The document discusses the EU's General Data Protection Regulation (GDPR) and its implications for the security industry, noting that organizations must comply with these new data protection laws when handling personal data. It highlights the introduction of self-regulation mechanisms, such as certification and codes of conduct, to assist organizations in adhering to legal obligations. The CRISP initiative aims to evaluate and certify security technologies based on GDPR requirements, emphasizing the importance of accountability and compliance in the security sector.