SlideShare a Scribd company logo
The Business
Journey
March 20 2018
Social Media
Follow: @TheBusJourney
Hashtag: #SMEJourney
Business Journey Partner
Laura Forrest
@MHSolicitors
The Business Journey
GDPR – Are you ready?
20th March 2018
www.macdonaldhenderson.co.uk © 2017
Practical Guide
1 - Audit and document the personal data
your business holds
Personal Data
What is personal data?
 “personal data” means any information relating to an identified
or identifiable natural person (‘data subject’)…who can be
identified, directly or indirectly, in particular by reference to an
identifier such as a name, an identification number…or to one or
more factors specific to the physical, physiological, genetic,
mental, economic, cultural or social identity of that natural
person;
(Article 4, GDPR)
Practical Guide
2 – Look at your current practice of
processing data
Personal Data
 “processing” means any operation or set of
operations which is performed on personal
data…such as collection, recording, organisation,
structuring, storage, adaptation or alteration,
retrieval, consultation, use, disclosure by
transmission, dissemination or otherwise making
available, alignment or combination, restriction,
erasure or destruction;
(Article 4, GDPR)
Lawful Basis for Processing
 Contract
 Legal Obligation
 Vital Interests
 Public Task
 Legitimate Interests
 Consent
Practical Guide
3 – Review consents and obtaining consents
processes
Consent
To rely on consent as a lawful basis for processing the consent
must be:
 Freely given;
 Specific;
 Informed;
 Unambiguous;
 Explicit;
Lawful Basis for Processing
The principle behind identifying a lawful basis is
that:
“personal data shall be…processed lawfully, fairly
and in a transparent manner in relation to the data
subject”.
Practical Guide
4 – Review of your commercial contracts
Practical Guide
5 – Ensure you have a process in place for
any data breaches
Practical Guide
6 – Other steps to achieve compliance
Key Points of Action
 Audit and document the personal data your business holds;
 Look at your current practice of processing data;
 Review consents and obtaining consent processes;
Key Points of Action
 Review commercial contracts to consider the new data
processing obligations;
 Ensure you have a process in place for data breaches;
Key Points of Action
 Review all privacy notices and policies currently used and
implement updates where necessary;
 Review all employment policies in respect of data protection
and implement updates where necessary;
 Introduce training for employees where applicable;
Contact Details
For further information on the policies, procedures and contractual amendments
required to assist with compliance with the GDPR
Laura Forrest
0141 248 4957
laura@macdonaldhenderson.co.uk
THANK YOU
Questions for Laura
Dates for the diary
12 June
11 September
27 November

More Related Content

What's hot

GDPR Data Life Cycle
GDPR Data Life CycleGDPR Data Life Cycle
GDPR Data Life Cycle
Jatin Kochhar
 
GDPR non-compliance risks & GDPR365
GDPR non-compliance risks & GDPR365GDPR non-compliance risks & GDPR365
GDPR non-compliance risks & GDPR365
Jaco Liebenberg
 
GDPR - Sink or Swim
GDPR - Sink or SwimGDPR - Sink or Swim
GDPR - Sink or Swim
Guy Griffiths
 
GDPR Data Discovery and Management Brochure
GDPR Data Discovery and Management BrochureGDPR Data Discovery and Management Brochure
GDPR Data Discovery and Management Brochure
Connexica
 
GDPR Breakfast Briefing - For Business Owners, HR Directors, Marketing Direct...
GDPR Breakfast Briefing - For Business Owners, HR Directors, Marketing Direct...GDPR Breakfast Briefing - For Business Owners, HR Directors, Marketing Direct...
GDPR Breakfast Briefing - For Business Owners, HR Directors, Marketing Direct...
Harrison Clark Rickerbys
 
Why We Require GDPR?
Why We Require GDPR?Why We Require GDPR?
Why We Require GDPR?
Jatin Kochhar
 
Building the Governance Ready Enterprise for GDPR Compliance
Building the Governance Ready Enterprise for GDPR ComplianceBuilding the Governance Ready Enterprise for GDPR Compliance
Building the Governance Ready Enterprise for GDPR Compliance
Index Engines Inc.
 
GDPR presentation
GDPR presentationGDPR presentation
GDPR presentation
Samantha Deeks
 
Building the Governance Ready Enterprise for GDPR Compliance December 2017
Building the Governance Ready Enterprise for GDPR Compliance December 2017Building the Governance Ready Enterprise for GDPR Compliance December 2017
Building the Governance Ready Enterprise for GDPR Compliance December 2017
Index Engines Inc.
 
General Data Protection Regulation or GDPR
General Data Protection Regulation or GDPRGeneral Data Protection Regulation or GDPR
General Data Protection Regulation or GDPR
Nupur Samaddar
 
GDPR Checklist Infographic
GDPR Checklist InfographicGDPR Checklist Infographic
GDPR Checklist Infographic
Connexica
 
Rent-a-DPO for IT Vendors
Rent-a-DPO for IT VendorsRent-a-DPO for IT Vendors
Rent-a-DPO for IT Vendors
Richard Kranendonk
 
De impact van de GDPR op de reissector
De impact van de GDPR op de reissectorDe impact van de GDPR op de reissector
De impact van de GDPR op de reissector
Bart Van Den Brande
 
General Data Protection Regulation: Where are we now?
General Data Protection Regulation: Where are we now?General Data Protection Regulation: Where are we now?
General Data Protection Regulation: Where are we now?
Leigh Hill
 
Privacy_Engineering_Privacy Assurance_Lecture-Ecole_Polytechnic_Nice_SA-20150127
Privacy_Engineering_Privacy Assurance_Lecture-Ecole_Polytechnic_Nice_SA-20150127Privacy_Engineering_Privacy Assurance_Lecture-Ecole_Polytechnic_Nice_SA-20150127
Privacy_Engineering_Privacy Assurance_Lecture-Ecole_Polytechnic_Nice_SA-20150127Frank Dawson
 
MRS Operations Network: GDPR - Organisational Measures
MRS Operations Network: GDPR - Organisational MeasuresMRS Operations Network: GDPR - Organisational Measures
MRS Operations Network: GDPR - Organisational Measures
MRS
 
Global Data Privacy Regulation
Global Data Privacy RegulationGlobal Data Privacy Regulation
Global Data Privacy Regulation
Jatin Kochhar
 
BARNES & THORNBURG LLP - Employee Privacy Policy 4-6-18
BARNES & THORNBURG LLP - Employee Privacy Policy 4-6-18BARNES & THORNBURG LLP - Employee Privacy Policy 4-6-18
BARNES & THORNBURG LLP - Employee Privacy Policy 4-6-18
FortuneCMO, LLC
 
European GDPR for Good Technology Collective (GTC)
European GDPR for Good Technology Collective (GTC)European GDPR for Good Technology Collective (GTC)
European GDPR for Good Technology Collective (GTC)
Dr. Mira Suleimenova, CIPPe
 
Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"
Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"
Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"
Ragnar Heil
 

What's hot (20)

GDPR Data Life Cycle
GDPR Data Life CycleGDPR Data Life Cycle
GDPR Data Life Cycle
 
GDPR non-compliance risks & GDPR365
GDPR non-compliance risks & GDPR365GDPR non-compliance risks & GDPR365
GDPR non-compliance risks & GDPR365
 
GDPR - Sink or Swim
GDPR - Sink or SwimGDPR - Sink or Swim
GDPR - Sink or Swim
 
GDPR Data Discovery and Management Brochure
GDPR Data Discovery and Management BrochureGDPR Data Discovery and Management Brochure
GDPR Data Discovery and Management Brochure
 
GDPR Breakfast Briefing - For Business Owners, HR Directors, Marketing Direct...
GDPR Breakfast Briefing - For Business Owners, HR Directors, Marketing Direct...GDPR Breakfast Briefing - For Business Owners, HR Directors, Marketing Direct...
GDPR Breakfast Briefing - For Business Owners, HR Directors, Marketing Direct...
 
Why We Require GDPR?
Why We Require GDPR?Why We Require GDPR?
Why We Require GDPR?
 
Building the Governance Ready Enterprise for GDPR Compliance
Building the Governance Ready Enterprise for GDPR ComplianceBuilding the Governance Ready Enterprise for GDPR Compliance
Building the Governance Ready Enterprise for GDPR Compliance
 
GDPR presentation
GDPR presentationGDPR presentation
GDPR presentation
 
Building the Governance Ready Enterprise for GDPR Compliance December 2017
Building the Governance Ready Enterprise for GDPR Compliance December 2017Building the Governance Ready Enterprise for GDPR Compliance December 2017
Building the Governance Ready Enterprise for GDPR Compliance December 2017
 
General Data Protection Regulation or GDPR
General Data Protection Regulation or GDPRGeneral Data Protection Regulation or GDPR
General Data Protection Regulation or GDPR
 
GDPR Checklist Infographic
GDPR Checklist InfographicGDPR Checklist Infographic
GDPR Checklist Infographic
 
Rent-a-DPO for IT Vendors
Rent-a-DPO for IT VendorsRent-a-DPO for IT Vendors
Rent-a-DPO for IT Vendors
 
De impact van de GDPR op de reissector
De impact van de GDPR op de reissectorDe impact van de GDPR op de reissector
De impact van de GDPR op de reissector
 
General Data Protection Regulation: Where are we now?
General Data Protection Regulation: Where are we now?General Data Protection Regulation: Where are we now?
General Data Protection Regulation: Where are we now?
 
Privacy_Engineering_Privacy Assurance_Lecture-Ecole_Polytechnic_Nice_SA-20150127
Privacy_Engineering_Privacy Assurance_Lecture-Ecole_Polytechnic_Nice_SA-20150127Privacy_Engineering_Privacy Assurance_Lecture-Ecole_Polytechnic_Nice_SA-20150127
Privacy_Engineering_Privacy Assurance_Lecture-Ecole_Polytechnic_Nice_SA-20150127
 
MRS Operations Network: GDPR - Organisational Measures
MRS Operations Network: GDPR - Organisational MeasuresMRS Operations Network: GDPR - Organisational Measures
MRS Operations Network: GDPR - Organisational Measures
 
Global Data Privacy Regulation
Global Data Privacy RegulationGlobal Data Privacy Regulation
Global Data Privacy Regulation
 
BARNES & THORNBURG LLP - Employee Privacy Policy 4-6-18
BARNES & THORNBURG LLP - Employee Privacy Policy 4-6-18BARNES & THORNBURG LLP - Employee Privacy Policy 4-6-18
BARNES & THORNBURG LLP - Employee Privacy Policy 4-6-18
 
European GDPR for Good Technology Collective (GTC)
European GDPR for Good Technology Collective (GTC)European GDPR for Good Technology Collective (GTC)
European GDPR for Good Technology Collective (GTC)
 
Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"
Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"
Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"
 

Similar to "GDPR – Are you ready?"

GDPR Breakfast Briefing for Business Advisors
GDPR Breakfast Briefing for Business AdvisorsGDPR Breakfast Briefing for Business Advisors
GDPR Breakfast Briefing for Business Advisors
Harrison Clark Rickerbys
 
GDPR for your Payroll Bureau
GDPR for your Payroll BureauGDPR for your Payroll Bureau
GDPR for your Payroll Bureau
BrightPay Payroll and Auto Enrolment Software
 
Salesforce & GDPR: What happens next?
Salesforce & GDPR: What happens next? Salesforce & GDPR: What happens next?
Salesforce & GDPR: What happens next?
Desynit
 
data-privacy-egypt-what-you-need-know-en.pdf
data-privacy-egypt-what-you-need-know-en.pdfdata-privacy-egypt-what-you-need-know-en.pdf
data-privacy-egypt-what-you-need-know-en.pdf
kiruthigajawahar6
 
Kyverna Privacy Policy.pdf
Kyverna Privacy Policy.pdfKyverna Privacy Policy.pdf
Kyverna Privacy Policy.pdf
makaylaklenke
 
Data Privacy Compliance Navigating the Evolving Regulatory Landscape.pdf
Data Privacy Compliance Navigating the Evolving Regulatory Landscape.pdfData Privacy Compliance Navigating the Evolving Regulatory Landscape.pdf
Data Privacy Compliance Navigating the Evolving Regulatory Landscape.pdf
CIOWomenMagazine
 
GDPR Breakfast Briefing for Business Advisors
GDPR Breakfast Briefing for Business AdvisorsGDPR Breakfast Briefing for Business Advisors
GDPR Breakfast Briefing for Business Advisors
Harrison Clark Rickerbys
 
GDPR-compliance for SMEs and foundations
GDPR-compliance for SMEs and foundationsGDPR-compliance for SMEs and foundations
GDPR-compliance for SMEs and foundations
JudyJordaan1
 
The Summary Guide to Compliance with the Kenya Data Protection Law
The Summary Guide to Compliance with the Kenya Data Protection Law The Summary Guide to Compliance with the Kenya Data Protection Law
The Summary Guide to Compliance with the Kenya Data Protection Law
Owako Rodah
 
GDPR Changing Mindset
GDPR Changing MindsetGDPR Changing Mindset
GDPR Changing Mindset
NetworkIQ
 
GDPR for Dummies
GDPR for DummiesGDPR for Dummies
GDPR for Dummies
Caroline Boscher
 
data privacy handbook: A starter guide to data privacy compliance
data privacy handbook: A starter guide to data privacy compliancedata privacy handbook: A starter guide to data privacy compliance
data privacy handbook: A starter guide to data privacy compliance
DesmondMontgomery2
 
GDPR 12 Steps infographic
GDPR 12 Steps infographic GDPR 12 Steps infographic
GDPR 12 Steps infographic
Ermine Amies
 
Keep Calm and Comply: 3 Keys to GDPR Success
Keep Calm and Comply: 3 Keys to GDPR SuccessKeep Calm and Comply: 3 Keys to GDPR Success
Keep Calm and Comply: 3 Keys to GDPR Success
Sirius
 
GDPR: What does it mean for your business?
GDPR: What does it mean for your business?GDPR: What does it mean for your business?
GDPR: What does it mean for your business?
BrightPay Payroll and Auto Enrolment Software
 
Ready for the GDPR, Ready for the Digital Economy
Ready for the GDPR, Ready for the Digital EconomyReady for the GDPR, Ready for the Digital Economy
Ready for the GDPR, Ready for the Digital Economy
Ray ABOU
 
Top 10 GDPR Requirements
Top 10 GDPR RequirementsTop 10 GDPR Requirements
Top 10 GDPR Requirements
Rusty Stanberry
 
GDPR Briefing for marketers
GDPR Briefing for marketersGDPR Briefing for marketers
GDPR Briefing for marketers
Smart Insights
 
Understanding the EU's new General Data Protection Regulation (GDPR)
Understanding the EU's new General Data Protection Regulation (GDPR)Understanding the EU's new General Data Protection Regulation (GDPR)
Understanding the EU's new General Data Protection Regulation (GDPR)
Acquia
 
General Data Protection Regulations (GDPR): Do you understand it and are you ...
General Data Protection Regulations (GDPR): Do you understand it and are you ...General Data Protection Regulations (GDPR): Do you understand it and are you ...
General Data Protection Regulations (GDPR): Do you understand it and are you ...
Cvent
 

Similar to "GDPR – Are you ready?" (20)

GDPR Breakfast Briefing for Business Advisors
GDPR Breakfast Briefing for Business AdvisorsGDPR Breakfast Briefing for Business Advisors
GDPR Breakfast Briefing for Business Advisors
 
GDPR for your Payroll Bureau
GDPR for your Payroll BureauGDPR for your Payroll Bureau
GDPR for your Payroll Bureau
 
Salesforce & GDPR: What happens next?
Salesforce & GDPR: What happens next? Salesforce & GDPR: What happens next?
Salesforce & GDPR: What happens next?
 
data-privacy-egypt-what-you-need-know-en.pdf
data-privacy-egypt-what-you-need-know-en.pdfdata-privacy-egypt-what-you-need-know-en.pdf
data-privacy-egypt-what-you-need-know-en.pdf
 
Kyverna Privacy Policy.pdf
Kyverna Privacy Policy.pdfKyverna Privacy Policy.pdf
Kyverna Privacy Policy.pdf
 
Data Privacy Compliance Navigating the Evolving Regulatory Landscape.pdf
Data Privacy Compliance Navigating the Evolving Regulatory Landscape.pdfData Privacy Compliance Navigating the Evolving Regulatory Landscape.pdf
Data Privacy Compliance Navigating the Evolving Regulatory Landscape.pdf
 
GDPR Breakfast Briefing for Business Advisors
GDPR Breakfast Briefing for Business AdvisorsGDPR Breakfast Briefing for Business Advisors
GDPR Breakfast Briefing for Business Advisors
 
GDPR-compliance for SMEs and foundations
GDPR-compliance for SMEs and foundationsGDPR-compliance for SMEs and foundations
GDPR-compliance for SMEs and foundations
 
The Summary Guide to Compliance with the Kenya Data Protection Law
The Summary Guide to Compliance with the Kenya Data Protection Law The Summary Guide to Compliance with the Kenya Data Protection Law
The Summary Guide to Compliance with the Kenya Data Protection Law
 
GDPR Changing Mindset
GDPR Changing MindsetGDPR Changing Mindset
GDPR Changing Mindset
 
GDPR for Dummies
GDPR for DummiesGDPR for Dummies
GDPR for Dummies
 
data privacy handbook: A starter guide to data privacy compliance
data privacy handbook: A starter guide to data privacy compliancedata privacy handbook: A starter guide to data privacy compliance
data privacy handbook: A starter guide to data privacy compliance
 
GDPR 12 Steps infographic
GDPR 12 Steps infographic GDPR 12 Steps infographic
GDPR 12 Steps infographic
 
Keep Calm and Comply: 3 Keys to GDPR Success
Keep Calm and Comply: 3 Keys to GDPR SuccessKeep Calm and Comply: 3 Keys to GDPR Success
Keep Calm and Comply: 3 Keys to GDPR Success
 
GDPR: What does it mean for your business?
GDPR: What does it mean for your business?GDPR: What does it mean for your business?
GDPR: What does it mean for your business?
 
Ready for the GDPR, Ready for the Digital Economy
Ready for the GDPR, Ready for the Digital EconomyReady for the GDPR, Ready for the Digital Economy
Ready for the GDPR, Ready for the Digital Economy
 
Top 10 GDPR Requirements
Top 10 GDPR RequirementsTop 10 GDPR Requirements
Top 10 GDPR Requirements
 
GDPR Briefing for marketers
GDPR Briefing for marketersGDPR Briefing for marketers
GDPR Briefing for marketers
 
Understanding the EU's new General Data Protection Regulation (GDPR)
Understanding the EU's new General Data Protection Regulation (GDPR)Understanding the EU's new General Data Protection Regulation (GDPR)
Understanding the EU's new General Data Protection Regulation (GDPR)
 
General Data Protection Regulations (GDPR): Do you understand it and are you ...
General Data Protection Regulations (GDPR): Do you understand it and are you ...General Data Protection Regulations (GDPR): Do you understand it and are you ...
General Data Protection Regulations (GDPR): Do you understand it and are you ...
 

More from Martin Jack

Digitisation - Systems and Certainty
Digitisation - Systems and CertaintyDigitisation - Systems and Certainty
Digitisation - Systems and Certainty
Martin Jack
 
Be Yourself
Be YourselfBe Yourself
Be Yourself
Martin Jack
 
"From 'I can't' to 'I will'"
"From 'I can't' to 'I will'""From 'I can't' to 'I will'"
"From 'I can't' to 'I will'"
Martin Jack
 
Growing your business in 2020: ensuring you and your business are protected a...
Growing your business in 2020: ensuring you and your business are protected a...Growing your business in 2020: ensuring you and your business are protected a...
Growing your business in 2020: ensuring you and your business are protected a...
Martin Jack
 
Looking Forward to Plan Backwards
Looking Forward to Plan BackwardsLooking Forward to Plan Backwards
Looking Forward to Plan Backwards
Martin Jack
 
Release the Brakes!
Release the Brakes!Release the Brakes!
Release the Brakes!
Martin Jack
 
Learner Pathways
Learner PathwaysLearner Pathways
Learner Pathways
Martin Jack
 
Interdisciplinary Learning
Interdisciplinary LearningInterdisciplinary Learning
Interdisciplinary Learning
Martin Jack
 
Glasgow City Region - Enhancing Productivity
Glasgow City Region - Enhancing ProductivityGlasgow City Region - Enhancing Productivity
Glasgow City Region - Enhancing Productivity
Martin Jack
 
Jacobs Challenging today reinventing tomorrow
Jacobs   Challenging today reinventing tomorrowJacobs   Challenging today reinventing tomorrow
Jacobs Challenging today reinventing tomorrow
Martin Jack
 
22nd State of the City Economy Conference Programme
22nd State of the City Economy Conference Programme22nd State of the City Economy Conference Programme
22nd State of the City Economy Conference Programme
Martin Jack
 
Know your customer, protect your cash flow
Know your customer, protect your cash flowKnow your customer, protect your cash flow
Know your customer, protect your cash flow
Martin Jack
 
Ensuring Your Business is Response-able
Ensuring Your Business is Response-ableEnsuring Your Business is Response-able
Ensuring Your Business is Response-able
Martin Jack
 
Valuing your Values - Susan Grandfield
Valuing your Values - Susan GrandfieldValuing your Values - Susan Grandfield
Valuing your Values - Susan Grandfield
Martin Jack
 
Branding - How you look, how you act, what you say... - Craig Mackie
Branding - How you look, how you act, what you say... - Craig MackieBranding - How you look, how you act, what you say... - Craig Mackie
Branding - How you look, how you act, what you say... - Craig Mackie
Martin Jack
 
Value: company balance sheet v personal balance sheet - Adrian Murphy
Value: company balance sheet v personal balance sheet - Adrian MurphyValue: company balance sheet v personal balance sheet - Adrian Murphy
Value: company balance sheet v personal balance sheet - Adrian Murphy
Martin Jack
 
Manage your taxes
Manage your taxesManage your taxes
Manage your taxes
Martin Jack
 
Brexit – Are You Ready – a Legal Checklist
Brexit – Are You Ready – a Legal ChecklistBrexit – Are You Ready – a Legal Checklist
Brexit – Are You Ready – a Legal Checklist
Martin Jack
 
Behavioural Change Re-visited
Behavioural Change Re-visitedBehavioural Change Re-visited
Behavioural Change Re-visited
Martin Jack
 
Digitalisation of your interaction with HMRC
Digitalisation of your interaction with HMRCDigitalisation of your interaction with HMRC
Digitalisation of your interaction with HMRC
Martin Jack
 

More from Martin Jack (20)

Digitisation - Systems and Certainty
Digitisation - Systems and CertaintyDigitisation - Systems and Certainty
Digitisation - Systems and Certainty
 
Be Yourself
Be YourselfBe Yourself
Be Yourself
 
"From 'I can't' to 'I will'"
"From 'I can't' to 'I will'""From 'I can't' to 'I will'"
"From 'I can't' to 'I will'"
 
Growing your business in 2020: ensuring you and your business are protected a...
Growing your business in 2020: ensuring you and your business are protected a...Growing your business in 2020: ensuring you and your business are protected a...
Growing your business in 2020: ensuring you and your business are protected a...
 
Looking Forward to Plan Backwards
Looking Forward to Plan BackwardsLooking Forward to Plan Backwards
Looking Forward to Plan Backwards
 
Release the Brakes!
Release the Brakes!Release the Brakes!
Release the Brakes!
 
Learner Pathways
Learner PathwaysLearner Pathways
Learner Pathways
 
Interdisciplinary Learning
Interdisciplinary LearningInterdisciplinary Learning
Interdisciplinary Learning
 
Glasgow City Region - Enhancing Productivity
Glasgow City Region - Enhancing ProductivityGlasgow City Region - Enhancing Productivity
Glasgow City Region - Enhancing Productivity
 
Jacobs Challenging today reinventing tomorrow
Jacobs   Challenging today reinventing tomorrowJacobs   Challenging today reinventing tomorrow
Jacobs Challenging today reinventing tomorrow
 
22nd State of the City Economy Conference Programme
22nd State of the City Economy Conference Programme22nd State of the City Economy Conference Programme
22nd State of the City Economy Conference Programme
 
Know your customer, protect your cash flow
Know your customer, protect your cash flowKnow your customer, protect your cash flow
Know your customer, protect your cash flow
 
Ensuring Your Business is Response-able
Ensuring Your Business is Response-ableEnsuring Your Business is Response-able
Ensuring Your Business is Response-able
 
Valuing your Values - Susan Grandfield
Valuing your Values - Susan GrandfieldValuing your Values - Susan Grandfield
Valuing your Values - Susan Grandfield
 
Branding - How you look, how you act, what you say... - Craig Mackie
Branding - How you look, how you act, what you say... - Craig MackieBranding - How you look, how you act, what you say... - Craig Mackie
Branding - How you look, how you act, what you say... - Craig Mackie
 
Value: company balance sheet v personal balance sheet - Adrian Murphy
Value: company balance sheet v personal balance sheet - Adrian MurphyValue: company balance sheet v personal balance sheet - Adrian Murphy
Value: company balance sheet v personal balance sheet - Adrian Murphy
 
Manage your taxes
Manage your taxesManage your taxes
Manage your taxes
 
Brexit – Are You Ready – a Legal Checklist
Brexit – Are You Ready – a Legal ChecklistBrexit – Are You Ready – a Legal Checklist
Brexit – Are You Ready – a Legal Checklist
 
Behavioural Change Re-visited
Behavioural Change Re-visitedBehavioural Change Re-visited
Behavioural Change Re-visited
 
Digitalisation of your interaction with HMRC
Digitalisation of your interaction with HMRCDigitalisation of your interaction with HMRC
Digitalisation of your interaction with HMRC
 

Recently uploaded

Set off and carry forward of losses and assessment of individuals.pptx
Set off and carry forward of losses and assessment of individuals.pptxSet off and carry forward of losses and assessment of individuals.pptx
Set off and carry forward of losses and assessment of individuals.pptx
HARSHITHV26
 
LA HUG - Video Testimonials with Chynna Morgan - June 2024
LA HUG - Video Testimonials with Chynna Morgan - June 2024LA HUG - Video Testimonials with Chynna Morgan - June 2024
LA HUG - Video Testimonials with Chynna Morgan - June 2024
Lital Barkan
 
Cracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptxCracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptx
Workforce Group
 
The key differences between the MDR and IVDR in the EU
The key differences between the MDR and IVDR in the EUThe key differences between the MDR and IVDR in the EU
The key differences between the MDR and IVDR in the EU
Allensmith572606
 
Creative Web Design Company in Singapore
Creative Web Design Company in SingaporeCreative Web Design Company in Singapore
Creative Web Design Company in Singapore
techboxsqauremedia
 
Affordable Stationery Printing Services in Jaipur | Navpack n Print
Affordable Stationery Printing Services in Jaipur | Navpack n PrintAffordable Stationery Printing Services in Jaipur | Navpack n Print
Affordable Stationery Printing Services in Jaipur | Navpack n Print
Navpack & Print
 
Evgen Osmak: Methods of key project parameters estimation: from the shaman-in...
Evgen Osmak: Methods of key project parameters estimation: from the shaman-in...Evgen Osmak: Methods of key project parameters estimation: from the shaman-in...
Evgen Osmak: Methods of key project parameters estimation: from the shaman-in...
Lviv Startup Club
 
Buy Verified PayPal Account | Buy Google 5 Star Reviews
Buy Verified PayPal Account | Buy Google 5 Star ReviewsBuy Verified PayPal Account | Buy Google 5 Star Reviews
Buy Verified PayPal Account | Buy Google 5 Star Reviews
usawebmarket
 
Premium MEAN Stack Development Solutions for Modern Businesses
Premium MEAN Stack Development Solutions for Modern BusinessesPremium MEAN Stack Development Solutions for Modern Businesses
Premium MEAN Stack Development Solutions for Modern Businesses
SynapseIndia
 
Discover the innovative and creative projects that highlight my journey throu...
Discover the innovative and creative projects that highlight my journey throu...Discover the innovative and creative projects that highlight my journey throu...
Discover the innovative and creative projects that highlight my journey throu...
dylandmeas
 
Recruiting in the Digital Age: A Social Media Masterclass
Recruiting in the Digital Age: A Social Media MasterclassRecruiting in the Digital Age: A Social Media Masterclass
Recruiting in the Digital Age: A Social Media Masterclass
LuanWise
 
Company Valuation webinar series - Tuesday, 4 June 2024
Company Valuation webinar series - Tuesday, 4 June 2024Company Valuation webinar series - Tuesday, 4 June 2024
Company Valuation webinar series - Tuesday, 4 June 2024
FelixPerez547899
 
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdfSearch Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Arihant Webtech Pvt. Ltd
 
3.0 Project 2_ Developing My Brand Identity Kit.pptx
3.0 Project 2_ Developing My Brand Identity Kit.pptx3.0 Project 2_ Developing My Brand Identity Kit.pptx
3.0 Project 2_ Developing My Brand Identity Kit.pptx
tanyjahb
 
VAT Registration Outlined In UAE: Benefits and Requirements
VAT Registration Outlined In UAE: Benefits and RequirementsVAT Registration Outlined In UAE: Benefits and Requirements
VAT Registration Outlined In UAE: Benefits and Requirements
uae taxgpt
 
Project File Report BBA 6th semester.pdf
Project File Report BBA 6th semester.pdfProject File Report BBA 6th semester.pdf
Project File Report BBA 6th semester.pdf
RajPriye
 
The-McKinsey-7S-Framework. strategic management
The-McKinsey-7S-Framework. strategic managementThe-McKinsey-7S-Framework. strategic management
The-McKinsey-7S-Framework. strategic management
Bojamma2
 
Exploring Patterns of Connection with Social Dreaming
Exploring Patterns of Connection with Social DreamingExploring Patterns of Connection with Social Dreaming
Exploring Patterns of Connection with Social Dreaming
Nicola Wreford-Howard
 
falcon-invoice-discounting-a-premier-platform-for-investors-in-india
falcon-invoice-discounting-a-premier-platform-for-investors-in-indiafalcon-invoice-discounting-a-premier-platform-for-investors-in-india
falcon-invoice-discounting-a-premier-platform-for-investors-in-india
Falcon Invoice Discounting
 
What is the TDS Return Filing Due Date for FY 2024-25.pdf
What is the TDS Return Filing Due Date for FY 2024-25.pdfWhat is the TDS Return Filing Due Date for FY 2024-25.pdf
What is the TDS Return Filing Due Date for FY 2024-25.pdf
seoforlegalpillers
 

Recently uploaded (20)

Set off and carry forward of losses and assessment of individuals.pptx
Set off and carry forward of losses and assessment of individuals.pptxSet off and carry forward of losses and assessment of individuals.pptx
Set off and carry forward of losses and assessment of individuals.pptx
 
LA HUG - Video Testimonials with Chynna Morgan - June 2024
LA HUG - Video Testimonials with Chynna Morgan - June 2024LA HUG - Video Testimonials with Chynna Morgan - June 2024
LA HUG - Video Testimonials with Chynna Morgan - June 2024
 
Cracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptxCracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptx
 
The key differences between the MDR and IVDR in the EU
The key differences between the MDR and IVDR in the EUThe key differences between the MDR and IVDR in the EU
The key differences between the MDR and IVDR in the EU
 
Creative Web Design Company in Singapore
Creative Web Design Company in SingaporeCreative Web Design Company in Singapore
Creative Web Design Company in Singapore
 
Affordable Stationery Printing Services in Jaipur | Navpack n Print
Affordable Stationery Printing Services in Jaipur | Navpack n PrintAffordable Stationery Printing Services in Jaipur | Navpack n Print
Affordable Stationery Printing Services in Jaipur | Navpack n Print
 
Evgen Osmak: Methods of key project parameters estimation: from the shaman-in...
Evgen Osmak: Methods of key project parameters estimation: from the shaman-in...Evgen Osmak: Methods of key project parameters estimation: from the shaman-in...
Evgen Osmak: Methods of key project parameters estimation: from the shaman-in...
 
Buy Verified PayPal Account | Buy Google 5 Star Reviews
Buy Verified PayPal Account | Buy Google 5 Star ReviewsBuy Verified PayPal Account | Buy Google 5 Star Reviews
Buy Verified PayPal Account | Buy Google 5 Star Reviews
 
Premium MEAN Stack Development Solutions for Modern Businesses
Premium MEAN Stack Development Solutions for Modern BusinessesPremium MEAN Stack Development Solutions for Modern Businesses
Premium MEAN Stack Development Solutions for Modern Businesses
 
Discover the innovative and creative projects that highlight my journey throu...
Discover the innovative and creative projects that highlight my journey throu...Discover the innovative and creative projects that highlight my journey throu...
Discover the innovative and creative projects that highlight my journey throu...
 
Recruiting in the Digital Age: A Social Media Masterclass
Recruiting in the Digital Age: A Social Media MasterclassRecruiting in the Digital Age: A Social Media Masterclass
Recruiting in the Digital Age: A Social Media Masterclass
 
Company Valuation webinar series - Tuesday, 4 June 2024
Company Valuation webinar series - Tuesday, 4 June 2024Company Valuation webinar series - Tuesday, 4 June 2024
Company Valuation webinar series - Tuesday, 4 June 2024
 
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdfSearch Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdf
 
3.0 Project 2_ Developing My Brand Identity Kit.pptx
3.0 Project 2_ Developing My Brand Identity Kit.pptx3.0 Project 2_ Developing My Brand Identity Kit.pptx
3.0 Project 2_ Developing My Brand Identity Kit.pptx
 
VAT Registration Outlined In UAE: Benefits and Requirements
VAT Registration Outlined In UAE: Benefits and RequirementsVAT Registration Outlined In UAE: Benefits and Requirements
VAT Registration Outlined In UAE: Benefits and Requirements
 
Project File Report BBA 6th semester.pdf
Project File Report BBA 6th semester.pdfProject File Report BBA 6th semester.pdf
Project File Report BBA 6th semester.pdf
 
The-McKinsey-7S-Framework. strategic management
The-McKinsey-7S-Framework. strategic managementThe-McKinsey-7S-Framework. strategic management
The-McKinsey-7S-Framework. strategic management
 
Exploring Patterns of Connection with Social Dreaming
Exploring Patterns of Connection with Social DreamingExploring Patterns of Connection with Social Dreaming
Exploring Patterns of Connection with Social Dreaming
 
falcon-invoice-discounting-a-premier-platform-for-investors-in-india
falcon-invoice-discounting-a-premier-platform-for-investors-in-indiafalcon-invoice-discounting-a-premier-platform-for-investors-in-india
falcon-invoice-discounting-a-premier-platform-for-investors-in-india
 
What is the TDS Return Filing Due Date for FY 2024-25.pdf
What is the TDS Return Filing Due Date for FY 2024-25.pdfWhat is the TDS Return Filing Due Date for FY 2024-25.pdf
What is the TDS Return Filing Due Date for FY 2024-25.pdf
 

"GDPR – Are you ready?"

  • 3. Business Journey Partner Laura Forrest @MHSolicitors
  • 4. The Business Journey GDPR – Are you ready? 20th March 2018 www.macdonaldhenderson.co.uk © 2017
  • 5. Practical Guide 1 - Audit and document the personal data your business holds
  • 6. Personal Data What is personal data?  “personal data” means any information relating to an identified or identifiable natural person (‘data subject’)…who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number…or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person; (Article 4, GDPR)
  • 7. Practical Guide 2 – Look at your current practice of processing data
  • 8. Personal Data  “processing” means any operation or set of operations which is performed on personal data…such as collection, recording, organisation, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction; (Article 4, GDPR)
  • 9. Lawful Basis for Processing  Contract  Legal Obligation  Vital Interests  Public Task  Legitimate Interests  Consent
  • 10. Practical Guide 3 – Review consents and obtaining consents processes
  • 11. Consent To rely on consent as a lawful basis for processing the consent must be:  Freely given;  Specific;  Informed;  Unambiguous;  Explicit;
  • 12. Lawful Basis for Processing The principle behind identifying a lawful basis is that: “personal data shall be…processed lawfully, fairly and in a transparent manner in relation to the data subject”.
  • 13. Practical Guide 4 – Review of your commercial contracts
  • 14. Practical Guide 5 – Ensure you have a process in place for any data breaches
  • 15. Practical Guide 6 – Other steps to achieve compliance
  • 16. Key Points of Action  Audit and document the personal data your business holds;  Look at your current practice of processing data;  Review consents and obtaining consent processes;
  • 17. Key Points of Action  Review commercial contracts to consider the new data processing obligations;  Ensure you have a process in place for data breaches;
  • 18. Key Points of Action  Review all privacy notices and policies currently used and implement updates where necessary;  Review all employment policies in respect of data protection and implement updates where necessary;  Introduce training for employees where applicable;
  • 19. Contact Details For further information on the policies, procedures and contractual amendments required to assist with compliance with the GDPR Laura Forrest 0141 248 4957 laura@macdonaldhenderson.co.uk
  • 22. Dates for the diary 12 June 11 September 27 November