SlideShare a Scribd company logo
GDPR (EU 2016/679)
General Data Protection Regulation
25.05.2018
Enforcement date
Regulation Published
27.04.2016
2017 2018
Attention point : replaces Directive
95/46/EC currently in force
Who, where, what?
• Actors:
• Data subjects whose personal data is processed
• Processors, controllers of personal data
• Supervision authoritiesPurpose and scope of GDPR
Strengthening current personal data protection regulation (EU 95/46), GDPR lays down
rules relating to protection of natural persons with regard to processing and free
movement of personal data. It applies to all entities in EU member states processing
personal data by automated means and processing which form part of a filing system.
Application of GDPR will be supervised in Belgium by the privacy commission.
Personal Data Processing Principles
• Personal data shall be collected for specified and legitimate purpose only.
• Personal data shall be processed transparently, lawfully (consent required or
processing necessary for compliance/contract performance) and ensuring security,
accuracy, etc.
• Data subject has several rights related to his personal data: right to receive info from
controller , right to be forgotten, right to data portability, etc
Controllers/processors obligations*
Controllers/processors :
• Shall implement technical and organizational measures to ensure that
• processing is performed in accordance with regulation and that only personal data
necessary for each specific processing purpose are processed
• an appropriate level of security (encryption, confidentiality, integrity, availability
and resilience of processing systems) is applied
• Maintain record of processing activities describing the processing
• Notify personal data breaches without undue delay to supervisory authority
Data protection assessment and Data Protection Officer (DPO)
Supervision authority defined situations in which :
• Controller has to carry out an impact assessment of intended processing and consult
supervisory authority prior to processing
• a DPO should be appointed to monitor compliance, advise on impact assessment,
raise awareness, train staff and cooperate with supervisory authority
Miscellaneous
• Member States, supervisory authorities and Commission shall encourage
establishment of data protection certifications and codes of conduct
• Significant increase of fines and penalties for non-compliance (up to 20 M€ or 4% of
worldwide turnover)
• Creation of European Data Protection Board to ensure consistent application of GDPR
in member states.
Review existing
• Global assessment of GDPR readiness
• Perform Data protection impact assessments
Development
• Organize processes with regard to data subject’s requests
and rights
• Provide (interim) Data Protection Officers
Coordinate &
Support
• Technical consultancy on data security
• Compile records of processing activities
INITIO’S Offering
* Data protection by design and by default

More Related Content

What's hot

Data Flow Mapping and the EU GDPR
Data Flow Mapping and the EU GDPRData Flow Mapping and the EU GDPR
Data Flow Mapping and the EU GDPR
IT Governance Ltd
 
Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...
Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...
Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...
Qualsys Ltd
 
GDPR in practice
GDPR in practiceGDPR in practice
GDPR in practice
ZoneFox
 
Regulation (EU) 2016_679_GDPR_Overview_June 2016
Regulation (EU) 2016_679_GDPR_Overview_June 2016Regulation (EU) 2016_679_GDPR_Overview_June 2016
Regulation (EU) 2016_679_GDPR_Overview_June 2016John Greenwood
 
GDPR Cyber Insurance 11/1/2017
GDPR Cyber Insurance 11/1/2017GDPR Cyber Insurance 11/1/2017
GDPR Cyber Insurance 11/1/2017
isc2-hellenic
 
20170323 are you ready the new gdpr is here
20170323 are you ready the new gdpr is here20170323 are you ready the new gdpr is here
20170323 are you ready the new gdpr is here
Richard Hogg,Global GDPR Offerings Evangelist
 
Simple GDPR Overview
Simple GDPR OverviewSimple GDPR Overview
Simple GDPR Overview
Gydeline Ltd
 
EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer
IT Governance Ltd
 
GDPRR: The Key Changes
GDPRR: The Key ChangesGDPRR: The Key Changes
GDPRR: The Key Changes
Craig Clark ITIL, CIS LI,EU GDPR P
 
GDPR: Key Article Overview
GDPR: Key Article OverviewGDPR: Key Article Overview
GDPR: Key Article Overview
Craig Clark ITIL, CIS LI,EU GDPR P
 
MindMap AVG Louwers Advocaten V 4.0 (EN)
MindMap AVG Louwers Advocaten V 4.0 (EN)MindMap AVG Louwers Advocaten V 4.0 (EN)
MindMap AVG Louwers Advocaten V 4.0 (EN)Huub de Jong
 
GDPR for dummies
GDPR for dummies  GDPR for dummies
GDPR for dummies
Benoît De Nayer
 
GDPR 11/1/2017
GDPR 11/1/2017GDPR 11/1/2017
GDPR 11/1/2017
isc2-hellenic
 
Data Breaches and the EU GDPR
Data Breaches and the EU GDPRData Breaches and the EU GDPR
Data Breaches and the EU GDPR
IT Governance Ltd
 
Datum DPO outsourced May 2016
Datum DPO outsourced May 2016Datum DPO outsourced May 2016
Datum DPO outsourced May 2016Mark Honeyball
 
What is the new data protection regulation GDPR and why should you care? Jesp...
What is the new data protection regulation GDPR and why should you care? Jesp...What is the new data protection regulation GDPR and why should you care? Jesp...
What is the new data protection regulation GDPR and why should you care? Jesp...
Exove
 
SureSkills GDPR - Discover the Smart Solution
SureSkills GDPR - Discover the Smart Solution SureSkills GDPR - Discover the Smart Solution
SureSkills GDPR - Discover the Smart Solution
Google
 
GDPR security services - Areyou ready ?
GDPR security services - Areyou ready ?GDPR security services - Areyou ready ?
GDPR security services - Areyou ready ?
Frederick Penaud
 
GDPR what you should know and how to minimize impact on your business
GDPR what you should know and how to minimize impact on your businessGDPR what you should know and how to minimize impact on your business
GDPR what you should know and how to minimize impact on your business
Olivier BARROT
 
The GDPR for Techies
The GDPR for TechiesThe GDPR for Techies
The GDPR for Techies
Lilian Edwards
 

What's hot (20)

Data Flow Mapping and the EU GDPR
Data Flow Mapping and the EU GDPRData Flow Mapping and the EU GDPR
Data Flow Mapping and the EU GDPR
 
Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...
Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...
Preparing for GDPR: General Data Protection Regulation - Stakeholder Presenta...
 
GDPR in practice
GDPR in practiceGDPR in practice
GDPR in practice
 
Regulation (EU) 2016_679_GDPR_Overview_June 2016
Regulation (EU) 2016_679_GDPR_Overview_June 2016Regulation (EU) 2016_679_GDPR_Overview_June 2016
Regulation (EU) 2016_679_GDPR_Overview_June 2016
 
GDPR Cyber Insurance 11/1/2017
GDPR Cyber Insurance 11/1/2017GDPR Cyber Insurance 11/1/2017
GDPR Cyber Insurance 11/1/2017
 
20170323 are you ready the new gdpr is here
20170323 are you ready the new gdpr is here20170323 are you ready the new gdpr is here
20170323 are you ready the new gdpr is here
 
Simple GDPR Overview
Simple GDPR OverviewSimple GDPR Overview
Simple GDPR Overview
 
EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer EU GDPR: The role of the data protection officer
EU GDPR: The role of the data protection officer
 
GDPRR: The Key Changes
GDPRR: The Key ChangesGDPRR: The Key Changes
GDPRR: The Key Changes
 
GDPR: Key Article Overview
GDPR: Key Article OverviewGDPR: Key Article Overview
GDPR: Key Article Overview
 
MindMap AVG Louwers Advocaten V 4.0 (EN)
MindMap AVG Louwers Advocaten V 4.0 (EN)MindMap AVG Louwers Advocaten V 4.0 (EN)
MindMap AVG Louwers Advocaten V 4.0 (EN)
 
GDPR for dummies
GDPR for dummies  GDPR for dummies
GDPR for dummies
 
GDPR 11/1/2017
GDPR 11/1/2017GDPR 11/1/2017
GDPR 11/1/2017
 
Data Breaches and the EU GDPR
Data Breaches and the EU GDPRData Breaches and the EU GDPR
Data Breaches and the EU GDPR
 
Datum DPO outsourced May 2016
Datum DPO outsourced May 2016Datum DPO outsourced May 2016
Datum DPO outsourced May 2016
 
What is the new data protection regulation GDPR and why should you care? Jesp...
What is the new data protection regulation GDPR and why should you care? Jesp...What is the new data protection regulation GDPR and why should you care? Jesp...
What is the new data protection regulation GDPR and why should you care? Jesp...
 
SureSkills GDPR - Discover the Smart Solution
SureSkills GDPR - Discover the Smart Solution SureSkills GDPR - Discover the Smart Solution
SureSkills GDPR - Discover the Smart Solution
 
GDPR security services - Areyou ready ?
GDPR security services - Areyou ready ?GDPR security services - Areyou ready ?
GDPR security services - Areyou ready ?
 
GDPR what you should know and how to minimize impact on your business
GDPR what you should know and how to minimize impact on your businessGDPR what you should know and how to minimize impact on your business
GDPR what you should know and how to minimize impact on your business
 
The GDPR for Techies
The GDPR for TechiesThe GDPR for Techies
The GDPR for Techies
 

Similar to GDPR in a nutshell

Public sector breakfast club, October 2016, Exeter
Public sector breakfast club, October 2016, ExeterPublic sector breakfast club, October 2016, Exeter
Public sector breakfast club, October 2016, Exeter
Browne Jacobson LLP
 
Domain management and brand protection in the era of the EU's GDPR
Domain management and brand protection in the era of the EU's GDPRDomain management and brand protection in the era of the EU's GDPR
Domain management and brand protection in the era of the EU's GDPR
BartLieben
 
Kawser Hamid : ICO and Data Protection in the Cloud
Kawser Hamid : ICO and Data Protection in the CloudKawser Hamid : ICO and Data Protection in the Cloud
Kawser Hamid : ICO and Data Protection in the Cloud
Gurbir Singh
 
Vuzion Love Cloud GDPR Event
Vuzion Love Cloud GDPR Event Vuzion Love Cloud GDPR Event
Vuzion Love Cloud GDPR Event
Vuzion
 
GDPR – what does it mean for charities and what you need to consider - Iain P...
GDPR – what does it mean for charities and what you need to consider - Iain P...GDPR – what does it mean for charities and what you need to consider - Iain P...
GDPR – what does it mean for charities and what you need to consider - Iain P...
m-hance
 
EU GDPR(general data protection regulation)
EU GDPR(general data protection regulation)EU GDPR(general data protection regulation)
EU GDPR(general data protection regulation)
RAKESH S
 
De groote de man Ingrid de Poorter
De groote de man Ingrid de PoorterDe groote de man Ingrid de Poorter
De groote de man Ingrid de Poorter
BigDataExpo
 
ABM Display Advertising Success in the World of GDPR [PPT]
ABM Display Advertising Success in the World of GDPR [PPT]ABM Display Advertising Success in the World of GDPR [PPT]
ABM Display Advertising Success in the World of GDPR [PPT]
Kwanzoo Inc
 
The general data protection act overview
The general data protection act overviewThe general data protection act overview
The general data protection act overview
Roy Biakpara, MSc.,CISA,CISSP,CISM,ISO27KLA
 
Members evening - data protection
Members evening - data protectionMembers evening - data protection
Members evening - data protection
MRS
 
Data transfers to countries outside the EU/EEA under the GDPR
Data transfers to countries outside the EU/EEA under the GDPRData transfers to countries outside the EU/EEA under the GDPR
Data transfers to countries outside the EU/EEA under the GDPR
IT Governance Ltd
 
GDPR challenges for the healthcare sector and the practical steps to compliance
GDPR challenges for the healthcare sector and the practical steps to complianceGDPR challenges for the healthcare sector and the practical steps to compliance
GDPR challenges for the healthcare sector and the practical steps to compliance
IT Governance Ltd
 
EU cybersecurity requirements under current and future medical devices regula...
EU cybersecurity requirements under current and future medical devices regula...EU cybersecurity requirements under current and future medical devices regula...
EU cybersecurity requirements under current and future medical devices regula...
Erik Vollebregt
 
Accountability under the GDPR: What does it mean for Boards & Senior Management?
Accountability under the GDPR: What does it mean for Boards & Senior Management?Accountability under the GDPR: What does it mean for Boards & Senior Management?
Accountability under the GDPR: What does it mean for Boards & Senior Management?
IT Governance Ltd
 
Introduction to GDPR
Introduction to GDPRIntroduction to GDPR
Introduction to GDPR
Priyab Satoshi
 
The first steps towards GDPR compliance 
The first steps towards GDPR compliance The first steps towards GDPR compliance 
The first steps towards GDPR compliance 
IT Governance Ltd
 
An introduction to data protection - Manchester - 24/06/15
An introduction to data protection - Manchester - 24/06/15An introduction to data protection - Manchester - 24/06/15
An introduction to data protection - Manchester - 24/06/15
Rachel Aldighieri
 
CyNation - 7 things you should know about EU-GDPR
CyNation - 7 things you should know about EU-GDPRCyNation - 7 things you should know about EU-GDPR
CyNation - 7 things you should know about EU-GDPRShadi A. Razak
 
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
PECB
 
An introduction to data protection - 2/09/2015
An introduction to data protection - 2/09/2015An introduction to data protection - 2/09/2015
An introduction to data protection - 2/09/2015
Rachel Aldighieri
 

Similar to GDPR in a nutshell (20)

Public sector breakfast club, October 2016, Exeter
Public sector breakfast club, October 2016, ExeterPublic sector breakfast club, October 2016, Exeter
Public sector breakfast club, October 2016, Exeter
 
Domain management and brand protection in the era of the EU's GDPR
Domain management and brand protection in the era of the EU's GDPRDomain management and brand protection in the era of the EU's GDPR
Domain management and brand protection in the era of the EU's GDPR
 
Kawser Hamid : ICO and Data Protection in the Cloud
Kawser Hamid : ICO and Data Protection in the CloudKawser Hamid : ICO and Data Protection in the Cloud
Kawser Hamid : ICO and Data Protection in the Cloud
 
Vuzion Love Cloud GDPR Event
Vuzion Love Cloud GDPR Event Vuzion Love Cloud GDPR Event
Vuzion Love Cloud GDPR Event
 
GDPR – what does it mean for charities and what you need to consider - Iain P...
GDPR – what does it mean for charities and what you need to consider - Iain P...GDPR – what does it mean for charities and what you need to consider - Iain P...
GDPR – what does it mean for charities and what you need to consider - Iain P...
 
EU GDPR(general data protection regulation)
EU GDPR(general data protection regulation)EU GDPR(general data protection regulation)
EU GDPR(general data protection regulation)
 
De groote de man Ingrid de Poorter
De groote de man Ingrid de PoorterDe groote de man Ingrid de Poorter
De groote de man Ingrid de Poorter
 
ABM Display Advertising Success in the World of GDPR [PPT]
ABM Display Advertising Success in the World of GDPR [PPT]ABM Display Advertising Success in the World of GDPR [PPT]
ABM Display Advertising Success in the World of GDPR [PPT]
 
The general data protection act overview
The general data protection act overviewThe general data protection act overview
The general data protection act overview
 
Members evening - data protection
Members evening - data protectionMembers evening - data protection
Members evening - data protection
 
Data transfers to countries outside the EU/EEA under the GDPR
Data transfers to countries outside the EU/EEA under the GDPRData transfers to countries outside the EU/EEA under the GDPR
Data transfers to countries outside the EU/EEA under the GDPR
 
GDPR challenges for the healthcare sector and the practical steps to compliance
GDPR challenges for the healthcare sector and the practical steps to complianceGDPR challenges for the healthcare sector and the practical steps to compliance
GDPR challenges for the healthcare sector and the practical steps to compliance
 
EU cybersecurity requirements under current and future medical devices regula...
EU cybersecurity requirements under current and future medical devices regula...EU cybersecurity requirements under current and future medical devices regula...
EU cybersecurity requirements under current and future medical devices regula...
 
Accountability under the GDPR: What does it mean for Boards & Senior Management?
Accountability under the GDPR: What does it mean for Boards & Senior Management?Accountability under the GDPR: What does it mean for Boards & Senior Management?
Accountability under the GDPR: What does it mean for Boards & Senior Management?
 
Introduction to GDPR
Introduction to GDPRIntroduction to GDPR
Introduction to GDPR
 
The first steps towards GDPR compliance 
The first steps towards GDPR compliance The first steps towards GDPR compliance 
The first steps towards GDPR compliance 
 
An introduction to data protection - Manchester - 24/06/15
An introduction to data protection - Manchester - 24/06/15An introduction to data protection - Manchester - 24/06/15
An introduction to data protection - Manchester - 24/06/15
 
CyNation - 7 things you should know about EU-GDPR
CyNation - 7 things you should know about EU-GDPRCyNation - 7 things you should know about EU-GDPR
CyNation - 7 things you should know about EU-GDPR
 
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
 
An introduction to data protection - 2/09/2015
An introduction to data protection - 2/09/2015An introduction to data protection - 2/09/2015
An introduction to data protection - 2/09/2015
 

More from Initio

Initio digital innovation digest 25 q2 2021
Initio digital innovation digest 25 q2 2021Initio digital innovation digest 25 q2 2021
Initio digital innovation digest 25 q2 2021
Initio
 
Initio digital innovation_digest_24_q2_2021
Initio digital innovation_digest_24_q2_2021Initio digital innovation_digest_24_q2_2021
Initio digital innovation_digest_24_q2_2021
Initio
 
Initio digital innovation digest 23 2020 focus on CSR
Initio digital innovation digest 23 2020 focus on CSRInitio digital innovation digest 23 2020 focus on CSR
Initio digital innovation digest 23 2020 focus on CSR
Initio
 
Robinhood a force to be reckoned with
Robinhood a force to be reckoned withRobinhood a force to be reckoned with
Robinhood a force to be reckoned with
Initio
 
Initio digital innovation_digest_22_q4_2020
Initio digital innovation_digest_22_q4_2020Initio digital innovation_digest_22_q4_2020
Initio digital innovation_digest_22_q4_2020
Initio
 
Digital Innovation Digest by Initio #21 Q4 2020
Digital Innovation Digest by Initio #21 Q4 2020Digital Innovation Digest by Initio #21 Q4 2020
Digital Innovation Digest by Initio #21 Q4 2020
Initio
 
Digital digest 20 q3 2020
Digital digest 20 q3 2020Digital digest 20 q3 2020
Digital digest 20 q3 2020
Initio
 
Digital Innovation Digest 19 Q2 2020
Digital Innovation Digest 19 Q2 2020Digital Innovation Digest 19 Q2 2020
Digital Innovation Digest 19 Q2 2020
Initio
 
Agile transformation breakfast at Initio
Agile transformation breakfast at InitioAgile transformation breakfast at Initio
Agile transformation breakfast at Initio
Initio
 
Initio digital innovation digest 18 november_2019
Initio digital innovation digest 18 november_2019Initio digital innovation digest 18 november_2019
Initio digital innovation digest 18 november_2019
Initio
 
Initio Regulatory newsletter august 2019
Initio Regulatory newsletter august 2019Initio Regulatory newsletter august 2019
Initio Regulatory newsletter august 2019
Initio
 
Initio digital innovation digest #16 july 2019
Initio digital innovation digest  #16 july 2019Initio digital innovation digest  #16 july 2019
Initio digital innovation digest #16 july 2019
Initio
 
Open Banking: Open Vision or Obsession ?
Open Banking: Open Vision or Obsession ?Open Banking: Open Vision or Obsession ?
Open Banking: Open Vision or Obsession ?
Initio
 
Regulatory newsletter june 2019 - Initio
Regulatory newsletter   june 2019 - InitioRegulatory newsletter   june 2019 - Initio
Regulatory newsletter june 2019 - Initio
Initio
 
Initio digital innovation digest #15 may 2019
Initio digital innovation digest #15 may 2019Initio digital innovation digest #15 may 2019
Initio digital innovation digest #15 may 2019
Initio
 
Initio Regulatory Watch May 2019
Initio Regulatory Watch May 2019Initio Regulatory Watch May 2019
Initio Regulatory Watch May 2019
Initio
 
Initio digital innovation Digest 14 march 2019
Initio digital innovation Digest 14 march 2019Initio digital innovation Digest 14 march 2019
Initio digital innovation Digest 14 march 2019
Initio
 
Initio digital innovation digest #13 q1 2019
Initio digital innovation digest #13 q1 2019Initio digital innovation digest #13 q1 2019
Initio digital innovation digest #13 q1 2019
Initio
 
Initio Regulatory Watch March 2019
Initio Regulatory Watch March 2019Initio Regulatory Watch March 2019
Initio Regulatory Watch March 2019
Initio
 
Initio digital innovation digest #12 February 2019
Initio digital innovation digest #12 February 2019Initio digital innovation digest #12 February 2019
Initio digital innovation digest #12 February 2019
Initio
 

More from Initio (20)

Initio digital innovation digest 25 q2 2021
Initio digital innovation digest 25 q2 2021Initio digital innovation digest 25 q2 2021
Initio digital innovation digest 25 q2 2021
 
Initio digital innovation_digest_24_q2_2021
Initio digital innovation_digest_24_q2_2021Initio digital innovation_digest_24_q2_2021
Initio digital innovation_digest_24_q2_2021
 
Initio digital innovation digest 23 2020 focus on CSR
Initio digital innovation digest 23 2020 focus on CSRInitio digital innovation digest 23 2020 focus on CSR
Initio digital innovation digest 23 2020 focus on CSR
 
Robinhood a force to be reckoned with
Robinhood a force to be reckoned withRobinhood a force to be reckoned with
Robinhood a force to be reckoned with
 
Initio digital innovation_digest_22_q4_2020
Initio digital innovation_digest_22_q4_2020Initio digital innovation_digest_22_q4_2020
Initio digital innovation_digest_22_q4_2020
 
Digital Innovation Digest by Initio #21 Q4 2020
Digital Innovation Digest by Initio #21 Q4 2020Digital Innovation Digest by Initio #21 Q4 2020
Digital Innovation Digest by Initio #21 Q4 2020
 
Digital digest 20 q3 2020
Digital digest 20 q3 2020Digital digest 20 q3 2020
Digital digest 20 q3 2020
 
Digital Innovation Digest 19 Q2 2020
Digital Innovation Digest 19 Q2 2020Digital Innovation Digest 19 Q2 2020
Digital Innovation Digest 19 Q2 2020
 
Agile transformation breakfast at Initio
Agile transformation breakfast at InitioAgile transformation breakfast at Initio
Agile transformation breakfast at Initio
 
Initio digital innovation digest 18 november_2019
Initio digital innovation digest 18 november_2019Initio digital innovation digest 18 november_2019
Initio digital innovation digest 18 november_2019
 
Initio Regulatory newsletter august 2019
Initio Regulatory newsletter august 2019Initio Regulatory newsletter august 2019
Initio Regulatory newsletter august 2019
 
Initio digital innovation digest #16 july 2019
Initio digital innovation digest  #16 july 2019Initio digital innovation digest  #16 july 2019
Initio digital innovation digest #16 july 2019
 
Open Banking: Open Vision or Obsession ?
Open Banking: Open Vision or Obsession ?Open Banking: Open Vision or Obsession ?
Open Banking: Open Vision or Obsession ?
 
Regulatory newsletter june 2019 - Initio
Regulatory newsletter   june 2019 - InitioRegulatory newsletter   june 2019 - Initio
Regulatory newsletter june 2019 - Initio
 
Initio digital innovation digest #15 may 2019
Initio digital innovation digest #15 may 2019Initio digital innovation digest #15 may 2019
Initio digital innovation digest #15 may 2019
 
Initio Regulatory Watch May 2019
Initio Regulatory Watch May 2019Initio Regulatory Watch May 2019
Initio Regulatory Watch May 2019
 
Initio digital innovation Digest 14 march 2019
Initio digital innovation Digest 14 march 2019Initio digital innovation Digest 14 march 2019
Initio digital innovation Digest 14 march 2019
 
Initio digital innovation digest #13 q1 2019
Initio digital innovation digest #13 q1 2019Initio digital innovation digest #13 q1 2019
Initio digital innovation digest #13 q1 2019
 
Initio Regulatory Watch March 2019
Initio Regulatory Watch March 2019Initio Regulatory Watch March 2019
Initio Regulatory Watch March 2019
 
Initio digital innovation digest #12 February 2019
Initio digital innovation digest #12 February 2019Initio digital innovation digest #12 February 2019
Initio digital innovation digest #12 February 2019
 

Recently uploaded

Highlights_of_Bhartiya_Nyaya_Sanhita.pptx
Highlights_of_Bhartiya_Nyaya_Sanhita.pptxHighlights_of_Bhartiya_Nyaya_Sanhita.pptx
Highlights_of_Bhartiya_Nyaya_Sanhita.pptx
anjalidixit21
 
Law Commission Report. Commercial Court Act.
Law Commission Report. Commercial Court Act.Law Commission Report. Commercial Court Act.
Law Commission Report. Commercial Court Act.
Purushottam Jha
 
EMPLOYMENT LAW AN OVERVIEW in Malawi.pptx
EMPLOYMENT LAW  AN OVERVIEW in Malawi.pptxEMPLOYMENT LAW  AN OVERVIEW in Malawi.pptx
EMPLOYMENT LAW AN OVERVIEW in Malawi.pptx
MwaiMapemba
 
PRECEDENT AS A SOURCE OF LAW (SAIF JAVED).pptx
PRECEDENT AS A SOURCE OF LAW (SAIF JAVED).pptxPRECEDENT AS A SOURCE OF LAW (SAIF JAVED).pptx
PRECEDENT AS A SOURCE OF LAW (SAIF JAVED).pptx
OmGod1
 
Donald_J_Trump_katigoritirio_stormi_daniels.pdf
Donald_J_Trump_katigoritirio_stormi_daniels.pdfDonald_J_Trump_katigoritirio_stormi_daniels.pdf
Donald_J_Trump_katigoritirio_stormi_daniels.pdf
ssuser5750e1
 
DNA Testing in Civil and Criminal Matters.pptx
DNA Testing in Civil and Criminal Matters.pptxDNA Testing in Civil and Criminal Matters.pptx
DNA Testing in Civil and Criminal Matters.pptx
patrons legal
 
Military Commissions details LtCol Thomas Jasper as Detailed Defense Counsel
Military Commissions details LtCol Thomas Jasper as Detailed Defense CounselMilitary Commissions details LtCol Thomas Jasper as Detailed Defense Counsel
Military Commissions details LtCol Thomas Jasper as Detailed Defense Counsel
Thomas (Tom) Jasper
 
WINDING UP of COMPANY, Modes of Dissolution
WINDING UP of COMPANY, Modes of DissolutionWINDING UP of COMPANY, Modes of Dissolution
WINDING UP of COMPANY, Modes of Dissolution
KHURRAMWALI
 
Responsibilities of the office bearers while registering multi-state cooperat...
Responsibilities of the office bearers while registering multi-state cooperat...Responsibilities of the office bearers while registering multi-state cooperat...
Responsibilities of the office bearers while registering multi-state cooperat...
Finlaw Consultancy Pvt Ltd
 
Introducing New Government Regulation on Toll Road.pdf
Introducing New Government Regulation on Toll Road.pdfIntroducing New Government Regulation on Toll Road.pdf
Introducing New Government Regulation on Toll Road.pdf
AHRP Law Firm
 
ALL EYES ON RAFAH BUT WHY Explain more.pdf
ALL EYES ON RAFAH BUT WHY Explain more.pdfALL EYES ON RAFAH BUT WHY Explain more.pdf
ALL EYES ON RAFAH BUT WHY Explain more.pdf
46adnanshahzad
 
Agrarian Reform Policies in the Philippines: a quiz
Agrarian Reform Policies in the Philippines: a quizAgrarian Reform Policies in the Philippines: a quiz
Agrarian Reform Policies in the Philippines: a quiz
gaelcabigunda
 
办理(waikato毕业证书)新西兰怀卡托大学毕业证双学位证书原版一模一样
办理(waikato毕业证书)新西兰怀卡托大学毕业证双学位证书原版一模一样办理(waikato毕业证书)新西兰怀卡托大学毕业证双学位证书原版一模一样
办理(waikato毕业证书)新西兰怀卡托大学毕业证双学位证书原版一模一样
9ib5wiwt
 
定制(nus毕业证书)新加坡国立大学毕业证学位证书实拍图原版一模一样
定制(nus毕业证书)新加坡国立大学毕业证学位证书实拍图原版一模一样定制(nus毕业证书)新加坡国立大学毕业证学位证书实拍图原版一模一样
定制(nus毕业证书)新加坡国立大学毕业证学位证书实拍图原版一模一样
9ib5wiwt
 
How to Obtain Permanent Residency in the Netherlands
How to Obtain Permanent Residency in the NetherlandsHow to Obtain Permanent Residency in the Netherlands
How to Obtain Permanent Residency in the Netherlands
BridgeWest.eu
 
Notes-on-Prescription-Obligations-and-Contracts.doc
Notes-on-Prescription-Obligations-and-Contracts.docNotes-on-Prescription-Obligations-and-Contracts.doc
Notes-on-Prescription-Obligations-and-Contracts.doc
BRELGOSIMAT
 
Debt Mapping Camp bebas riba to know how much our debt
Debt Mapping Camp bebas riba to know how much our debtDebt Mapping Camp bebas riba to know how much our debt
Debt Mapping Camp bebas riba to know how much our debt
ssuser0576e4
 
Secure Your Brand: File a Trademark Today
Secure Your Brand: File a Trademark TodaySecure Your Brand: File a Trademark Today
Secure Your Brand: File a Trademark Today
Trademark Quick
 
NATURE, ORIGIN AND DEVELOPMENT OF INTERNATIONAL LAW.pptx
NATURE, ORIGIN AND DEVELOPMENT OF INTERNATIONAL LAW.pptxNATURE, ORIGIN AND DEVELOPMENT OF INTERNATIONAL LAW.pptx
NATURE, ORIGIN AND DEVELOPMENT OF INTERNATIONAL LAW.pptx
anvithaav
 
ASHWINI KUMAR UPADHYAY v/s Union of India.pptx
ASHWINI KUMAR UPADHYAY v/s Union of India.pptxASHWINI KUMAR UPADHYAY v/s Union of India.pptx
ASHWINI KUMAR UPADHYAY v/s Union of India.pptx
shweeta209
 

Recently uploaded (20)

Highlights_of_Bhartiya_Nyaya_Sanhita.pptx
Highlights_of_Bhartiya_Nyaya_Sanhita.pptxHighlights_of_Bhartiya_Nyaya_Sanhita.pptx
Highlights_of_Bhartiya_Nyaya_Sanhita.pptx
 
Law Commission Report. Commercial Court Act.
Law Commission Report. Commercial Court Act.Law Commission Report. Commercial Court Act.
Law Commission Report. Commercial Court Act.
 
EMPLOYMENT LAW AN OVERVIEW in Malawi.pptx
EMPLOYMENT LAW  AN OVERVIEW in Malawi.pptxEMPLOYMENT LAW  AN OVERVIEW in Malawi.pptx
EMPLOYMENT LAW AN OVERVIEW in Malawi.pptx
 
PRECEDENT AS A SOURCE OF LAW (SAIF JAVED).pptx
PRECEDENT AS A SOURCE OF LAW (SAIF JAVED).pptxPRECEDENT AS A SOURCE OF LAW (SAIF JAVED).pptx
PRECEDENT AS A SOURCE OF LAW (SAIF JAVED).pptx
 
Donald_J_Trump_katigoritirio_stormi_daniels.pdf
Donald_J_Trump_katigoritirio_stormi_daniels.pdfDonald_J_Trump_katigoritirio_stormi_daniels.pdf
Donald_J_Trump_katigoritirio_stormi_daniels.pdf
 
DNA Testing in Civil and Criminal Matters.pptx
DNA Testing in Civil and Criminal Matters.pptxDNA Testing in Civil and Criminal Matters.pptx
DNA Testing in Civil and Criminal Matters.pptx
 
Military Commissions details LtCol Thomas Jasper as Detailed Defense Counsel
Military Commissions details LtCol Thomas Jasper as Detailed Defense CounselMilitary Commissions details LtCol Thomas Jasper as Detailed Defense Counsel
Military Commissions details LtCol Thomas Jasper as Detailed Defense Counsel
 
WINDING UP of COMPANY, Modes of Dissolution
WINDING UP of COMPANY, Modes of DissolutionWINDING UP of COMPANY, Modes of Dissolution
WINDING UP of COMPANY, Modes of Dissolution
 
Responsibilities of the office bearers while registering multi-state cooperat...
Responsibilities of the office bearers while registering multi-state cooperat...Responsibilities of the office bearers while registering multi-state cooperat...
Responsibilities of the office bearers while registering multi-state cooperat...
 
Introducing New Government Regulation on Toll Road.pdf
Introducing New Government Regulation on Toll Road.pdfIntroducing New Government Regulation on Toll Road.pdf
Introducing New Government Regulation on Toll Road.pdf
 
ALL EYES ON RAFAH BUT WHY Explain more.pdf
ALL EYES ON RAFAH BUT WHY Explain more.pdfALL EYES ON RAFAH BUT WHY Explain more.pdf
ALL EYES ON RAFAH BUT WHY Explain more.pdf
 
Agrarian Reform Policies in the Philippines: a quiz
Agrarian Reform Policies in the Philippines: a quizAgrarian Reform Policies in the Philippines: a quiz
Agrarian Reform Policies in the Philippines: a quiz
 
办理(waikato毕业证书)新西兰怀卡托大学毕业证双学位证书原版一模一样
办理(waikato毕业证书)新西兰怀卡托大学毕业证双学位证书原版一模一样办理(waikato毕业证书)新西兰怀卡托大学毕业证双学位证书原版一模一样
办理(waikato毕业证书)新西兰怀卡托大学毕业证双学位证书原版一模一样
 
定制(nus毕业证书)新加坡国立大学毕业证学位证书实拍图原版一模一样
定制(nus毕业证书)新加坡国立大学毕业证学位证书实拍图原版一模一样定制(nus毕业证书)新加坡国立大学毕业证学位证书实拍图原版一模一样
定制(nus毕业证书)新加坡国立大学毕业证学位证书实拍图原版一模一样
 
How to Obtain Permanent Residency in the Netherlands
How to Obtain Permanent Residency in the NetherlandsHow to Obtain Permanent Residency in the Netherlands
How to Obtain Permanent Residency in the Netherlands
 
Notes-on-Prescription-Obligations-and-Contracts.doc
Notes-on-Prescription-Obligations-and-Contracts.docNotes-on-Prescription-Obligations-and-Contracts.doc
Notes-on-Prescription-Obligations-and-Contracts.doc
 
Debt Mapping Camp bebas riba to know how much our debt
Debt Mapping Camp bebas riba to know how much our debtDebt Mapping Camp bebas riba to know how much our debt
Debt Mapping Camp bebas riba to know how much our debt
 
Secure Your Brand: File a Trademark Today
Secure Your Brand: File a Trademark TodaySecure Your Brand: File a Trademark Today
Secure Your Brand: File a Trademark Today
 
NATURE, ORIGIN AND DEVELOPMENT OF INTERNATIONAL LAW.pptx
NATURE, ORIGIN AND DEVELOPMENT OF INTERNATIONAL LAW.pptxNATURE, ORIGIN AND DEVELOPMENT OF INTERNATIONAL LAW.pptx
NATURE, ORIGIN AND DEVELOPMENT OF INTERNATIONAL LAW.pptx
 
ASHWINI KUMAR UPADHYAY v/s Union of India.pptx
ASHWINI KUMAR UPADHYAY v/s Union of India.pptxASHWINI KUMAR UPADHYAY v/s Union of India.pptx
ASHWINI KUMAR UPADHYAY v/s Union of India.pptx
 

GDPR in a nutshell

  • 1. GDPR (EU 2016/679) General Data Protection Regulation 25.05.2018 Enforcement date Regulation Published 27.04.2016 2017 2018 Attention point : replaces Directive 95/46/EC currently in force Who, where, what? • Actors: • Data subjects whose personal data is processed • Processors, controllers of personal data • Supervision authoritiesPurpose and scope of GDPR Strengthening current personal data protection regulation (EU 95/46), GDPR lays down rules relating to protection of natural persons with regard to processing and free movement of personal data. It applies to all entities in EU member states processing personal data by automated means and processing which form part of a filing system. Application of GDPR will be supervised in Belgium by the privacy commission. Personal Data Processing Principles • Personal data shall be collected for specified and legitimate purpose only. • Personal data shall be processed transparently, lawfully (consent required or processing necessary for compliance/contract performance) and ensuring security, accuracy, etc. • Data subject has several rights related to his personal data: right to receive info from controller , right to be forgotten, right to data portability, etc Controllers/processors obligations* Controllers/processors : • Shall implement technical and organizational measures to ensure that • processing is performed in accordance with regulation and that only personal data necessary for each specific processing purpose are processed • an appropriate level of security (encryption, confidentiality, integrity, availability and resilience of processing systems) is applied • Maintain record of processing activities describing the processing • Notify personal data breaches without undue delay to supervisory authority Data protection assessment and Data Protection Officer (DPO) Supervision authority defined situations in which : • Controller has to carry out an impact assessment of intended processing and consult supervisory authority prior to processing • a DPO should be appointed to monitor compliance, advise on impact assessment, raise awareness, train staff and cooperate with supervisory authority Miscellaneous • Member States, supervisory authorities and Commission shall encourage establishment of data protection certifications and codes of conduct • Significant increase of fines and penalties for non-compliance (up to 20 M€ or 4% of worldwide turnover) • Creation of European Data Protection Board to ensure consistent application of GDPR in member states. Review existing • Global assessment of GDPR readiness • Perform Data protection impact assessments Development • Organize processes with regard to data subject’s requests and rights • Provide (interim) Data Protection Officers Coordinate & Support • Technical consultancy on data security • Compile records of processing activities INITIO’S Offering * Data protection by design and by default