Frequently asked questions
surrounding the upcoming GDPR
regulations that come into
effect on 25th May 2018.
GDPR
GDPR - WHAT
DO YOU NEED
TO KNOW
GDPR: It’s relevant to a lot of
UK organisations. The
deadline is getting closer and
many are still yet to be fully
compliant. Below we outline
some of the key questions
that you may have with
regards to the changed
regulations
WHAT IS
GDPR?
A new European regulation
that covers data protection
and takes effect on the 25th
May 2018. It’s aim is to
improve and unify the way
personal data is stored,
used and protected
WHAT IS
CONSIDERED TO
BE PERSONAL
DATA?
• Any information that
allows a person be
identified based on data
held
• Examples: IP address,
ID number, biometrics
WHO DOES GDPR
APPLY TO?
Essentially every organisation
that processes, stores or
transmits personal data of EU
residents. Both data processors
and controllers have
obligations under GDPR
DOES GDPR ONLY
APPLY TO EU-
BASED
COMPANIES?
• It applies to every
organisation that processes
personal data
• Even if based outside the
EU, as long as they serve
the EU market, they are
obliged to be GDPR
compliant
WHAT IF I DON’T
FOLLOW GDPR?
WHAT ARE THE
PENALTIES?
• Severe fines of 2-4% of
turnover or €20m –
whichever is greater
• Failure to address thr
original issue can result in
further fines (up to €40m)
• Reputational damage
WILL THE FINES BE
ENFORCED?
• It is down to the authorities
to have the appropriate
resources in place in each
jurisdiction
• You should take as many
steps as possible to display
that you are attempting to
become compliant
WILL GDPR
AFFECT THE UK
AFTER BREXIT?
• Yes, these rules apply
regardless of Brexit
• The UK’s Data Protection Bill
goes hand in hand with
GDPR
WHAT ARE THE
INDIVIDUAL’S
RIGHTS UNDER
GDPR?
• Strengthened privacy rights
• They can also object to marketing,
profiling and processing
Be informed Restrict processing
Access Data portability
Rectification Object
Erasure
People have the right to:
DOES GDPR
REFER TO COLD
CALLING?
• It doesn’t directly impact telesales,
so prospects can be contacted
without having to opt in
• However, EU ePrivacy Regulation
is expected to be implemented
which will regulate telesales
THANKS FOR READING
If you would like to speak to a specialist consultant about whether you
need to hire staff members to help you reach compliance, don’t hesitate
to get in touch with Morgan McKinley
www.morganmckinley.co.uk

GDPR FAQ'S

  • 1.
    Frequently asked questions surroundingthe upcoming GDPR regulations that come into effect on 25th May 2018. GDPR
  • 2.
    GDPR - WHAT DOYOU NEED TO KNOW GDPR: It’s relevant to a lot of UK organisations. The deadline is getting closer and many are still yet to be fully compliant. Below we outline some of the key questions that you may have with regards to the changed regulations
  • 3.
    WHAT IS GDPR? A newEuropean regulation that covers data protection and takes effect on the 25th May 2018. It’s aim is to improve and unify the way personal data is stored, used and protected
  • 4.
    WHAT IS CONSIDERED TO BEPERSONAL DATA? • Any information that allows a person be identified based on data held • Examples: IP address, ID number, biometrics
  • 5.
    WHO DOES GDPR APPLYTO? Essentially every organisation that processes, stores or transmits personal data of EU residents. Both data processors and controllers have obligations under GDPR
  • 6.
    DOES GDPR ONLY APPLYTO EU- BASED COMPANIES? • It applies to every organisation that processes personal data • Even if based outside the EU, as long as they serve the EU market, they are obliged to be GDPR compliant
  • 7.
    WHAT IF IDON’T FOLLOW GDPR? WHAT ARE THE PENALTIES? • Severe fines of 2-4% of turnover or €20m – whichever is greater • Failure to address thr original issue can result in further fines (up to €40m) • Reputational damage
  • 8.
    WILL THE FINESBE ENFORCED? • It is down to the authorities to have the appropriate resources in place in each jurisdiction • You should take as many steps as possible to display that you are attempting to become compliant
  • 9.
    WILL GDPR AFFECT THEUK AFTER BREXIT? • Yes, these rules apply regardless of Brexit • The UK’s Data Protection Bill goes hand in hand with GDPR
  • 10.
    WHAT ARE THE INDIVIDUAL’S RIGHTSUNDER GDPR? • Strengthened privacy rights • They can also object to marketing, profiling and processing Be informed Restrict processing Access Data portability Rectification Object Erasure People have the right to:
  • 11.
    DOES GDPR REFER TOCOLD CALLING? • It doesn’t directly impact telesales, so prospects can be contacted without having to opt in • However, EU ePrivacy Regulation is expected to be implemented which will regulate telesales
  • 12.
    THANKS FOR READING Ifyou would like to speak to a specialist consultant about whether you need to hire staff members to help you reach compliance, don’t hesitate to get in touch with Morgan McKinley www.morganmckinley.co.uk