Supports creation and management of an inventory of all data sources (data oriented entities - processes,
applications, repositories, etc.)
• Extensible entity attributes (owners, stewards, location, etc.)
• Applicable to all data forms (structured, unstructured, electronic and physical)
• Information types (e.g. client account records) listed for each data source
• Each information type cross-referenced to relevant legislation and regulation
• IBM Atlas can help enable the organisational and technical measures
taken by a Organization as part of demonstrable efforts towards
satisfying the requirements of Article 30 as well as providing additional
value by supporting data subject rights (Articles 12-22) and the pervading
principles (Article 5)
Data sources map policies
(such as retention rules) to all
information types associated
with the data source
© 2017 IBM Corporation 38
Data Security – Overview of StoredIQ and Guardium for Data Security
Purpose
Approach
Outcome
• GDPR compliance requires that organizations take adequate measures to ensure that personally identifiable
information is secure
• Solution for Protection for GDPR Personal Data, Encryption of Personal Data and Assessment of Personal
Data processors and controllers
• Identify personally identifiable information across unstructured data sources utilizing StoredIQ
• Once files have been identified utilize Guardium to encrypt files for enhanced security
• Sensitive information is encrypted or access is limited to only those that
require it
© 2017 IBM Corporation 39
Consent Management – Overview of IBM Research Consent Mgmt Capabilities
Purpose
Approach
Outcome
• Consent is an important factor in lawfulness of personal data processing under GDPR
• Current approaches may not provide linkage between consent, data usage policies & sensitive data
• IBM’s approach provides linkage between the user’s data and the related consent
• Management of consent templates and user consent contracts
• Infrastructure level enforcement
• Helps automate proof of compliance reporting
• Enterprise tools for modelling and managing data governance and privacy policies
• Purpose based data access
• Increased transparency and consumer control over what data is
collected and for what it is used
© 2017 IBM Corporation 40
Right to Erasure – Overview of IBM Right To Erasure Capabilities
Purpose
Approach
Outcome
• EU Data Subjects are granted certain rights, including the right to data access, rectification and erasure
• Workflow Routing, Handling of Request incl. Review, Approval, Rejection
• 360 view of data
• What data is where
• What are the data retention rules & other legal/regulatory requirements
• Provide justification for disposal/retention & full auditing
• Handling of Client requests, process and fulfilment
• Client data erased or exceptions fully documented
• Privacy By Design
© 2017 IBM Corporation 41
Data Pseudonymization – Overview of IBM Optim Solution
Purpose
Approach
Outcome
• De-identify confidential data on-demand throughout the enterprise to help protect customer information yet
retain ability to provide personal data analysis
• Mask confidential data dynamically in data environments and in the cloud.
• Apply a range of masking techniques to transform personally-identifying information and other confidential
corporate data.
• Apply predefined actionable data privacy classifications and rules which help speed the time to
implementation and provide a method to report on compliance.
• Take advantage of pre-packaged data masking routines to transform complex data elements, such as credit
card numbers, email addresses and national identifiers, while retaining their contextual meaning.
• Helps protect sensitive data from misuse and fraud
• Provides a technical measure to help reduce the
potential for personal data being breached
BankCard BankCard
B2B Tech Marketing :: activatems.com 42
Q&A
Please submit your questions now!
Stan Gibson
Moderator
Activate
Gregory Campbell
Governance, Regulatory and Legal Consultant
IBM Analytics
Richard Hogg
Global GDPR & Governance Offerings Evangelist
IBM Analytics
© 2017 IBM Corporation 43
Poll Question 3
Your GDPR Next Steps are?
1. Decide on strategy & achieve board endorsement
2. Complete a risk readiness assessment
3. Complete a personal data discovery & inventory
4. Determine which of the on-ramps to prioritize
43
© 2017 IBM Corporation 44
Q&A
For further information
www.ibm.com/gdpr
© 2017 IBM Corporation 45
Are you Ready?
B2B Tech Marketing :: activatems.com 46
Thank You for Attending!
www.ibm.com/gdpr
www.activatems.com

More Related Content

What's hot

Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...
Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...
Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...Qualsys Ltd
 
GDPR practical info session for development
GDPR practical info session for developmentGDPR practical info session for development
GDPR practical info session for developmentTomppa Järvinen
 
An Essential Guide to EU GDPR
An Essential Guide to EU GDPRAn Essential Guide to EU GDPR
An Essential Guide to EU GDPRTripwire
 
GDPR in a nutshell
GDPR in a nutshellGDPR in a nutshell
GDPR in a nutshellInitio
 
GDPR and NIS Compliance - How HyTrust Can Help
GDPR and NIS Compliance - How HyTrust Can HelpGDPR and NIS Compliance - How HyTrust Can Help
GDPR and NIS Compliance - How HyTrust Can HelpJason Lackey
 
GDPR Cyber Insurance 11/1/2017
GDPR Cyber Insurance 11/1/2017GDPR Cyber Insurance 11/1/2017
GDPR Cyber Insurance 11/1/2017isc2-hellenic
 
Sophie's Privacy - a story about GDPR
Sophie's Privacy - a story about GDPRSophie's Privacy - a story about GDPR
Sophie's Privacy - a story about GDPRHans Demeyer
 
EY General Data Protection Regulation: Are you ready?
EY General Data Protection Regulation: Are you ready?EY General Data Protection Regulation: Are you ready?
EY General Data Protection Regulation: Are you ready?VYTIS MALECKAS
 
SureSkills GDPR - Discover the Smart Solution
SureSkills GDPR - Discover the Smart Solution SureSkills GDPR - Discover the Smart Solution
SureSkills GDPR - Discover the Smart Solution Google
 
EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer IT Governance Ltd
 
The GDPR’s impact on your business and preparing for compliance
The GDPR’s impact on your business and preparing for complianceThe GDPR’s impact on your business and preparing for compliance
The GDPR’s impact on your business and preparing for complianceIT Governance Ltd
 
The Essential Guide to GDPR
The Essential Guide to GDPRThe Essential Guide to GDPR
The Essential Guide to GDPRTim Hyman LLB
 
EU General Data Protection Regulation - Update 2017
EU General Data Protection Regulation - Update 2017EU General Data Protection Regulation - Update 2017
EU General Data Protection Regulation - Update 2017Cliff Ashcroft
 
The first steps towards GDPR compliance 
The first steps towards GDPR compliance The first steps towards GDPR compliance 
The first steps towards GDPR compliance IT Governance Ltd
 

What's hot (20)

GDPR for dummies
GDPR for dummies  GDPR for dummies
GDPR for dummies
 
Preparing for EU GDPR
Preparing for EU GDPRPreparing for EU GDPR
Preparing for EU GDPR
 
Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...
Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...
Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...
 
The GDPR for Techies
The GDPR for TechiesThe GDPR for Techies
The GDPR for Techies
 
GDPR practical info session for development
GDPR practical info session for developmentGDPR practical info session for development
GDPR practical info session for development
 
An Essential Guide to EU GDPR
An Essential Guide to EU GDPRAn Essential Guide to EU GDPR
An Essential Guide to EU GDPR
 
General Data Protection Regulation
General Data Protection RegulationGeneral Data Protection Regulation
General Data Protection Regulation
 
GDPR in a nutshell
GDPR in a nutshellGDPR in a nutshell
GDPR in a nutshell
 
GDPR 11/1/2017
GDPR 11/1/2017GDPR 11/1/2017
GDPR 11/1/2017
 
GDPR and NIS Compliance - How HyTrust Can Help
GDPR and NIS Compliance - How HyTrust Can HelpGDPR and NIS Compliance - How HyTrust Can Help
GDPR and NIS Compliance - How HyTrust Can Help
 
GDPR Cyber Insurance 11/1/2017
GDPR Cyber Insurance 11/1/2017GDPR Cyber Insurance 11/1/2017
GDPR Cyber Insurance 11/1/2017
 
Sophie's Privacy - a story about GDPR
Sophie's Privacy - a story about GDPRSophie's Privacy - a story about GDPR
Sophie's Privacy - a story about GDPR
 
EY General Data Protection Regulation: Are you ready?
EY General Data Protection Regulation: Are you ready?EY General Data Protection Regulation: Are you ready?
EY General Data Protection Regulation: Are you ready?
 
SureSkills GDPR - Discover the Smart Solution
SureSkills GDPR - Discover the Smart Solution SureSkills GDPR - Discover the Smart Solution
SureSkills GDPR - Discover the Smart Solution
 
EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer
 
The GDPR’s impact on your business and preparing for compliance
The GDPR’s impact on your business and preparing for complianceThe GDPR’s impact on your business and preparing for compliance
The GDPR’s impact on your business and preparing for compliance
 
3GRC approach to GDPR V 0.1 www.3grc.co.uk
3GRC  approach to GDPR V 0.1 www.3grc.co.uk3GRC  approach to GDPR V 0.1 www.3grc.co.uk
3GRC approach to GDPR V 0.1 www.3grc.co.uk
 
The Essential Guide to GDPR
The Essential Guide to GDPRThe Essential Guide to GDPR
The Essential Guide to GDPR
 
EU General Data Protection Regulation - Update 2017
EU General Data Protection Regulation - Update 2017EU General Data Protection Regulation - Update 2017
EU General Data Protection Regulation - Update 2017
 
The first steps towards GDPR compliance 
The first steps towards GDPR compliance The first steps towards GDPR compliance 
The first steps towards GDPR compliance 
 

Similar to 20170323 are you ready the new gdpr is here

1 -2-6 kista watson summit-gdpr ibm pov hogg-sm
1 -2-6 kista watson summit-gdpr ibm pov hogg-sm1 -2-6 kista watson summit-gdpr ibm pov hogg-sm
1 -2-6 kista watson summit-gdpr ibm pov hogg-smIBM Sverige
 
GDPR: the IBM journey to compliance
GDPR: the IBM journey to complianceGDPR: the IBM journey to compliance
GDPR: the IBM journey to complianceDataWorks Summit
 
BigID GDPR Compliance Automation Webinar Slides
BigID GDPR Compliance Automation Webinar SlidesBigID GDPR Compliance Automation Webinar Slides
BigID GDPR Compliance Automation Webinar SlidesDimitri Sirota
 
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...CIO Edge
 
Explain your algorithmic decisions for gdpr
Explain your algorithmic decisions for gdprExplain your algorithmic decisions for gdpr
Explain your algorithmic decisions for gdprPierre Feillet
 
General Data Protection Regulation (GDPR) - Moving from confusion to readiness
General Data Protection Regulation (GDPR) - Moving from confusion to readinessGeneral Data Protection Regulation (GDPR) - Moving from confusion to readiness
General Data Protection Regulation (GDPR) - Moving from confusion to readinessOmo Osagiede
 
Symantec Webinar Part 4 of 6 GDPR Compliance, What NAM Organizations Need to...
Symantec Webinar Part 4 of 6  GDPR Compliance, What NAM Organizations Need to...Symantec Webinar Part 4 of 6  GDPR Compliance, What NAM Organizations Need to...
Symantec Webinar Part 4 of 6 GDPR Compliance, What NAM Organizations Need to...Symantec
 
General Data Protection Regulation (GDPR) Compliance
General Data Protection Regulation (GDPR) ComplianceGeneral Data Protection Regulation (GDPR) Compliance
General Data Protection Regulation (GDPR) Complianceaccenture
 
Janrain Identity Cloud GDPR Assessment Kit
Janrain Identity Cloud GDPR Assessment Kit Janrain Identity Cloud GDPR Assessment Kit
Janrain Identity Cloud GDPR Assessment Kit Sean Bailey
 
The GDPR and its requirements for implementing data protection impact assessm...
The GDPR and its requirements for implementing data protection impact assessm...The GDPR and its requirements for implementing data protection impact assessm...
The GDPR and its requirements for implementing data protection impact assessm...IT Governance Ltd
 
Is your business GDPR ready?
Is your business GDPR ready?Is your business GDPR ready?
Is your business GDPR ready?Gareth Miller
 
GDPR: Data Privacy in the New
GDPR: Data Privacy in the NewGDPR: Data Privacy in the New
GDPR: Data Privacy in the Newaccenture
 
2 -2-6 kista watson summit-gdpr how ibm preparing hogg-sm
2 -2-6 kista watson summit-gdpr how ibm preparing hogg-sm2 -2-6 kista watson summit-gdpr how ibm preparing hogg-sm
2 -2-6 kista watson summit-gdpr how ibm preparing hogg-smIBM Sverige
 
Using GDPR to Transform Customer Experience
Using GDPR to Transform Customer ExperienceUsing GDPR to Transform Customer Experience
Using GDPR to Transform Customer ExperienceMongoDB
 
The GDPR for B2B Marketers
The GDPR for B2B MarketersThe GDPR for B2B Marketers
The GDPR for B2B MarketersDemandbase
 
GDPR & Data Privacy Guide - Free Download
GDPR & Data Privacy Guide - Free DownloadGDPR & Data Privacy Guide - Free Download
GDPR & Data Privacy Guide - Free DownloadVisitor Analytics
 
MMV Webinar 1. GDPR Perspectives. November 2017
MMV Webinar 1. GDPR Perspectives. November 2017MMV Webinar 1. GDPR Perspectives. November 2017
MMV Webinar 1. GDPR Perspectives. November 2017Match-Maker Ventures
 

Similar to 20170323 are you ready the new gdpr is here (20)

1 -2-6 kista watson summit-gdpr ibm pov hogg-sm
1 -2-6 kista watson summit-gdpr ibm pov hogg-sm1 -2-6 kista watson summit-gdpr ibm pov hogg-sm
1 -2-6 kista watson summit-gdpr ibm pov hogg-sm
 
GDPR: the IBM journey to compliance
GDPR: the IBM journey to complianceGDPR: the IBM journey to compliance
GDPR: the IBM journey to compliance
 
BigID GDPR Compliance Automation Webinar Slides
BigID GDPR Compliance Automation Webinar SlidesBigID GDPR Compliance Automation Webinar Slides
BigID GDPR Compliance Automation Webinar Slides
 
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
 
Explain your algorithmic decisions for gdpr
Explain your algorithmic decisions for gdprExplain your algorithmic decisions for gdpr
Explain your algorithmic decisions for gdpr
 
General Data Protection Regulation (GDPR) - Moving from confusion to readiness
General Data Protection Regulation (GDPR) - Moving from confusion to readinessGeneral Data Protection Regulation (GDPR) - Moving from confusion to readiness
General Data Protection Regulation (GDPR) - Moving from confusion to readiness
 
Symantec Webinar Part 4 of 6 GDPR Compliance, What NAM Organizations Need to...
Symantec Webinar Part 4 of 6  GDPR Compliance, What NAM Organizations Need to...Symantec Webinar Part 4 of 6  GDPR Compliance, What NAM Organizations Need to...
Symantec Webinar Part 4 of 6 GDPR Compliance, What NAM Organizations Need to...
 
General Data Protection Regulation (GDPR) Compliance
General Data Protection Regulation (GDPR) ComplianceGeneral Data Protection Regulation (GDPR) Compliance
General Data Protection Regulation (GDPR) Compliance
 
Ritz 4th-july-gdpr
Ritz 4th-july-gdprRitz 4th-july-gdpr
Ritz 4th-july-gdpr
 
Janrain Identity Cloud GDPR Assessment Kit
Janrain Identity Cloud GDPR Assessment Kit Janrain Identity Cloud GDPR Assessment Kit
Janrain Identity Cloud GDPR Assessment Kit
 
The GDPR and its requirements for implementing data protection impact assessm...
The GDPR and its requirements for implementing data protection impact assessm...The GDPR and its requirements for implementing data protection impact assessm...
The GDPR and its requirements for implementing data protection impact assessm...
 
Is your business GDPR ready?
Is your business GDPR ready?Is your business GDPR ready?
Is your business GDPR ready?
 
GDPR: Data Privacy in the New
GDPR: Data Privacy in the NewGDPR: Data Privacy in the New
GDPR: Data Privacy in the New
 
2 -2-6 kista watson summit-gdpr how ibm preparing hogg-sm
2 -2-6 kista watson summit-gdpr how ibm preparing hogg-sm2 -2-6 kista watson summit-gdpr how ibm preparing hogg-sm
2 -2-6 kista watson summit-gdpr how ibm preparing hogg-sm
 
Using GDPR to Transform Customer Experience
Using GDPR to Transform Customer ExperienceUsing GDPR to Transform Customer Experience
Using GDPR to Transform Customer Experience
 
What happens if you’re not ready for the GDPR?
What happens if you’re not ready for the GDPR?What happens if you’re not ready for the GDPR?
What happens if you’re not ready for the GDPR?
 
Are you GDPRed yet?
Are you GDPRed yet?Are you GDPRed yet?
Are you GDPRed yet?
 
The GDPR for B2B Marketers
The GDPR for B2B MarketersThe GDPR for B2B Marketers
The GDPR for B2B Marketers
 
GDPR & Data Privacy Guide - Free Download
GDPR & Data Privacy Guide - Free DownloadGDPR & Data Privacy Guide - Free Download
GDPR & Data Privacy Guide - Free Download
 
MMV Webinar 1. GDPR Perspectives. November 2017
MMV Webinar 1. GDPR Perspectives. November 2017MMV Webinar 1. GDPR Perspectives. November 2017
MMV Webinar 1. GDPR Perspectives. November 2017
 

Recently uploaded

Call Now ☎9870417354|| Call Girls in Dwarka Escort Service Delhi N.C.R.
Call Now ☎9870417354|| Call Girls in Dwarka Escort Service Delhi N.C.R.Call Now ☎9870417354|| Call Girls in Dwarka Escort Service Delhi N.C.R.
Call Now ☎9870417354|| Call Girls in Dwarka Escort Service Delhi N.C.R.riyadelhic riyadelhic
 
JAMNAGAR CALL GIRLS 92628/71154 JAMNAGAR
JAMNAGAR CALL GIRLS 92628/71154 JAMNAGARJAMNAGAR CALL GIRLS 92628/71154 JAMNAGAR
JAMNAGAR CALL GIRLS 92628/71154 JAMNAGARNiteshKumar82226
 
Call Girls In Noida Free Ad 24/7 Hours Online Call 9310659962 Shot 2000 Night...
Call Girls In Noida Free Ad 24/7 Hours Online Call 9310659962 Shot 2000 Night...Call Girls In Noida Free Ad 24/7 Hours Online Call 9310659962 Shot 2000 Night...
Call Girls In Noida Free Ad 24/7 Hours Online Call 9310659962 Shot 2000 Night...DelhiMahipalpur
 
Hire 💕 8617370543 Uttara Kannada Call Girls Service Call Girls Agency
Hire 💕 8617370543 Uttara Kannada Call Girls Service Call Girls AgencyHire 💕 8617370543 Uttara Kannada Call Girls Service Call Girls Agency
Hire 💕 8617370543 Uttara Kannada Call Girls Service Call Girls AgencyJia Oberoi
 
Call Now HIgh profile ☎9870417354|| Call Girls in Ghaziabad Escort Service De...
Call Now HIgh profile ☎9870417354|| Call Girls in Ghaziabad Escort Service De...Call Now HIgh profile ☎9870417354|| Call Girls in Ghaziabad Escort Service De...
Call Now HIgh profile ☎9870417354|| Call Girls in Ghaziabad Escort Service De...riyadelhic riyadelhic
 
Varanasi Call Girl 78709*93772 Call Girls in Varanasi Escort service book now
Varanasi  Call Girl 78709*93772 Call Girls in Varanasi Escort service book nowVaranasi  Call Girl 78709*93772 Call Girls in Varanasi Escort service book now
Varanasi Call Girl 78709*93772 Call Girls in Varanasi Escort service book nowapshanarani255
 
MYSORE CALL GIRLS ESCORT SER 92628/71154
MYSORE CALL GIRLS ESCORT SER 92628/71154MYSORE CALL GIRLS ESCORT SER 92628/71154
MYSORE CALL GIRLS ESCORT SER 92628/71154NiteshKumar82226
 
Call Now ☎9870417354|| Call Girls in Noida Sector 18 Escort Service Noida N.C.R.
Call Now ☎9870417354|| Call Girls in Noida Sector 18 Escort Service Noida N.C.R.Call Now ☎9870417354|| Call Girls in Noida Sector 18 Escort Service Noida N.C.R.
Call Now ☎9870417354|| Call Girls in Noida Sector 18 Escort Service Noida N.C.R.riyadelhic riyadelhic
 
Rajkot Call Girls Contact Number +919358341802 Call Girls In Rajkot
Rajkot Call Girls Contact Number +919358341802 Call Girls In RajkotRajkot Call Girls Contact Number +919358341802 Call Girls In Rajkot
Rajkot Call Girls Contact Number +919358341802 Call Girls In RajkotSivanyaPandeya
 
Guwahati ❣️ Call Girl 97487*63073 Call Girls in Guwahati Escort service book now
Guwahati ❣️ Call Girl 97487*63073 Call Girls in Guwahati Escort service book nowGuwahati ❣️ Call Girl 97487*63073 Call Girls in Guwahati Escort service book now
Guwahati ❣️ Call Girl 97487*63073 Call Girls in Guwahati Escort service book nowapshanarani255
 
+91-9899900591 Russian Call Girls In New Delhi Independent Russian Call Girls...
+91-9899900591 Russian Call Girls In New Delhi Independent Russian Call Girls...+91-9899900591 Russian Call Girls In New Delhi Independent Russian Call Girls...
+91-9899900591 Russian Call Girls In New Delhi Independent Russian Call Girls...kauryashika82
 
Call Girls in Karachi || 03274100048 || 50+ Hot Sexy Girls Available 24/7
Call Girls in Karachi || 03274100048 || 50+ Hot Sexy Girls Available 24/7Call Girls in Karachi || 03274100048 || 50+ Hot Sexy Girls Available 24/7
Call Girls in Karachi || 03274100048 || 50+ Hot Sexy Girls Available 24/7Sana Rajpoot
 
Radhika Call Girls In Jaipur 9358660226 Escorts service
Radhika Call Girls In Jaipur 9358660226 Escorts serviceRadhika Call Girls In Jaipur 9358660226 Escorts service
Radhika Call Girls In Jaipur 9358660226 Escorts servicerahul222jai
 
Karachi Sexy Girls || 03280288848 || Sex services in Karachi
Karachi Sexy Girls || 03280288848 || Sex services in KarachiKarachi Sexy Girls || 03280288848 || Sex services in Karachi
Karachi Sexy Girls || 03280288848 || Sex services in KarachiAwais Yousaf
 
9999266834 Call Girls In Noida Sector 37 (Delhi) Call Girl Service
9999266834 Call Girls In Noida Sector 37 (Delhi) Call Girl Service9999266834 Call Girls In Noida Sector 37 (Delhi) Call Girl Service
9999266834 Call Girls In Noida Sector 37 (Delhi) Call Girl Servicenishacall1
 
Call Girls In Lahore || 03274100048 ||Lahore Call Girl Available 24/7
Call Girls In Lahore || 03274100048 ||Lahore Call Girl Available 24/7Call Girls In Lahore || 03274100048 ||Lahore Call Girl Available 24/7
Call Girls In Lahore || 03274100048 ||Lahore Call Girl Available 24/7Sana Rajpoot
 
Call Girls in Saket (delhi) call me [8264348440 ] escort service 24X7
Call Girls in Saket (delhi) call me [8264348440 ] escort service 24X7Call Girls in Saket (delhi) call me [8264348440 ] escort service 24X7
Call Girls in Saket (delhi) call me [8264348440 ] escort service 24X7soniya singh
 
Call Now ☎9870417354|| Call Girls in Noida Sector 12 Escort Service Noida N.C.R.
Call Now ☎9870417354|| Call Girls in Noida Sector 12 Escort Service Noida N.C.R.Call Now ☎9870417354|| Call Girls in Noida Sector 12 Escort Service Noida N.C.R.
Call Now ☎9870417354|| Call Girls in Noida Sector 12 Escort Service Noida N.C.R.riyadelhic riyadelhic
 
Best VIP Call Girl Noida Sector 48 Call Me: 8700611579
Best VIP Call Girl Noida Sector 48 Call Me: 8700611579Best VIP Call Girl Noida Sector 48 Call Me: 8700611579
Best VIP Call Girl Noida Sector 48 Call Me: 8700611579diyaspanoida
 

Recently uploaded (20)

Call Now ☎9870417354|| Call Girls in Dwarka Escort Service Delhi N.C.R.
Call Now ☎9870417354|| Call Girls in Dwarka Escort Service Delhi N.C.R.Call Now ☎9870417354|| Call Girls in Dwarka Escort Service Delhi N.C.R.
Call Now ☎9870417354|| Call Girls in Dwarka Escort Service Delhi N.C.R.
 
JAMNAGAR CALL GIRLS 92628/71154 JAMNAGAR
JAMNAGAR CALL GIRLS 92628/71154 JAMNAGARJAMNAGAR CALL GIRLS 92628/71154 JAMNAGAR
JAMNAGAR CALL GIRLS 92628/71154 JAMNAGAR
 
Call Girls In Noida Free Ad 24/7 Hours Online Call 9310659962 Shot 2000 Night...
Call Girls In Noida Free Ad 24/7 Hours Online Call 9310659962 Shot 2000 Night...Call Girls In Noida Free Ad 24/7 Hours Online Call 9310659962 Shot 2000 Night...
Call Girls In Noida Free Ad 24/7 Hours Online Call 9310659962 Shot 2000 Night...
 
Hire 💕 8617370543 Uttara Kannada Call Girls Service Call Girls Agency
Hire 💕 8617370543 Uttara Kannada Call Girls Service Call Girls AgencyHire 💕 8617370543 Uttara Kannada Call Girls Service Call Girls Agency
Hire 💕 8617370543 Uttara Kannada Call Girls Service Call Girls Agency
 
Call Now HIgh profile ☎9870417354|| Call Girls in Ghaziabad Escort Service De...
Call Now HIgh profile ☎9870417354|| Call Girls in Ghaziabad Escort Service De...Call Now HIgh profile ☎9870417354|| Call Girls in Ghaziabad Escort Service De...
Call Now HIgh profile ☎9870417354|| Call Girls in Ghaziabad Escort Service De...
 
Varanasi Call Girl 78709*93772 Call Girls in Varanasi Escort service book now
Varanasi  Call Girl 78709*93772 Call Girls in Varanasi Escort service book nowVaranasi  Call Girl 78709*93772 Call Girls in Varanasi Escort service book now
Varanasi Call Girl 78709*93772 Call Girls in Varanasi Escort service book now
 
MYSORE CALL GIRLS ESCORT SER 92628/71154
MYSORE CALL GIRLS ESCORT SER 92628/71154MYSORE CALL GIRLS ESCORT SER 92628/71154
MYSORE CALL GIRLS ESCORT SER 92628/71154
 
Call Now ☎9870417354|| Call Girls in Noida Sector 18 Escort Service Noida N.C.R.
Call Now ☎9870417354|| Call Girls in Noida Sector 18 Escort Service Noida N.C.R.Call Now ☎9870417354|| Call Girls in Noida Sector 18 Escort Service Noida N.C.R.
Call Now ☎9870417354|| Call Girls in Noida Sector 18 Escort Service Noida N.C.R.
 
Rajkot Call Girls Contact Number +919358341802 Call Girls In Rajkot
Rajkot Call Girls Contact Number +919358341802 Call Girls In RajkotRajkot Call Girls Contact Number +919358341802 Call Girls In Rajkot
Rajkot Call Girls Contact Number +919358341802 Call Girls In Rajkot
 
Guwahati ❣️ Call Girl 97487*63073 Call Girls in Guwahati Escort service book now
Guwahati ❣️ Call Girl 97487*63073 Call Girls in Guwahati Escort service book nowGuwahati ❣️ Call Girl 97487*63073 Call Girls in Guwahati Escort service book now
Guwahati ❣️ Call Girl 97487*63073 Call Girls in Guwahati Escort service book now
 
+91-9899900591 Russian Call Girls In New Delhi Independent Russian Call Girls...
+91-9899900591 Russian Call Girls In New Delhi Independent Russian Call Girls...+91-9899900591 Russian Call Girls In New Delhi Independent Russian Call Girls...
+91-9899900591 Russian Call Girls In New Delhi Independent Russian Call Girls...
 
Call Girls in Karachi || 03274100048 || 50+ Hot Sexy Girls Available 24/7
Call Girls in Karachi || 03274100048 || 50+ Hot Sexy Girls Available 24/7Call Girls in Karachi || 03274100048 || 50+ Hot Sexy Girls Available 24/7
Call Girls in Karachi || 03274100048 || 50+ Hot Sexy Girls Available 24/7
 
➥🔝9953056974 🔝▻ Anand Vihar Call-girl in Women Seeking Men 🔝Delhi🔝 NCR
➥🔝9953056974 🔝▻ Anand Vihar Call-girl in Women Seeking Men 🔝Delhi🔝 NCR➥🔝9953056974 🔝▻ Anand Vihar Call-girl in Women Seeking Men 🔝Delhi🔝 NCR
➥🔝9953056974 🔝▻ Anand Vihar Call-girl in Women Seeking Men 🔝Delhi🔝 NCR
 
Radhika Call Girls In Jaipur 9358660226 Escorts service
Radhika Call Girls In Jaipur 9358660226 Escorts serviceRadhika Call Girls In Jaipur 9358660226 Escorts service
Radhika Call Girls In Jaipur 9358660226 Escorts service
 
Karachi Sexy Girls || 03280288848 || Sex services in Karachi
Karachi Sexy Girls || 03280288848 || Sex services in KarachiKarachi Sexy Girls || 03280288848 || Sex services in Karachi
Karachi Sexy Girls || 03280288848 || Sex services in Karachi
 
9999266834 Call Girls In Noida Sector 37 (Delhi) Call Girl Service
9999266834 Call Girls In Noida Sector 37 (Delhi) Call Girl Service9999266834 Call Girls In Noida Sector 37 (Delhi) Call Girl Service
9999266834 Call Girls In Noida Sector 37 (Delhi) Call Girl Service
 
Call Girls In Lahore || 03274100048 ||Lahore Call Girl Available 24/7
Call Girls In Lahore || 03274100048 ||Lahore Call Girl Available 24/7Call Girls In Lahore || 03274100048 ||Lahore Call Girl Available 24/7
Call Girls In Lahore || 03274100048 ||Lahore Call Girl Available 24/7
 
Call Girls in Saket (delhi) call me [8264348440 ] escort service 24X7
Call Girls in Saket (delhi) call me [8264348440 ] escort service 24X7Call Girls in Saket (delhi) call me [8264348440 ] escort service 24X7
Call Girls in Saket (delhi) call me [8264348440 ] escort service 24X7
 
Call Now ☎9870417354|| Call Girls in Noida Sector 12 Escort Service Noida N.C.R.
Call Now ☎9870417354|| Call Girls in Noida Sector 12 Escort Service Noida N.C.R.Call Now ☎9870417354|| Call Girls in Noida Sector 12 Escort Service Noida N.C.R.
Call Now ☎9870417354|| Call Girls in Noida Sector 12 Escort Service Noida N.C.R.
 
Best VIP Call Girl Noida Sector 48 Call Me: 8700611579
Best VIP Call Girl Noida Sector 48 Call Me: 8700611579Best VIP Call Girl Noida Sector 48 Call Me: 8700611579
Best VIP Call Girl Noida Sector 48 Call Me: 8700611579
 

20170323 are you ready the new gdpr is here

  • 1. B2B TECH MARKETINGB2B TECH MARKETING Are you ready? The New General Data Protection Regulation (GDPR) is Here Activate Webinar Sponsored by:
  • 2. B2B Tech Marketing :: activatems.com 2 Today’s presenters Stan Gibson Moderator Activate Gregory Campbell Governance, Regulatory and Legal Consultant IBM Analytics Richard Hogg Global GDPR & Governance Offerings Evangelist IBM Analytics
  • 3. © 2017 IBM Corporation 3 Biographies Richard Hogg Global GDPR & Governance Offerings Evangelist With 15+ years experience across RM & ECM, In the last 6 years he's consulted with Fortune 10 organizations to assess information governance initiatives and their cost and risk, developing business cases with focused recommendations on quick wins to further the clients objectives, by engaging with them on executing an IG Program. Client benefits have covered defensible disposal, ediscovery, records and retention management, privacy, legacy data cleanup and archiving. In the last 2.5 years consulting with global organizations progressing their GDPR readiness & execution. Frequent Speaker annually across AIIM, ARMA, MER, LegalTech, Insight & IPBA. rghogg@us.ibm.com Gregory Campbell Governance, Regulatory and Legal Consultant As a subject matter expert for IBM, Gregory has a specialism in the detail and the practicalities of the GDPR. Aside from multiple client engagements and workshops, has spoken at 20+ events and webinars on the topic. He has a BA Hons. in Law and an MA, both from the University of Cambridge. In respect of his career prior to IBM, he trained with a Silver Circle London legal firm, and subsequently worked as a litigation and dispute resolution focussed solicitor in London, culminating in a client appointed role on a significant arbitration matter at a top-10 London legal firm. He moved into the legal technology sector as a legal counsel and consultant for an eDiscovery consultancy, followed by a senior role within the litigation support function of a Magic Circle London legal firm, concentrating on eDiscovery and Information Governance. gcampbell@uk.ibm.com IBM Confidential
  • 4. © 2017 IBM Corporation 4 Poll Question 1 Does GDPR Apply to your Organisation? 1. Yes 2. No 3. Not sure 4. Don’t know what GDPR is 4
  • 5. © 2017 IBM Corporation GDPR Background and Overview Richard Hogg Global GDPR & Governance Offerings Evangelist rghogg@us.ibm.com
  • 6. © 2017 IBM Corporation 6 Notice Notice: Clients are responsible for ensuring their own compliance with various laws and regulations, including the European Union General Data Protection Regulation. Clients are solely responsible for obtaining advice of competent legal counsel as to the identification and interpretation of any relevant laws and regulations that may affect the clients’ business and any actions the clients may need to take to comply with such laws and regulations. The products, services, and other capabilities described herein are not suitable for all client situations and may have restricted availability. IBM does not provide legal, accounting or auditing advice or represent or warrant that its services or products will ensure that clients are in compliance with any law or regulation. References to GDPR are references to REGULATION (EU) 2016/679 OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation)
  • 7. © 2017 IBM Corporation 7 Are you Ready?
  • 8. © 2017 IBM Corporation 8 The General Data Protection Regulation (GDPR) – Applies from 25 May 2018 § The General Data Protection Regulation (GDPR) was published on 4 May 2016, and will be immediately applicable after a 2 year transition period on 25 May 2018 to any organisation which operates in the EU market § Introduces cross-industry 72H breach reporting to regulators and without undue delay to individuals with associated risk of severe reputational harm § Non-compliance has the potential to lead to huge fines of up to €20m or 4% of total annual worldwide turnover, so now is the time to build on the foundations you already have to ensure you Protect, Govern and Know Your Data
  • 9. © 2017 IBM Corporation 9 How Do You Rate Your Organisation’s Ability to Track Personal Data? Hurwitz & Associates Survey Results 2017-3-2 https://securityintelligence.com/prepared-for-the-general-data-protection-regulation-gdpr-top-10-findings-from-hurwitz-associates-survey/
  • 10. © 2017 IBM Corporation Why does the EU GDPR matter outside the EU? Gregory Campbell Governance, Regulatory and Legal Consultant, IBM Analytics gcampbell@uk.ibm.com
  • 11. © 2017 IBM Corporation 11 The GDPR Envisages a Global Reach – Extra-Territoriality GDPR Article 3
  • 12. © 2017 IBM Corporation 12 Data Governance Data Privacy Data Security EU Data Protection Data Protection in the EU – A Working Definition
  • 13. © 2017 IBM Corporation 13 Privacy Shield and GDPR – How do they Interrelate?
  • 14. © 2017 IBM Corporation GDPR Technical Preparedness Overview Gregory Campbell Governance, Regulatory and Legal Consultant, IBM Analytics gcampbell@uk.ibm.com
  • 15. © 2017 IBM Corporation 15 GDPR Technical Preparedness – Key Duties, Obligations & Sanctions Archiving Legal Curation Records & Retention Administrative Fines for Non Compliance Rights of EU Data Subjects Security of Personal Data Lawfulness and Consent Accountability of Compliance Design and Default
  • 16. © 2017 IBM Corporation 16 GDPR Technical Preparedness – Key Duties, Obligations & Sanctions Archiving Legal Curation Records & Retention Administrative Fines for Non Compliance Rights of EU Data Subjects Security of Personal Data Lawfulness and Consent Accountability of Compliance Design and Default Rights of EU Data Subjects • Enhanced rights for data subjects in the EU including erasure, access and portability ü Maintain data quality, amending, manipulating, erasing and exporting it into usable formats in both structured and unstructured environments
  • 17. © 2017 IBM Corporation 17 GDPR Technical Preparedness – Key Duties, Obligations & Sanctions Archiving Legal Curation Records & Retention Administrative Fines for Non Compliance Rights of EU Data Subjects Security of Personal Data Lawfulness and Consent Accountability of Compliance Design and Default Security of Personal Data § Need to ensure a level of security appropriate to the risk including 72H breach reporting ü Implement pervasive and intelligent internal and external network defences and restrictions to reduce data risks, including data minimisation, pseudonymisation and encryption techniques
  • 18. © 2017 IBM Corporation 18 GDPR Technical Preparedness – Key Duties, Obligations & Sanctions Archiving Legal Curation Records & Retention Administrative Fines for Non Compliance Rights of EU Data Subjects Security of Personal Data Lawfulness and Consent Accountability of Compliance Design and Default Lawfulness and Consent • Processing is only lawful if there is one of consent, necessity, legal obligation, protection, public interest, official authority or legitimate interest ü Keep data subjects informed and manage requests in a transparent, efficient and effective manner, and consider appointing a DPO
  • 19. © 2017 IBM Corporation 19 GDPR Technical Preparedness – Key Duties, Obligations & Sanctions Archiving Legal Curation Records & Retention Administrative Fines for Non Compliance Rights of EU Data Subjects Security of Personal Data Lawfulness and Consent Accountability of Compliance Design and Default Accountability of Compliance • Need to demonstrate compliance with the principles relating to personal data processing pervades throughout the GDPR ü Consider how compliance can be proven, including data protection impact assessments, codes of conduct and proactive certification
  • 20. © 2017 IBM Corporation 20 GDPR Technical Preparedness – Key Duties, Obligations & Sanctions Archiving Legal Curation Records & Retention Administrative Fines for Non Compliance Rights of EU Data Subjects Security of Personal Data Lawfulness and Consent Accountability of Compliance Design and Default By Design and By Default • Data controllers must implement technical and organisational measures which demonstrate compliance with GDPR core principles ü Plan for this in the long term e.g. instrument and manage data syndication and data lineage
  • 21. © 2017 IBM Corporation 21 GDPR Technical Preparedness – Key Duties, Obligations & Sanctions Archiving Legal Curation Records & Retention Administrative Fines for Non Compliance Rights of EU Data Subjects Security of Personal Data Lawfulness and Consent Accountability of Compliance Design and Default Administrative Fines for Non-Compliance § Regulators can impose Administrative Fines of up to €20m or 4% of total annual worldwide turnover, whichever is higher § Additional powers also/ alternatively available to regulators, including gaining access to data and premises, and to auditing
  • 22. © 2017 IBM Corporation 22 Poll Question 2 Your main GPDR preparedness gaps are? 1. No risk readiness assessment done yet 2. No Personal Data Discovery/inventory yet 3. Know what and where our Personal Data is, but can’t yet address Rights to Access, Rectify, Erasure… 4. Consent - not yet considered how to 5. Security & Breach Reporting Management
  • 23. © 2017 IBM Corporation GDPR Architectural Preparedness Overview Richard Hogg Global GDPR & Governance Offerings Evangelist rghogg@us.ibm.com
  • 24. © 2017 IBM Corporation 24 GDPR Architectural Preparedness Archiving Legal Curation Records & Retention Administrative Fines for Non Compliance Rights of EU Data Subjects Security of Personal Data Lawfulness and Consent Accountability of Compliance Design and Default
  • 25. © 2017 IBM Corporation 25 GDPR Architectural Preparedness – Broad Requirements & Broad Capabilities Lawfulness and Consent Design and Default Rights of EU Data Subjects Lawfulness and Consent Accountability of Compliance Security of Personal Data
  • 26. © 2017 IBM Corporation 26 GDPR Architectural Preparedness – Dynamic Policy Management Dynamic Policy Management: Define what, why, how long Lawfulness and Consent Design and Default Rights of EU Data Subjects Lawfulness and Consent Accountability of Compliance Security of Personal Data P o l i c i e s R u l e s A u d i t P r o c e s s e s An a l y s e s
  • 27. © 2017 IBM Corporation 27 GDPR Architectural Preparedness – Implementation Services/ Data Management Dynamic Policy Management: Define what, why, how long Implementation Services: Distribute policies to data sources Data Management Lawfulness and Consent Design and Default Rights of EU Data Subjects Lawfulness and Consent Accountability of Compliance Security of Personal Data P o l i c i e s R u l e s A u d i t P r o c e s s e s An a l y s e s
  • 28. © 2017 IBM Corporation 28 GDPR Architectural Preparedness – Data Infrastructure Dynamic Policy Management: Define what, why, how long Data Infrastructure: Control use, align cost to value Implementation Services: Distribute policies to data sources Data Management Email Servers User Devices & File SharesECM & Collaboration Archive Platform Master Data Cloud & Social Databases & Data Warehouse Hadoop Platform Lawfulness and Consent Design and Default Rights of EU Data Subjects Lawfulness and Consent Accountability of Compliance Security of Personal Data P o l i c i e s R u l e s A u d i t P r o c e s s e s An a l y s e s
  • 29. © 2017 IBM Corporation 29 GDPR Architectural Preparedness – Security & Compliance Monitoring Dynamic Policy Management: Define what, why, how long Data Infrastructure: Control use, align cost to value Implementation Services: Distribute policies to data sources Data Management Email Servers User Devices & File SharesECM & Collaboration Archive Platform Master Data Cloud & Social Databases & Data Warehouse Hadoop Platform Lawfulness and Consent Design and Default Rights of EU Data Subjects Lawfulness and Consent Accountability of Compliance Security of Personal Data P o l i c i e s R u l e s A u d i t P r o c e s s e s An a l y s e s Security&ComplianceMonitoring
  • 30. © 2017 IBM Corporation 30 GDPR Architectural Preparedness – Solution Framework Dynamic Policy Management: Define what, why, how long Data Infrastructure: Control use, align cost to value Implementation Services: Distribute policies to data sources Data Management Email Servers User Devices & File SharesECM & Collaboration Archive Platform Master Data Cloud & Social Databases & Data Warehouse Hadoop Platform Lawfulness and Consent Design and Default Rights of EU Data Subjects Lawfulness and Consent Accountability of Compliance Security of Personal Data P o l i c i e s R u l e s A u d i t P r o c e s s e s An a l y s e s Security&ComplianceMonitoring
  • 31. © 2017 IBM Corporation 31 GDPR Architectural Preparedness – Solution Framework – IBM Technology IBM Case Manager Dynamic Policy Management: Define what, why, how long Data Infrastructure: Control use, align cost to value Implementation Services: Distribute policies to data sources Data Management Email Servers User Devices & File SharesECM & Collaboration Archive Platform Master Data Cloud & Social Databases & Data Warehouse Hadoop Platform Lawfulness and Consent Design and Default Rights of EU Data Subjects Lawfulness and Consent Accountability of Compliance Security of Personal Data P o l i c i e s R u l e s A u d i t P r o c e s s e s An a l y s e s Security&ComplianceMonitoring InfoSphereIBM Atlas Optim
  • 32. © 2017 IBM Corporation GDPR On-Ramps - Where To Start? Richard Hogg Global GDPR & Governance Offerings Evangelist rghogg@us.ibm.com
  • 33. © 2017 IBM Corporation 33 Sensitive data Common On-Ramps Governance Layer • Metadata & Policy Mgmt • Compliance Mgmt Data Management Layer • Info Lifecycle Mgmt Compliance & Security Layer • Security & Privacy • Info Gov Utility Services • Subject Rights Mgmt Users Activity Identity & Access Mgmt Incidents correlation & identification CISO, DPO, CPO Group Compliance Legal Security Incidents Mgmt & Reporting DBA DB & File Activity Monitoring Data & Policy Governance Retention & Disposal Data Discovery & Classification Masking & Encryption Vunerabilities Databases, Apps, Infrastructure Dynamic blocking
  • 34. © 2017 IBM Corporation 34 GDPR On-Ramp Capabilities Data Assessment (main products: Information Analyzer, Information Governance Catalog, StoredIQ) Data Security (main products: StoredIQ, Guardium) Information Governance (main products: IBM Information Governance Catalog, Atlas) Consent Management (main products: IBM Master Data Management, Consent asset from IBM Research) Right to Erasure ( main products: IBM Case Manager, Atlas, StoredIQ, Optim) Data Pseudonymization (main product: IBM Optim Data Privacy)
  • 35. © 2017 IBM Corporation 35 Data Assessment – Overview of GDPR QuickStart Purpose Approach Outcome • IBM’s GDPR Quick Start is a fast and effective engagement to help clients identify and assess specific data and processes potentially impacted by the GDPR and start the client’s journey towards GDPR readiness • Time-boxed, 8 to 10 week effort, led by senior IBM analytics consultants • Applying IBM Analytics tools and methodology for structured and unstructured data, we provide a repeatable process for determining where sensitive data is stored, how it is protected and processed. • We shall present the results of executing this process against a selection of the client's systems, and a proposal of next steps. • From this, clients can assess the risk of GDPR to their organisation's specific landscape and agree on a roadmap towards GDPR readiness, based on an extrapolation to the full exercise. • Identification of sensitive data • Assessment of information handling procedures • Development of a roadmap to address GDPR gaps • Data inventory report, presentation of assessment results and roadmap • Prioritised roadmap of existing and required client initiatives
  • 36. © 2017 IBM Corporation 36 Data Discovery & Mapping In order to meet GDPR requirements, many organisations will need to improve their understanding of the Personal Data they hold through a mapping exercise. IBM’s Data Mapping approach is targeted and efficient. There are 4 key stages: 3 Step 1 Define objectives and outputs Step 2 Bottom-up identification Step 3 Top-down identification Clarify scope of mapping exercise, purpose and format of outputs. Prepare and agree templates for each stage. Define appropriate IT and business teams to cover scope. Secure access to SMEs. Establish client approach to defining personal data. Establish catalogue of Operational and MI data stores with IT SME’s. Define their owners, purpose and content as much as possible. Validate IT understanding with business. Work with business SME’s to identify further stores related to their processes. Define purpose, owner and content. Iterate back any outstanding questions to IT Step 4 Personal data identification Work with business SME’s to help establish which data is directly or indirectly personal data, taking account of likelihood of joins across data sets, given organisational and technical measures. Capture findings in information catalogue aligned to Art 30 Record of Processing Activities IBM can accelerate and enhance the data mapping activity through the use of data discovery tools StoredIQ and InfoSphere Information Analyser, with IBM Atlas providing an enterprise-class Information Catalogue.
  • 37. © 2017 IBM Corporation 37 Information Governance – Overview of Atlas to help with Article 30 Readiness Purpose Approach Outcome • GDPR Article 30 lists a set of requirements which have been loosely described by the GDPR consulting community as “data mapping” • Atlas includes a set of capabilities that can help enable organisations to map their data across the enterprise • Supports creation and management of an inventory of all data sources (data oriented entities - processes, applications, repositories, etc.) • Extensible entity attributes (owners, stewards, location, etc.) • Applicable to all data forms (structured, unstructured, electronic and physical) • Information types (e.g. client account records) listed for each data source • Each information type cross-referenced to relevant legislation and regulation • IBM Atlas can help enable the organisational and technical measures taken by a Organization as part of demonstrable efforts towards satisfying the requirements of Article 30 as well as providing additional value by supporting data subject rights (Articles 12-22) and the pervading principles (Article 5) Data sources map policies (such as retention rules) to all information types associated with the data source
  • 38. © 2017 IBM Corporation 38 Data Security – Overview of StoredIQ and Guardium for Data Security Purpose Approach Outcome • GDPR compliance requires that organizations take adequate measures to ensure that personally identifiable information is secure • Solution for Protection for GDPR Personal Data, Encryption of Personal Data and Assessment of Personal Data processors and controllers • Identify personally identifiable information across unstructured data sources utilizing StoredIQ • Once files have been identified utilize Guardium to encrypt files for enhanced security • Sensitive information is encrypted or access is limited to only those that require it
  • 39. © 2017 IBM Corporation 39 Consent Management – Overview of IBM Research Consent Mgmt Capabilities Purpose Approach Outcome • Consent is an important factor in lawfulness of personal data processing under GDPR • Current approaches may not provide linkage between consent, data usage policies & sensitive data • IBM’s approach provides linkage between the user’s data and the related consent • Management of consent templates and user consent contracts • Infrastructure level enforcement • Helps automate proof of compliance reporting • Enterprise tools for modelling and managing data governance and privacy policies • Purpose based data access • Increased transparency and consumer control over what data is collected and for what it is used
  • 40. © 2017 IBM Corporation 40 Right to Erasure – Overview of IBM Right To Erasure Capabilities Purpose Approach Outcome • EU Data Subjects are granted certain rights, including the right to data access, rectification and erasure • Workflow Routing, Handling of Request incl. Review, Approval, Rejection • 360 view of data • What data is where • What are the data retention rules & other legal/regulatory requirements • Provide justification for disposal/retention & full auditing • Handling of Client requests, process and fulfilment • Client data erased or exceptions fully documented • Privacy By Design
  • 41. © 2017 IBM Corporation 41 Data Pseudonymization – Overview of IBM Optim Solution Purpose Approach Outcome • De-identify confidential data on-demand throughout the enterprise to help protect customer information yet retain ability to provide personal data analysis • Mask confidential data dynamically in data environments and in the cloud. • Apply a range of masking techniques to transform personally-identifying information and other confidential corporate data. • Apply predefined actionable data privacy classifications and rules which help speed the time to implementation and provide a method to report on compliance. • Take advantage of pre-packaged data masking routines to transform complex data elements, such as credit card numbers, email addresses and national identifiers, while retaining their contextual meaning. • Helps protect sensitive data from misuse and fraud • Provides a technical measure to help reduce the potential for personal data being breached BankCard BankCard
  • 42. B2B Tech Marketing :: activatems.com 42 Q&A Please submit your questions now! Stan Gibson Moderator Activate Gregory Campbell Governance, Regulatory and Legal Consultant IBM Analytics Richard Hogg Global GDPR & Governance Offerings Evangelist IBM Analytics
  • 43. © 2017 IBM Corporation 43 Poll Question 3 Your GDPR Next Steps are? 1. Decide on strategy & achieve board endorsement 2. Complete a risk readiness assessment 3. Complete a personal data discovery & inventory 4. Determine which of the on-ramps to prioritize 43
  • 44. © 2017 IBM Corporation 44 Q&A For further information www.ibm.com/gdpr
  • 45. © 2017 IBM Corporation 45 Are you Ready?
  • 46. B2B Tech Marketing :: activatems.com 46 Thank You for Attending! www.ibm.com/gdpr www.activatems.com