SlideShare a Scribd company logo
1 of 24
The Practical Impact of the
General Data Protection
Regulation
23 March, 2016
2
Agenda
• Introductions
• The Ghostery Story
• The General Data Protection Regulation (GDPR)
• The GDPR and Digital Advertising
• Q&A
Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
3
Introductions
• Eduardo Ustaran – Partner, Hogan Lovells
• Nick Stringer – Chair of the European Interactive Digital Advertising
Alliance
• Todd Ruback – Chief Privacy & Security Officer, Ghostery
Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
4
Ghostery Story
• Founded in 2009 Ghostery is the industry leader in digital experience
optimization and privacy solutions
PERFORMANCEGOVERNANCE PRIVACYSECURITY
MCM
Ad Choices
AppChoices
App Notice
Site Notice
Ghostery
Plug-In
Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
5
We Make the Invisible Visible
Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
6
GDPR is setting the table for the DSM to Flourish
• The GDPR is part of the Digital Single Market, a three-pronged strategy
meant to tear down trade barriers and create conditions that could
contribute up to €415 Billion to the European economy *
• GDPR is meant to give more control to the individual and compliance
certainty to the corporation. It will create new individual rights and new
corporate obligations, putting an emphasis on privacy as a core business
process
• ePrivacy Directive (“cookie law) – its still around but is being reviewed to
be in concert with the GDPR
* Digital Single Market, ec.europe.eu
Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
7
e-Privacy Directive Review
• First stakeholder meeting April 12
and then throughout 2016
• Expect EC proposal in 2017
• Needs to compliment GDPR’s new
notice and consent requirements
Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
Eduardo Ustaran, Partner
A practical overview of the new privacy framework
How will the EU Data Protection
Regulation affect you?
Hogan Lovells | 9
• A single set of rules
• Extraterritorial reach
• Putting people in control
• Focus on practical compliance
• Stronger enforcement powers
The aim behind the EU's privacy reform
“A strong, clear and
uniform legal
framework.”
Hogan Lovells | 10
• January 2012 - Proposed EU Data
Protection Regulation
• March 2014 - Parliament's preferred
draft
• June 2015 - Council's preferred draft
• 24 June 2015 - Trilogue kick-off
• 15 December 2015 - GDPR agreed
• Q1 2016 - Formal adoption
• Q2 2016 - Official publication
• 2 years + 20 days from the day of
publication:
GDPR in force and enforceable
A long legislative process
| 11Hogan Lovells
• One single law for the EU
– Interpreted nationally
• Applicability based on
establishment in the EU
– Economic activity in EU Member State
• Applicability based on individuals
being in the EU
– Offering of goods or services to them
– Monitoring of their behaviour
Geographical applicability
| 12Hogan Lovells
• Strengthening of consent
– consent cannot be bundled with T&Cs
– consent can be withdrawn at any time and in an easy
way
– if ‘take it or leave it’ not freely given
Putting people in control of their data
• Provision of information
• Right of access
• Right to rectification
• Right to erasure
• Right to restriction of processing
• Right to data portability
• Right to object to the processing
• Right on automated processing
Hogan Lovells | 13
• Data protection policies
• Data protection by design and by default
• Record keeping obligations (controllers & processors)
• Co-operation with DPAs (controllers & processors)
• Data protection impact assessments
• Prior consultation with DPAs in high-risk cases
• Mandatory DPOs for public sector and Big Data (controllers &
processors)
• Security and notification of breaches (controllers & processors)
Accountability obligations
Hogan Lovells | 14
• Life after Safe Harbor
• Privacy Shield?
• Binding Corporate Rules
• Standard contractual clauses
– Adopted by European Commission
– Adopted by DPAs
• Approved code of conduct
• Approved certification mechanism
• Ad-hoc contracts authorised by DPAs
International data transfers
| 15Hogan Lovells
• Still national regulators
• Greater international cooperation
• One-stop-shop?
• Massive fines
– up to 20 million euro or
– up to 4% of the total worldwide
annual turnover
whichever is higher
Supervision and enforcement
Hogan Lovells | 16
#1 Don't panic
#2 Assess the true impact
#3 Prioritise accountability
#4 Think strategically about dataflows
#5 See it as an opportunity
Action plan
The GDPR and Digital Advertising
Nick Stringer, Chair EDAA
18
Context
• As legislators in Brussels have been framing a new data protection
framework…
• …the EU ad industry had been implementing its initiative (‘AdChoices’) to
enhance transparency & user control in interest-based digital advertising.
• This initiative – joined up with those in US & Canada – has been
operating within a tough EU regulatory environment (ePrivacy Directive).
• The EDAA is currently assessing how the initiative may need to adapt in
light of the GDPR.
• UK and EU trade bodies (e.g. IAB) are looking at GDPR implementation
as a whole.
Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
19
Background
• At the heart of EU initiative is an icon proving users with more information
and ways to control ad preferences.
Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
20
Mobile - Transparency
Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
21
Mobile - Control
Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
Mobile web Device controls Industry app
solution
(Coming soon!)
22
Summary
• If you’re an ad business get involved!
• Brands / publishers – urge ad partners to get involved!
• Initiative will be important under the GDPR.
• Enables businesses to ‘get ahead’ as (a) GDPR enforcement starts in
mid-2018; (b) areas of ambiguity are still to be debated.
• More details at www.edaa.eu or get in touch!
Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
Hogan Lovells | 23
Eduardo Ustaran Todd Ruback Nick Stringer
+44 20 7296 5249 917-262-2528 (US) +447957691803
eduardo.ustaran@ todd@ghostery.com nick@njstringer.com
hoganlovells.com
Thank You
24Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
Q & A

More Related Content

What's hot

GDPR and NIS Compliance - How HyTrust Can Help
GDPR and NIS Compliance - How HyTrust Can HelpGDPR and NIS Compliance - How HyTrust Can Help
GDPR and NIS Compliance - How HyTrust Can HelpJason Lackey
 
EU GDPR - 12 Steps To Compliance
EU GDPR - 12 Steps To Compliance EU GDPR - 12 Steps To Compliance
EU GDPR - 12 Steps To Compliance Tom Haynes
 
The Essential Guide to GDPR
The Essential Guide to GDPRThe Essential Guide to GDPR
The Essential Guide to GDPRTim Hyman LLB
 
VMTN6642E - GDPR Slide Deck
VMTN6642E - GDPR Slide DeckVMTN6642E - GDPR Slide Deck
VMTN6642E - GDPR Slide DeckKyle Davies
 
GDPR Presentation slides
GDPR Presentation slidesGDPR Presentation slides
GDPR Presentation slidesNaomi Holmes
 
EU General Data Protection Regulation
EU General Data Protection RegulationEU General Data Protection Regulation
EU General Data Protection RegulationRamiro Cid
 
Ghostery MCM - May 2016
Ghostery MCM - May 2016Ghostery MCM - May 2016
Ghostery MCM - May 2016Ghostery, Inc.
 
Gdpr action plan - ISSA
Gdpr action plan - ISSAGdpr action plan - ISSA
Gdpr action plan - ISSAUlf Mattsson
 
An Essential Guide to EU GDPR
An Essential Guide to EU GDPRAn Essential Guide to EU GDPR
An Essential Guide to EU GDPRTripwire
 
Do You Have a Roadmap for EU GDPR Compliance?
Do You Have a Roadmap for EU GDPR Compliance?Do You Have a Roadmap for EU GDPR Compliance?
Do You Have a Roadmap for EU GDPR Compliance?Ulf Mattsson
 
Findability Day 2016 - What is GDPR?
Findability Day 2016 - What is GDPR?Findability Day 2016 - What is GDPR?
Findability Day 2016 - What is GDPR?Findwise
 
General Data Protection Regulation (GDPR) - Moving from confusion to readiness
General Data Protection Regulation (GDPR) - Moving from confusion to readinessGeneral Data Protection Regulation (GDPR) - Moving from confusion to readiness
General Data Protection Regulation (GDPR) - Moving from confusion to readinessOmo Osagiede
 
GDPR Cyber Insurance 11/1/2017
GDPR Cyber Insurance 11/1/2017GDPR Cyber Insurance 11/1/2017
GDPR Cyber Insurance 11/1/2017isc2-hellenic
 
GDPR The New Data Protection Law coming into effect May 2018. What does it me...
GDPR The New Data Protection Law coming into effect May 2018. What does it me...GDPR The New Data Protection Law coming into effect May 2018. What does it me...
GDPR The New Data Protection Law coming into effect May 2018. What does it me...eHealth Forum
 
MindMap AVG Louwers Advocaten V 4.0 (EN)
MindMap AVG Louwers Advocaten V 4.0 (EN)MindMap AVG Louwers Advocaten V 4.0 (EN)
MindMap AVG Louwers Advocaten V 4.0 (EN)Huub de Jong
 

What's hot (19)

GDPR and NIS Compliance - How HyTrust Can Help
GDPR and NIS Compliance - How HyTrust Can HelpGDPR and NIS Compliance - How HyTrust Can Help
GDPR and NIS Compliance - How HyTrust Can Help
 
General Data Protection Regulation
General Data Protection RegulationGeneral Data Protection Regulation
General Data Protection Regulation
 
EU GDPR - 12 Steps To Compliance
EU GDPR - 12 Steps To Compliance EU GDPR - 12 Steps To Compliance
EU GDPR - 12 Steps To Compliance
 
The GDPR for Techies
The GDPR for TechiesThe GDPR for Techies
The GDPR for Techies
 
The Essential Guide to GDPR
The Essential Guide to GDPRThe Essential Guide to GDPR
The Essential Guide to GDPR
 
VMTN6642E - GDPR Slide Deck
VMTN6642E - GDPR Slide DeckVMTN6642E - GDPR Slide Deck
VMTN6642E - GDPR Slide Deck
 
GDPR Presentation slides
GDPR Presentation slidesGDPR Presentation slides
GDPR Presentation slides
 
EU General Data Protection Regulation
EU General Data Protection RegulationEU General Data Protection Regulation
EU General Data Protection Regulation
 
Ghostery MCM - May 2016
Ghostery MCM - May 2016Ghostery MCM - May 2016
Ghostery MCM - May 2016
 
Gdpr action plan - ISSA
Gdpr action plan - ISSAGdpr action plan - ISSA
Gdpr action plan - ISSA
 
An Essential Guide to EU GDPR
An Essential Guide to EU GDPRAn Essential Guide to EU GDPR
An Essential Guide to EU GDPR
 
Do You Have a Roadmap for EU GDPR Compliance?
Do You Have a Roadmap for EU GDPR Compliance?Do You Have a Roadmap for EU GDPR Compliance?
Do You Have a Roadmap for EU GDPR Compliance?
 
Findability Day 2016 - What is GDPR?
Findability Day 2016 - What is GDPR?Findability Day 2016 - What is GDPR?
Findability Day 2016 - What is GDPR?
 
General Data Protection Regulation (GDPR) - Moving from confusion to readiness
General Data Protection Regulation (GDPR) - Moving from confusion to readinessGeneral Data Protection Regulation (GDPR) - Moving from confusion to readiness
General Data Protection Regulation (GDPR) - Moving from confusion to readiness
 
GDPR Cyber Insurance 11/1/2017
GDPR Cyber Insurance 11/1/2017GDPR Cyber Insurance 11/1/2017
GDPR Cyber Insurance 11/1/2017
 
What about GDPR?
What about GDPR?What about GDPR?
What about GDPR?
 
GDPR The New Data Protection Law coming into effect May 2018. What does it me...
GDPR The New Data Protection Law coming into effect May 2018. What does it me...GDPR The New Data Protection Law coming into effect May 2018. What does it me...
GDPR The New Data Protection Law coming into effect May 2018. What does it me...
 
MindMap AVG Louwers Advocaten V 4.0 (EN)
MindMap AVG Louwers Advocaten V 4.0 (EN)MindMap AVG Louwers Advocaten V 4.0 (EN)
MindMap AVG Louwers Advocaten V 4.0 (EN)
 
GDPR for dummies
GDPR for dummies  GDPR for dummies
GDPR for dummies
 

Similar to The Practical Impact of the General Data Protection Regulation

Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...CIO Edge
 
Ipswitch and cordery on the road " All you need to know about GDPR but are t...
Ipswitch and cordery on the road  " All you need to know about GDPR but are t...Ipswitch and cordery on the road  " All you need to know about GDPR but are t...
Ipswitch and cordery on the road " All you need to know about GDPR but are t...Sébastien Roques
 
Europe’s Digital Economy Policy – Opportunities and Threats for Online Advert...
Europe’s Digital Economy Policy – Opportunities and Threats for Online Advert...Europe’s Digital Economy Policy – Opportunities and Threats for Online Advert...
Europe’s Digital Economy Policy – Opportunities and Threats for Online Advert...Digiday
 
Jowanna Conboye - Stephens Scown
Jowanna Conboye - Stephens ScownJowanna Conboye - Stephens Scown
Jowanna Conboye - Stephens ScownAgile PR
 
DV 2016: Making Sense of the Current Legal Landscape
DV 2016: Making Sense of the Current Legal LandscapeDV 2016: Making Sense of the Current Legal Landscape
DV 2016: Making Sense of the Current Legal LandscapeTealium
 
Privacy Regulations and Your Digital Setup
Privacy Regulations and Your Digital SetupPrivacy Regulations and Your Digital Setup
Privacy Regulations and Your Digital SetupPiwik PRO
 
The first steps towards GDPR compliance 
The first steps towards GDPR compliance The first steps towards GDPR compliance 
The first steps towards GDPR compliance IT Governance Ltd
 
The dma legal update summer 2014
The dma legal update summer 2014 The dma legal update summer 2014
The dma legal update summer 2014 Rachel Aldighieri
 
Everything you need to know about the GDPR
Everything you need to know about the GDPREverything you need to know about the GDPR
Everything you need to know about the GDPRSpoon London
 
Legal update Leeds - 7 October 2014
Legal update Leeds -  7 October 2014Legal update Leeds -  7 October 2014
Legal update Leeds - 7 October 2014Rachel Aldighieri
 
Cookie Seminar | 5 juni | Damian Scragg | Evidon
Cookie Seminar | 5 juni | Damian Scragg | EvidonCookie Seminar | 5 juni | Damian Scragg | Evidon
Cookie Seminar | 5 juni | Damian Scragg | Evidonclickdistrict
 
CASE STUDY: New EU legislation: how to avoid data disaster
CASE STUDY: New EU legislation: how to avoid data disasterCASE STUDY: New EU legislation: how to avoid data disaster
CASE STUDY: New EU legislation: how to avoid data disasterB2B Marketing
 
Data Protection and Privacy
Data Protection and PrivacyData Protection and Privacy
Data Protection and PrivacyVertex Holdings
 

Similar to The Practical Impact of the General Data Protection Regulation (20)

Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
Digital Enterprise Festival Birmingham 13/04/17 - Ian West Cognizant VP Data ...
 
Ipswitch and cordery on the road " All you need to know about GDPR but are t...
Ipswitch and cordery on the road  " All you need to know about GDPR but are t...Ipswitch and cordery on the road  " All you need to know about GDPR but are t...
Ipswitch and cordery on the road " All you need to know about GDPR but are t...
 
Europe’s Digital Economy Policy – Opportunities and Threats for Online Advert...
Europe’s Digital Economy Policy – Opportunities and Threats for Online Advert...Europe’s Digital Economy Policy – Opportunities and Threats for Online Advert...
Europe’s Digital Economy Policy – Opportunities and Threats for Online Advert...
 
Gdpr action plan
Gdpr action plan Gdpr action plan
Gdpr action plan
 
Jowanna Conboye - Stephens Scown
Jowanna Conboye - Stephens ScownJowanna Conboye - Stephens Scown
Jowanna Conboye - Stephens Scown
 
DV 2016: Making Sense of the Current Legal Landscape
DV 2016: Making Sense of the Current Legal LandscapeDV 2016: Making Sense of the Current Legal Landscape
DV 2016: Making Sense of the Current Legal Landscape
 
Privacy Regulations and Your Digital Setup
Privacy Regulations and Your Digital SetupPrivacy Regulations and Your Digital Setup
Privacy Regulations and Your Digital Setup
 
2016 11-17-gdpr-integro-webinar
2016 11-17-gdpr-integro-webinar2016 11-17-gdpr-integro-webinar
2016 11-17-gdpr-integro-webinar
 
The first steps towards GDPR compliance 
The first steps towards GDPR compliance The first steps towards GDPR compliance 
The first steps towards GDPR compliance 
 
Legal update
Legal updateLegal update
Legal update
 
The dma legal update summer 2014
The dma legal update summer 2014 The dma legal update summer 2014
The dma legal update summer 2014
 
Everything you need to know about the GDPR
Everything you need to know about the GDPREverything you need to know about the GDPR
Everything you need to know about the GDPR
 
DMA Scotland: Legal update
DMA Scotland: Legal updateDMA Scotland: Legal update
DMA Scotland: Legal update
 
Legal update Leeds - 7 October 2014
Legal update Leeds -  7 October 2014Legal update Leeds -  7 October 2014
Legal update Leeds - 7 October 2014
 
Cookie Seminar | 5 juni | Damian Scragg | Evidon
Cookie Seminar | 5 juni | Damian Scragg | EvidonCookie Seminar | 5 juni | Damian Scragg | Evidon
Cookie Seminar | 5 juni | Damian Scragg | Evidon
 
CASE STUDY: New EU legislation: how to avoid data disaster
CASE STUDY: New EU legislation: how to avoid data disasterCASE STUDY: New EU legislation: how to avoid data disaster
CASE STUDY: New EU legislation: how to avoid data disaster
 
Preparing for EU GDPR
Preparing for EU GDPRPreparing for EU GDPR
Preparing for EU GDPR
 
Ritz 4th-july-gdpr
Ritz 4th-july-gdprRitz 4th-july-gdpr
Ritz 4th-july-gdpr
 
The DMA conference 2012
The DMA conference 2012The DMA conference 2012
The DMA conference 2012
 
Data Protection and Privacy
Data Protection and PrivacyData Protection and Privacy
Data Protection and Privacy
 

More from Ghostery, Inc.

The State of Marketing Technology Today The State of Marketing Technology Today
The State of Marketing Technology Today The State of Marketing Technology Today The State of Marketing Technology Today The State of Marketing Technology Today
The State of Marketing Technology Today The State of Marketing Technology Today Ghostery, Inc.
 
The Next $50 Billion will Come From...Putting Users First
The Next $50 Billion will Come From...Putting Users FirstThe Next $50 Billion will Come From...Putting Users First
The Next $50 Billion will Come From...Putting Users FirstGhostery, Inc.
 
Developing Mobile Trust In Today's E-Privacy Landscape
Developing Mobile Trust In Today's E-Privacy LandscapeDeveloping Mobile Trust In Today's E-Privacy Landscape
Developing Mobile Trust In Today's E-Privacy LandscapeGhostery, Inc.
 
Find IT & Marketing’s Common Ground: Make Your Site Faster
Find IT & Marketing’s Common Ground: Make Your Site FasterFind IT & Marketing’s Common Ground: Make Your Site Faster
Find IT & Marketing’s Common Ground: Make Your Site FasterGhostery, Inc.
 
Developing Mobile Trust in Today's E-Privacy Landscape - Webinar 11/19/2015
Developing Mobile Trust in Today's E-Privacy Landscape - Webinar 11/19/2015Developing Mobile Trust in Today's E-Privacy Landscape - Webinar 11/19/2015
Developing Mobile Trust in Today's E-Privacy Landscape - Webinar 11/19/2015Ghostery, Inc.
 
Economic Impact of Mixed Content Warnings on Consumer Behavior
Economic Impact of Mixed Content Warnings on Consumer BehaviorEconomic Impact of Mixed Content Warnings on Consumer Behavior
Economic Impact of Mixed Content Warnings on Consumer BehaviorGhostery, Inc.
 
Ghostery Enterprise EU Security Study
Ghostery Enterprise EU Security StudyGhostery Enterprise EU Security Study
Ghostery Enterprise EU Security StudyGhostery, Inc.
 
Ghostery Enterprise Security Study
Ghostery Enterprise Security StudyGhostery Enterprise Security Study
Ghostery Enterprise Security StudyGhostery, Inc.
 
Ghostery Enterprise - Defining The Marketing Cloud
Ghostery Enterprise - Defining The Marketing CloudGhostery Enterprise - Defining The Marketing Cloud
Ghostery Enterprise - Defining The Marketing CloudGhostery, Inc.
 
Ghostery Enterprise - Best Practices White Paper
Ghostery Enterprise - Best Practices White PaperGhostery Enterprise - Best Practices White Paper
Ghostery Enterprise - Best Practices White PaperGhostery, Inc.
 

More from Ghostery, Inc. (10)

The State of Marketing Technology Today The State of Marketing Technology Today
The State of Marketing Technology Today The State of Marketing Technology Today The State of Marketing Technology Today The State of Marketing Technology Today
The State of Marketing Technology Today The State of Marketing Technology Today
 
The Next $50 Billion will Come From...Putting Users First
The Next $50 Billion will Come From...Putting Users FirstThe Next $50 Billion will Come From...Putting Users First
The Next $50 Billion will Come From...Putting Users First
 
Developing Mobile Trust In Today's E-Privacy Landscape
Developing Mobile Trust In Today's E-Privacy LandscapeDeveloping Mobile Trust In Today's E-Privacy Landscape
Developing Mobile Trust In Today's E-Privacy Landscape
 
Find IT & Marketing’s Common Ground: Make Your Site Faster
Find IT & Marketing’s Common Ground: Make Your Site FasterFind IT & Marketing’s Common Ground: Make Your Site Faster
Find IT & Marketing’s Common Ground: Make Your Site Faster
 
Developing Mobile Trust in Today's E-Privacy Landscape - Webinar 11/19/2015
Developing Mobile Trust in Today's E-Privacy Landscape - Webinar 11/19/2015Developing Mobile Trust in Today's E-Privacy Landscape - Webinar 11/19/2015
Developing Mobile Trust in Today's E-Privacy Landscape - Webinar 11/19/2015
 
Economic Impact of Mixed Content Warnings on Consumer Behavior
Economic Impact of Mixed Content Warnings on Consumer BehaviorEconomic Impact of Mixed Content Warnings on Consumer Behavior
Economic Impact of Mixed Content Warnings on Consumer Behavior
 
Ghostery Enterprise EU Security Study
Ghostery Enterprise EU Security StudyGhostery Enterprise EU Security Study
Ghostery Enterprise EU Security Study
 
Ghostery Enterprise Security Study
Ghostery Enterprise Security StudyGhostery Enterprise Security Study
Ghostery Enterprise Security Study
 
Ghostery Enterprise - Defining The Marketing Cloud
Ghostery Enterprise - Defining The Marketing CloudGhostery Enterprise - Defining The Marketing Cloud
Ghostery Enterprise - Defining The Marketing Cloud
 
Ghostery Enterprise - Best Practices White Paper
Ghostery Enterprise - Best Practices White PaperGhostery Enterprise - Best Practices White Paper
Ghostery Enterprise - Best Practices White Paper
 

Recently uploaded

Factors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxFactors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxKatpro Technologies
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?Igalia
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slidespraypatel2
 
A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024Results
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Servicegiselly40
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonAnna Loughnan Colquhoun
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Scriptwesley chun
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfsudhanshuwaghmare1
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUK Journal
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)Gabriella Davis
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Drew Madelung
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024The Digital Insurer
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsMaria Levchenko
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘RTylerCroy
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationRadu Cotescu
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...Neo4j
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...apidays
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreternaman860154
 

Recently uploaded (20)

Factors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxFactors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slides
 
A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Service
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 

The Practical Impact of the General Data Protection Regulation

  • 1. The Practical Impact of the General Data Protection Regulation 23 March, 2016
  • 2. 2 Agenda • Introductions • The Ghostery Story • The General Data Protection Regulation (GDPR) • The GDPR and Digital Advertising • Q&A Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
  • 3. 3 Introductions • Eduardo Ustaran – Partner, Hogan Lovells • Nick Stringer – Chair of the European Interactive Digital Advertising Alliance • Todd Ruback – Chief Privacy & Security Officer, Ghostery Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
  • 4. 4 Ghostery Story • Founded in 2009 Ghostery is the industry leader in digital experience optimization and privacy solutions PERFORMANCEGOVERNANCE PRIVACYSECURITY MCM Ad Choices AppChoices App Notice Site Notice Ghostery Plug-In Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
  • 5. 5 We Make the Invisible Visible Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
  • 6. 6 GDPR is setting the table for the DSM to Flourish • The GDPR is part of the Digital Single Market, a three-pronged strategy meant to tear down trade barriers and create conditions that could contribute up to €415 Billion to the European economy * • GDPR is meant to give more control to the individual and compliance certainty to the corporation. It will create new individual rights and new corporate obligations, putting an emphasis on privacy as a core business process • ePrivacy Directive (“cookie law) – its still around but is being reviewed to be in concert with the GDPR * Digital Single Market, ec.europe.eu Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
  • 7. 7 e-Privacy Directive Review • First stakeholder meeting April 12 and then throughout 2016 • Expect EC proposal in 2017 • Needs to compliment GDPR’s new notice and consent requirements Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
  • 8. Eduardo Ustaran, Partner A practical overview of the new privacy framework How will the EU Data Protection Regulation affect you?
  • 9. Hogan Lovells | 9 • A single set of rules • Extraterritorial reach • Putting people in control • Focus on practical compliance • Stronger enforcement powers The aim behind the EU's privacy reform “A strong, clear and uniform legal framework.”
  • 10. Hogan Lovells | 10 • January 2012 - Proposed EU Data Protection Regulation • March 2014 - Parliament's preferred draft • June 2015 - Council's preferred draft • 24 June 2015 - Trilogue kick-off • 15 December 2015 - GDPR agreed • Q1 2016 - Formal adoption • Q2 2016 - Official publication • 2 years + 20 days from the day of publication: GDPR in force and enforceable A long legislative process
  • 11. | 11Hogan Lovells • One single law for the EU – Interpreted nationally • Applicability based on establishment in the EU – Economic activity in EU Member State • Applicability based on individuals being in the EU – Offering of goods or services to them – Monitoring of their behaviour Geographical applicability
  • 12. | 12Hogan Lovells • Strengthening of consent – consent cannot be bundled with T&Cs – consent can be withdrawn at any time and in an easy way – if ‘take it or leave it’ not freely given Putting people in control of their data • Provision of information • Right of access • Right to rectification • Right to erasure • Right to restriction of processing • Right to data portability • Right to object to the processing • Right on automated processing
  • 13. Hogan Lovells | 13 • Data protection policies • Data protection by design and by default • Record keeping obligations (controllers & processors) • Co-operation with DPAs (controllers & processors) • Data protection impact assessments • Prior consultation with DPAs in high-risk cases • Mandatory DPOs for public sector and Big Data (controllers & processors) • Security and notification of breaches (controllers & processors) Accountability obligations
  • 14. Hogan Lovells | 14 • Life after Safe Harbor • Privacy Shield? • Binding Corporate Rules • Standard contractual clauses – Adopted by European Commission – Adopted by DPAs • Approved code of conduct • Approved certification mechanism • Ad-hoc contracts authorised by DPAs International data transfers
  • 15. | 15Hogan Lovells • Still national regulators • Greater international cooperation • One-stop-shop? • Massive fines – up to 20 million euro or – up to 4% of the total worldwide annual turnover whichever is higher Supervision and enforcement
  • 16. Hogan Lovells | 16 #1 Don't panic #2 Assess the true impact #3 Prioritise accountability #4 Think strategically about dataflows #5 See it as an opportunity Action plan
  • 17. The GDPR and Digital Advertising Nick Stringer, Chair EDAA
  • 18. 18 Context • As legislators in Brussels have been framing a new data protection framework… • …the EU ad industry had been implementing its initiative (‘AdChoices’) to enhance transparency & user control in interest-based digital advertising. • This initiative – joined up with those in US & Canada – has been operating within a tough EU regulatory environment (ePrivacy Directive). • The EDAA is currently assessing how the initiative may need to adapt in light of the GDPR. • UK and EU trade bodies (e.g. IAB) are looking at GDPR implementation as a whole. Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
  • 19. 19 Background • At the heart of EU initiative is an icon proving users with more information and ways to control ad preferences. Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
  • 20. 20 Mobile - Transparency Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
  • 21. 21 Mobile - Control Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved Mobile web Device controls Industry app solution (Coming soon!)
  • 22. 22 Summary • If you’re an ad business get involved! • Brands / publishers – urge ad partners to get involved! • Initiative will be important under the GDPR. • Enables businesses to ‘get ahead’ as (a) GDPR enforcement starts in mid-2018; (b) areas of ambiguity are still to be debated. • More details at www.edaa.eu or get in touch! Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved
  • 23. Hogan Lovells | 23 Eduardo Ustaran Todd Ruback Nick Stringer +44 20 7296 5249 917-262-2528 (US) +447957691803 eduardo.ustaran@ todd@ghostery.com nick@njstringer.com hoganlovells.com Thank You
  • 24. 24Private & Confidential | © 2016 Ghostery, Inc. All Rights Reserved Q & A

Editor's Notes

  1. Use sample – not exact thing. This is the problem. How is this resonating so far, do you see these types of problems?
  2. Note – 3D supergraphic ‘mask’ is now a selectable object in foreground of slide.