SlideShare a Scribd company logo
1 of 66
Do You Have a Roadmap for EU
GDPR Compliance?
David Morris,
Thought Leader
and Pioneer in
Cybersecurity
United States
Ian West,
Specialist in
GDPR, Data
Governance,
Data Privacy &
Security
United Kingdom
Ulf Mattsson,
CTO Security
Solutions
Atlantic BT,
United States
ulf.mattsson@atla
nticbt.com
Khizar A. Sheikh,
Chair, Privacy,
Cybersecurity, and
Data Law,
Mandelbaum
Salsburg
United States
ksheikh@lawfirm.ms
GDPR
Case Studies
Webcast - Aug 17
3
Title : Do You Have a Roadmap for EU GDPR Compliance?
Description : The General Data Protection Regulation (GDPR) goes into effect in 2018 and it will affect any business that handles
data, even if it's not based in the European Union.
Are you looking to move and host data for EU citizens? Do you have a roadmap and associated estimated costs for EU GDPR
compliance?
Join this webinar to learn:
• Case study and legal/regulatory impact to GDPR
• Security Metrics
• Oversight of third parties
• How to measure cybersecurity preparedness
Presenters : Ulf Mattsson, David Morris, Ian West. and Khizar Sheikh
Date & Time : Aug 17 2017 5:00 pm
Timezone : United States - New York
Webcast URL : https://www.brighttalk.com/webcast/14723/259741
GDPR Case Studies
Source: EU GDPR Report, Crowd Research Partners, 2017 4
1.US and Spain – customer data
2.Italy, Germany and more – financial data
3.Germany – outsourcing
4.Sweden – PII data
US Companies
Ramping up
GDPR
Budgets
PWC GDPR Survey
Source: PWC GDPR Survey, 2017
6
PwC recently conducted a pulse survey of 200 CIOs, CISOs, General Counsels, CCOs, CPOs and
CMOs from US companies with more than 500 employees. The survey asked the c-suite about
their plans for Europe’s landmark General Data Protection Regulation (GDPR). The “pulse”
revealed five surprising results.
Over half of US multinationals say GDPR is their top data-
protection priority
Source: PWC GDPR Survey, 2017 7
The EU reached agreement on the GDPR in December 2015, and in the last twelve months
preparing for the new law’s obligations have jumped to the top of corporate agendas.
Of the 200 respondents to PwC’s recent pulse survey on GDPR preparedness, 54 % reported
that GDPR readiness is the highest priority on their data-privacy and security agenda.
Another 38% said GDPR is one of several top priorities, while only 7% said it isn’t a top priority.
Information security enhancement is a top GDPR initiative
Source: PWC GDPR Survey, 2017 8
Much of the discussion about the GDPR has focused on the law’s privacy-centric requirements,
such as mandatory record keeping, the right to be forgotten and data portability.
The GDPR’s relatively generic information-security obligations, however, figure prominently in
GDPR plans of US companies.
•Among the 23% of survey respondents who haven’t started preparing for GDPR, their top
priorities are data discovery, information security enhancement, third-party risk management
and GDPR gap assessment.
•Among the 71% who have begun GDPR preparation, the most-cited initiatives in flight are
information security, privacy policies, GDPR gap assessment and data discovery.
•Among the 6% who have completed GDPR preparations, the most-cited projects are
information security, GDPR gap assessment, data discovery, and third-party risk management.
•IT re-architecture is the lowest priority for companies in all three phases.
77% plan to spend $1 million or more on GDPR
Source: PWC GDPR Survey, 2017 9
Securing a $1 million budget for data privacy has been more an
exception than a rule for many American corporations.
The GDPR’s potential 4% fine of global revenues, however, has changed
budget appetites for mitigating this GDPR risk.
While 24% of respondents plan to spend under $1 million for GDPR
preparations, 68% said they will invest between $1 million and $10
million.
Nine percent (9%) expect to spend over $10 million to address GDPR
obligations.
Binding corporate rules are gaining popularity
Source: PWC GDPR Survey, 2017 10
The pulse survey asked executives which EU cross-border data-transfer mechanism they
planned to use for processing EU personal data outside of Europe.
After the invalidation of the Safe Harbor agreement in October 2015, most Safe Harbor
members implemented so-called model contractual clauses as a stop-gap measure.
Many observers, especially those in the legal community, thought model clauses would
become the new norm.
While 58% of respondents reported that future strategies would include model contracts, a
stunning 75% said they will pursue binding corporate rules (BCRs), while 77% plan to self-
certify to the EU-US Privacy Shield agreement.
The uncertain future of both model contracts and the Privacy Shield may drive US
multinationals to adopt two or even all three of these options to hedge their risks.
How US businesses are re-evaluating their presence in
Europe
Source: PWC GDPR Survey, 2017 11
US corporations that are heavily invested in Europe will probably
stay the course in the near term.
Indeed, 64% of executives reported that their top strategy for
reducing GDPR exposure is centralization of data centers in Europe.
Just over half (54%) said they plan to de-identify European personal
data to reduce exposure.
The threats of high fines and impactful injunctions, however, clearly
have many others reconsidering the importance of the European
market.
In fact, 32% of respondents plan to reduce their presence in Europe,
while 26% intend to exit the EU market altogether.
Outlook: Striving to keep pace with the GDPR
Source: PWC GDPR Survey, 2017 12
American multinationals that have not taken significant steps to prepare for GDPR are already
behind their peers. The typical large US corporation is currently moving through a data-
discovery and assessment phase toward a multi-million-dollar remediation initiative that
includes shoring up standard data-privacy and security capabilities in US operations. As
European regulators in 2017 further clarify how they interpret the GDPR, more American
companies are likely to re-evaluate the return-on-investment of their European initiatives.
GDPR
WW Impact
GDPR Key Findings
Source: EU GDPR Report, Crowd Research Partners, 2017 14
Familiarity with GDPR
Source: EU GDPR Report, Crowd Research Partners, 2017 15
GDPR Impact
Source: EU GDPR Report, Crowd Research Partners, 2017 16
GDPR Impact by Industry
Source: EU GDPR Report, Crowd Research Partners, 2017 17
GDPR Compliance by Region
Source: EU GDPR Report, Crowd Research Partners, 2017 18
GDPR Compliance by Industry
Source: EU GDPR Report, Crowd Research Partners, 2017 19
GDPR Preparedness
Source: EU GDPR Report, Crowd Research Partners, 2017 20
GDPR Organizational Ownership
Source: EU GDPR Report, Crowd Research Partners, 2017 21
GDPR - Challenges
Source: EU GDPR Report, Crowd Research Partners, 2017 22
GDPR Initiatives
Source: EU GDPR Report, Crowd Research Partners, 2017 23
GDPR Chapters of Concern
Source: EU GDPR Report, Crowd Research Partners, 2017 24
GDPR Articles of Concern
Source: EU GDPR Report, Crowd Research Partners, 2017 25
GDPR Impact on Security Practices
Source: EU GDPR Report, Crowd Research Partners, 2017 26
GDPR Impact on Security Budgets
Source: EU GDPR Report, Crowd Research Partners, 2017 27
GDPR
Challenges
GDPR Study - Demographics
Source: Ponemon Institute, 2017 29
GDPR – Our Sample
Source: Ponemon Institute, 2017 30
GDPR Most Difficult
Source: Ponemon Institute, 2017 31
GDPR PII Definition is more expansive
Source: Ponemon Institute, 2017 32
GDPR – Compliance to Breach Process
Source: Ponemon Institute, 2017 33
GDPR – Plan to meet GRC Requirements
Source: Ponemon Institute, 2017 34
GDPR IT Sec Budget
Source: Ponemon Institute, 2017 35
GDPR Data Governance Budgets
Source: Ponemon Institute, 2017 36
GDPR – Data Protection Officers
Source: Ponemon
Institute, 2017
37
GDPR Governance In-place
Source: Ponemon Institute, 2017 38
GDPR – Rights to EU Citizens?
Source: Ponemon Institute, 2017 39
GDPR – Do you know Which Data has Gone to 3rd
parties?
Source: Ponemon Institute, 2017 40
GDPR compared to PCI, HIPAA and more
Source: Ponemon Institute, 2017 41
Preparing for
GDPR
Preparing for GDPR
43
Preparing for GDPR: People
Source: IBM, 2017 44
Preparing for GDPR: Process
Source: IBM, 2017 45
Preparing for GDPR: Technology
Source: IBM, 2017 46
Preparing for GDPR Moving Forward
Source: IBM, 2017 47
Steps for for Securing
Data to Comply with the
GDPR
Does GDPR Apply?
Source: Imperva, 2017 49
Checklist for GDPR
Source: Imperva, 2017 50
Source: Imperva, 2017 51
Checklist for GDPR
GDPR Rules Requires Data Protection Technology
Source: Imperva, 2017 52
GDPR Prep Now or Pay the Price
Source: Imperva, 2017 53
GDPR – Plan to go The Distance
Source: Imperva, 2017 54
GDPR
Already a Reality
GDPR Already a Reality
Source: Cordery Legal Compliance, UK, 2017 56
GDPR – Your Plan
Source: Cordery Legal Compliance, UK, 2017 57
Source: Cordery Legal Compliance, UK, 2017 58
GDPR – Your Plan
GDPR
12 Steps to take
now
(ICO UK)
Preparing
for GDPR
Source: ICO – Information
Commissioner’s Office, UK,
2017
60
GDPR
Key Problems and
Some Solutions
62
The Currency of Trust: The “Why” of GDPR
Source: Exate, 2017
What will
GDPR cost?
Source: Exate, 2017
The Challenges …
Source: Exate, 2017
The Problem
Source: Exate, 2017
What If …
Source: Exate, 2017

More Related Content

What's hot

Getting Started with GDPR Compliance
Getting Started with GDPR ComplianceGetting Started with GDPR Compliance
Getting Started with GDPR ComplianceDATAVERSITY
 
VMTN6642E - GDPR Slide Deck
VMTN6642E - GDPR Slide DeckVMTN6642E - GDPR Slide Deck
VMTN6642E - GDPR Slide DeckKyle Davies
 
Ensuring GDPR Compliance - A Zymplify Guide
Ensuring GDPR Compliance - A Zymplify GuideEnsuring GDPR Compliance - A Zymplify Guide
Ensuring GDPR Compliance - A Zymplify GuideZymplify
 
EU General Data Protection Regulation - Update 2017
EU General Data Protection Regulation - Update 2017EU General Data Protection Regulation - Update 2017
EU General Data Protection Regulation - Update 2017Cliff Ashcroft
 
The Meaning and Impact of the General Data Protection Regulation
The Meaning and Impact of the General Data Protection RegulationThe Meaning and Impact of the General Data Protection Regulation
The Meaning and Impact of the General Data Protection RegulationJake DiMare
 
IoT - Attacks and Solutions
IoT - Attacks and SolutionsIoT - Attacks and Solutions
IoT - Attacks and SolutionsUlf Mattsson
 
GDPR Basics - General Data Protection Regulation
GDPR Basics - General Data Protection RegulationGDPR Basics - General Data Protection Regulation
GDPR Basics - General Data Protection RegulationVicky Dallas
 
The Essential Guide to GDPR
The Essential Guide to GDPRThe Essential Guide to GDPR
The Essential Guide to GDPRTim Hyman LLB
 
GDPR: Your Journey to Compliance
GDPR: Your Journey to ComplianceGDPR: Your Journey to Compliance
GDPR: Your Journey to ComplianceCobweb
 
GDPR: Is Your Organization Ready for the General Data Protection Regulation?
GDPR: Is Your Organization Ready for the General Data Protection Regulation?GDPR: Is Your Organization Ready for the General Data Protection Regulation?
GDPR: Is Your Organization Ready for the General Data Protection Regulation?DATUM LLC
 
GDPR: Training Materials by Qualsys
GDPR: Training Materials  by QualsysGDPR: Training Materials  by Qualsys
GDPR: Training Materials by QualsysQualsys Ltd
 
The Practical Impact of the General Data Protection Regulation
The Practical Impact of the General Data Protection RegulationThe Practical Impact of the General Data Protection Regulation
The Practical Impact of the General Data Protection RegulationGhostery, Inc.
 
GDPR and evolving international privacy regulations
GDPR and evolving international privacy regulationsGDPR and evolving international privacy regulations
GDPR and evolving international privacy regulationsUlf Mattsson
 
GDPR Guide: The ICO's 12 Recommended Steps To Take Now
GDPR Guide: The ICO's 12 Recommended Steps To Take NowGDPR Guide: The ICO's 12 Recommended Steps To Take Now
GDPR Guide: The ICO's 12 Recommended Steps To Take NowHackerOne
 
GDPR - a view for the non experts
GDPR - a view for the non expertsGDPR - a view for the non experts
GDPR - a view for the non expertsClaudio Bolla, CISM
 
Teradata's approach to addressing GDPR
Teradata's approach to addressing GDPRTeradata's approach to addressing GDPR
Teradata's approach to addressing GDPRPaul O'Carroll
 
DAMA Ireland - GDPR
DAMA Ireland - GDPRDAMA Ireland - GDPR
DAMA Ireland - GDPRDAMA Ireland
 
GDPR: the legal aspects. By Matthias of theJurists Europe.
GDPR: the legal aspects. By Matthias of theJurists Europe.GDPR: the legal aspects. By Matthias of theJurists Europe.
GDPR: the legal aspects. By Matthias of theJurists Europe.Matthias Dobbelaere-Welvaert
 

What's hot (20)

Getting Started with GDPR Compliance
Getting Started with GDPR ComplianceGetting Started with GDPR Compliance
Getting Started with GDPR Compliance
 
General Data Protection Regulation
General Data Protection RegulationGeneral Data Protection Regulation
General Data Protection Regulation
 
VMTN6642E - GDPR Slide Deck
VMTN6642E - GDPR Slide DeckVMTN6642E - GDPR Slide Deck
VMTN6642E - GDPR Slide Deck
 
Ensuring GDPR Compliance - A Zymplify Guide
Ensuring GDPR Compliance - A Zymplify GuideEnsuring GDPR Compliance - A Zymplify Guide
Ensuring GDPR Compliance - A Zymplify Guide
 
EU General Data Protection Regulation - Update 2017
EU General Data Protection Regulation - Update 2017EU General Data Protection Regulation - Update 2017
EU General Data Protection Regulation - Update 2017
 
The Meaning and Impact of the General Data Protection Regulation
The Meaning and Impact of the General Data Protection RegulationThe Meaning and Impact of the General Data Protection Regulation
The Meaning and Impact of the General Data Protection Regulation
 
IoT - Attacks and Solutions
IoT - Attacks and SolutionsIoT - Attacks and Solutions
IoT - Attacks and Solutions
 
GDPR for Dummies
GDPR for DummiesGDPR for Dummies
GDPR for Dummies
 
GDPR Basics - General Data Protection Regulation
GDPR Basics - General Data Protection RegulationGDPR Basics - General Data Protection Regulation
GDPR Basics - General Data Protection Regulation
 
The Essential Guide to GDPR
The Essential Guide to GDPRThe Essential Guide to GDPR
The Essential Guide to GDPR
 
GDPR: Your Journey to Compliance
GDPR: Your Journey to ComplianceGDPR: Your Journey to Compliance
GDPR: Your Journey to Compliance
 
GDPR: Is Your Organization Ready for the General Data Protection Regulation?
GDPR: Is Your Organization Ready for the General Data Protection Regulation?GDPR: Is Your Organization Ready for the General Data Protection Regulation?
GDPR: Is Your Organization Ready for the General Data Protection Regulation?
 
GDPR: Training Materials by Qualsys
GDPR: Training Materials  by QualsysGDPR: Training Materials  by Qualsys
GDPR: Training Materials by Qualsys
 
The Practical Impact of the General Data Protection Regulation
The Practical Impact of the General Data Protection RegulationThe Practical Impact of the General Data Protection Regulation
The Practical Impact of the General Data Protection Regulation
 
GDPR and evolving international privacy regulations
GDPR and evolving international privacy regulationsGDPR and evolving international privacy regulations
GDPR and evolving international privacy regulations
 
GDPR Guide: The ICO's 12 Recommended Steps To Take Now
GDPR Guide: The ICO's 12 Recommended Steps To Take NowGDPR Guide: The ICO's 12 Recommended Steps To Take Now
GDPR Guide: The ICO's 12 Recommended Steps To Take Now
 
GDPR - a view for the non experts
GDPR - a view for the non expertsGDPR - a view for the non experts
GDPR - a view for the non experts
 
Teradata's approach to addressing GDPR
Teradata's approach to addressing GDPRTeradata's approach to addressing GDPR
Teradata's approach to addressing GDPR
 
DAMA Ireland - GDPR
DAMA Ireland - GDPRDAMA Ireland - GDPR
DAMA Ireland - GDPR
 
GDPR: the legal aspects. By Matthias of theJurists Europe.
GDPR: the legal aspects. By Matthias of theJurists Europe.GDPR: the legal aspects. By Matthias of theJurists Europe.
GDPR: the legal aspects. By Matthias of theJurists Europe.
 

Similar to Do You Have a Roadmap for EU GDPR Compliance?

U.S. Data Privacy Report - Patchy preparation for GDPR shows U.S. businesses ...
U.S. Data Privacy Report - Patchy preparation for GDPR shows U.S. businesses ...U.S. Data Privacy Report - Patchy preparation for GDPR shows U.S. businesses ...
U.S. Data Privacy Report - Patchy preparation for GDPR shows U.S. businesses ...Ebiquity
 
GDPR How ready are you? The What, Why and How.
GDPR How ready are you? The What, Why and How.GDPR How ready are you? The What, Why and How.
GDPR How ready are you? The What, Why and How.James Seville
 
Marketing data management | The new way to think about your data
Marketing data management | The new way to think about your dataMarketing data management | The new way to think about your data
Marketing data management | The new way to think about your dataLaurence
 
Richard Hogg & Dennis Waldron - #InfoGov17 - Cognitive Unified Governance & P...
Richard Hogg & Dennis Waldron - #InfoGov17 - Cognitive Unified Governance & P...Richard Hogg & Dennis Waldron - #InfoGov17 - Cognitive Unified Governance & P...
Richard Hogg & Dennis Waldron - #InfoGov17 - Cognitive Unified Governance & P...ARMA International
 
GDPR: A Threat or Opportunity? www.normanbroadbent.
GDPR: A Threat or Opportunity? www.normanbroadbent.GDPR: A Threat or Opportunity? www.normanbroadbent.
GDPR: A Threat or Opportunity? www.normanbroadbent.Steven Salter
 
GDPR: Data Privacy in the New
GDPR: Data Privacy in the NewGDPR: Data Privacy in the New
GDPR: Data Privacy in the Newaccenture
 
GDPR: A ticking time bomb is approaching - Another Millennium Bug or is this ...
GDPR: A ticking time bomb is approaching - Another Millennium Bug or is this ...GDPR: A ticking time bomb is approaching - Another Millennium Bug or is this ...
GDPR: A ticking time bomb is approaching - Another Millennium Bug or is this ...Jessica Pattison
 
GDPR & Data Privacy Guide - Free Download
GDPR & Data Privacy Guide - Free DownloadGDPR & Data Privacy Guide - Free Download
GDPR & Data Privacy Guide - Free DownloadVisitor Analytics
 
Running Head THE IMPACT OF GDPR ON GLOBAL IT POLICIES1THE IMPA.docx
Running Head THE IMPACT OF GDPR ON GLOBAL IT POLICIES1THE IMPA.docxRunning Head THE IMPACT OF GDPR ON GLOBAL IT POLICIES1THE IMPA.docx
Running Head THE IMPACT OF GDPR ON GLOBAL IT POLICIES1THE IMPA.docxjeanettehully
 
NetApp Cloud GDPR Response Survey - EMEA Findings II
NetApp Cloud GDPR Response Survey - EMEA Findings IINetApp Cloud GDPR Response Survey - EMEA Findings II
NetApp Cloud GDPR Response Survey - EMEA Findings IINetAppUK
 
NetApp Cloud GDPR Response Survey EMEA Findings II
NetApp Cloud GDPR Response Survey EMEA Findings IINetApp Cloud GDPR Response Survey EMEA Findings II
NetApp Cloud GDPR Response Survey EMEA Findings IINetApp
 
GDPR, what you need to know and how to prepare for it e book
GDPR, what you need to know and how to prepare for it e bookGDPR, what you need to know and how to prepare for it e book
GDPR, what you need to know and how to prepare for it e bookPlr-Printables
 
DATA SAFEGUARD INC.- WHITE PAPER
DATA SAFEGUARD INC.- WHITE PAPERDATA SAFEGUARD INC.- WHITE PAPER
DATA SAFEGUARD INC.- WHITE PAPERYashiVaidya
 
CWIN17 san francisco-geert vanderlinden-don't be stranded without a (gdpr) plan
CWIN17 san francisco-geert vanderlinden-don't be stranded without a (gdpr) planCWIN17 san francisco-geert vanderlinden-don't be stranded without a (gdpr) plan
CWIN17 san francisco-geert vanderlinden-don't be stranded without a (gdpr) planCapgemini
 
Jisc GDPR conference
Jisc GDPR conferenceJisc GDPR conference
Jisc GDPR conferenceJisc
 
Gdpr 2017 Hotel survey results 7 dec 2017
Gdpr 2017 Hotel survey results 7 dec 2017Gdpr 2017 Hotel survey results 7 dec 2017
Gdpr 2017 Hotel survey results 7 dec 2017Gerard Wilkinson
 
CWIN17 New-York / earning the currency of trust
CWIN17 New-York / earning the currency of trustCWIN17 New-York / earning the currency of trust
CWIN17 New-York / earning the currency of trustCapgemini
 

Similar to Do You Have a Roadmap for EU GDPR Compliance? (20)

Privacy Year In Preview
Privacy Year In PreviewPrivacy Year In Preview
Privacy Year In Preview
 
U.S. Data Privacy Report - Patchy preparation for GDPR shows U.S. businesses ...
U.S. Data Privacy Report - Patchy preparation for GDPR shows U.S. businesses ...U.S. Data Privacy Report - Patchy preparation for GDPR shows U.S. businesses ...
U.S. Data Privacy Report - Patchy preparation for GDPR shows U.S. businesses ...
 
GDPR How ready are you? The What, Why and How.
GDPR How ready are you? The What, Why and How.GDPR How ready are you? The What, Why and How.
GDPR How ready are you? The What, Why and How.
 
Marketing data management | The new way to think about your data
Marketing data management | The new way to think about your dataMarketing data management | The new way to think about your data
Marketing data management | The new way to think about your data
 
Richard Hogg & Dennis Waldron - #InfoGov17 - Cognitive Unified Governance & P...
Richard Hogg & Dennis Waldron - #InfoGov17 - Cognitive Unified Governance & P...Richard Hogg & Dennis Waldron - #InfoGov17 - Cognitive Unified Governance & P...
Richard Hogg & Dennis Waldron - #InfoGov17 - Cognitive Unified Governance & P...
 
GDPR: A Threat or Opportunity? www.normanbroadbent.
GDPR: A Threat or Opportunity? www.normanbroadbent.GDPR: A Threat or Opportunity? www.normanbroadbent.
GDPR: A Threat or Opportunity? www.normanbroadbent.
 
GDPR: Data Privacy in the New
GDPR: Data Privacy in the NewGDPR: Data Privacy in the New
GDPR: Data Privacy in the New
 
GDPR: A ticking time bomb is approaching - Another Millennium Bug or is this ...
GDPR: A ticking time bomb is approaching - Another Millennium Bug or is this ...GDPR: A ticking time bomb is approaching - Another Millennium Bug or is this ...
GDPR: A ticking time bomb is approaching - Another Millennium Bug or is this ...
 
GDPR & Data Privacy Guide - Free Download
GDPR & Data Privacy Guide - Free DownloadGDPR & Data Privacy Guide - Free Download
GDPR & Data Privacy Guide - Free Download
 
Running Head THE IMPACT OF GDPR ON GLOBAL IT POLICIES1THE IMPA.docx
Running Head THE IMPACT OF GDPR ON GLOBAL IT POLICIES1THE IMPA.docxRunning Head THE IMPACT OF GDPR ON GLOBAL IT POLICIES1THE IMPA.docx
Running Head THE IMPACT OF GDPR ON GLOBAL IT POLICIES1THE IMPA.docx
 
NetApp Cloud GDPR Response Survey - EMEA Findings II
NetApp Cloud GDPR Response Survey - EMEA Findings IINetApp Cloud GDPR Response Survey - EMEA Findings II
NetApp Cloud GDPR Response Survey - EMEA Findings II
 
NetApp Cloud GDPR Response Survey EMEA Findings II
NetApp Cloud GDPR Response Survey EMEA Findings IINetApp Cloud GDPR Response Survey EMEA Findings II
NetApp Cloud GDPR Response Survey EMEA Findings II
 
GDPR, what you need to know and how to prepare for it e book
GDPR, what you need to know and how to prepare for it e bookGDPR, what you need to know and how to prepare for it e book
GDPR, what you need to know and how to prepare for it e book
 
Infographic–A Look Back at the First Year of GDPR
Infographic–A Look Back at the First Year of GDPRInfographic–A Look Back at the First Year of GDPR
Infographic–A Look Back at the First Year of GDPR
 
DATA SAFEGUARD INC.- WHITE PAPER
DATA SAFEGUARD INC.- WHITE PAPERDATA SAFEGUARD INC.- WHITE PAPER
DATA SAFEGUARD INC.- WHITE PAPER
 
CWIN17 san francisco-geert vanderlinden-don't be stranded without a (gdpr) plan
CWIN17 san francisco-geert vanderlinden-don't be stranded without a (gdpr) planCWIN17 san francisco-geert vanderlinden-don't be stranded without a (gdpr) plan
CWIN17 san francisco-geert vanderlinden-don't be stranded without a (gdpr) plan
 
Jisc GDPR conference
Jisc GDPR conferenceJisc GDPR conference
Jisc GDPR conference
 
Gdpr 2017 Hotel survey results 7 dec 2017
Gdpr 2017 Hotel survey results 7 dec 2017Gdpr 2017 Hotel survey results 7 dec 2017
Gdpr 2017 Hotel survey results 7 dec 2017
 
Pwc gdpr survey 2018
Pwc gdpr survey 2018Pwc gdpr survey 2018
Pwc gdpr survey 2018
 
CWIN17 New-York / earning the currency of trust
CWIN17 New-York / earning the currency of trustCWIN17 New-York / earning the currency of trust
CWIN17 New-York / earning the currency of trust
 

More from Ulf Mattsson

Jun 29 new privacy technologies for unicode and international data standards ...
Jun 29 new privacy technologies for unicode and international data standards ...Jun 29 new privacy technologies for unicode and international data standards ...
Jun 29 new privacy technologies for unicode and international data standards ...Ulf Mattsson
 
Jun 15 privacy in the cloud at financial institutions at the object managemen...
Jun 15 privacy in the cloud at financial institutions at the object managemen...Jun 15 privacy in the cloud at financial institutions at the object managemen...
Jun 15 privacy in the cloud at financial institutions at the object managemen...Ulf Mattsson
 
May 6 evolving international privacy regulations and cross border data tran...
May 6   evolving international privacy regulations and cross border data tran...May 6   evolving international privacy regulations and cross border data tran...
May 6 evolving international privacy regulations and cross border data tran...Ulf Mattsson
 
Qubit conference-new-york-2021
Qubit conference-new-york-2021Qubit conference-new-york-2021
Qubit conference-new-york-2021Ulf Mattsson
 
Secure analytics and machine learning in cloud use cases
Secure analytics and machine learning in cloud use casesSecure analytics and machine learning in cloud use cases
Secure analytics and machine learning in cloud use casesUlf Mattsson
 
Evolving international privacy regulations and cross border data transfer - g...
Evolving international privacy regulations and cross border data transfer - g...Evolving international privacy regulations and cross border data transfer - g...
Evolving international privacy regulations and cross border data transfer - g...Ulf Mattsson
 
Data encryption and tokenization for international unicode
Data encryption and tokenization for international unicodeData encryption and tokenization for international unicode
Data encryption and tokenization for international unicodeUlf Mattsson
 
The future of data security and blockchain
The future of data security and blockchainThe future of data security and blockchain
The future of data security and blockchainUlf Mattsson
 
New technologies for data protection
New technologies for data protectionNew technologies for data protection
New technologies for data protectionUlf Mattsson
 
Privacy preserving computing and secure multi-party computation ISACA Atlanta
Privacy preserving computing and secure multi-party computation ISACA AtlantaPrivacy preserving computing and secure multi-party computation ISACA Atlanta
Privacy preserving computing and secure multi-party computation ISACA AtlantaUlf Mattsson
 
Safeguarding customer and financial data in analytics and machine learning
Safeguarding customer and financial data in analytics and machine learningSafeguarding customer and financial data in analytics and machine learning
Safeguarding customer and financial data in analytics and machine learningUlf Mattsson
 
Protecting data privacy in analytics and machine learning ISACA London UK
Protecting data privacy in analytics and machine learning ISACA London UKProtecting data privacy in analytics and machine learning ISACA London UK
Protecting data privacy in analytics and machine learning ISACA London UKUlf Mattsson
 
New opportunities and business risks with evolving privacy regulations
New opportunities and business risks with evolving privacy regulationsNew opportunities and business risks with evolving privacy regulations
New opportunities and business risks with evolving privacy regulationsUlf Mattsson
 
What is tokenization in blockchain - BCS London
What is tokenization in blockchain - BCS LondonWhat is tokenization in blockchain - BCS London
What is tokenization in blockchain - BCS LondonUlf Mattsson
 
Protecting data privacy in analytics and machine learning - ISACA
Protecting data privacy in analytics and machine learning - ISACAProtecting data privacy in analytics and machine learning - ISACA
Protecting data privacy in analytics and machine learning - ISACAUlf Mattsson
 
What is tokenization in blockchain?
What is tokenization in blockchain?What is tokenization in blockchain?
What is tokenization in blockchain?Ulf Mattsson
 
Nov 2 security for blockchain and analytics ulf mattsson 2020 nov 2b
Nov 2 security for blockchain and analytics   ulf mattsson 2020 nov 2bNov 2 security for blockchain and analytics   ulf mattsson 2020 nov 2b
Nov 2 security for blockchain and analytics ulf mattsson 2020 nov 2bUlf Mattsson
 
Unlock the potential of data security 2020
Unlock the potential of data security 2020Unlock the potential of data security 2020
Unlock the potential of data security 2020Ulf Mattsson
 
What is tokenization in blockchain?
What is tokenization in blockchain?What is tokenization in blockchain?
What is tokenization in blockchain?Ulf Mattsson
 

More from Ulf Mattsson (20)

Jun 29 new privacy technologies for unicode and international data standards ...
Jun 29 new privacy technologies for unicode and international data standards ...Jun 29 new privacy technologies for unicode and international data standards ...
Jun 29 new privacy technologies for unicode and international data standards ...
 
Jun 15 privacy in the cloud at financial institutions at the object managemen...
Jun 15 privacy in the cloud at financial institutions at the object managemen...Jun 15 privacy in the cloud at financial institutions at the object managemen...
Jun 15 privacy in the cloud at financial institutions at the object managemen...
 
Book
BookBook
Book
 
May 6 evolving international privacy regulations and cross border data tran...
May 6   evolving international privacy regulations and cross border data tran...May 6   evolving international privacy regulations and cross border data tran...
May 6 evolving international privacy regulations and cross border data tran...
 
Qubit conference-new-york-2021
Qubit conference-new-york-2021Qubit conference-new-york-2021
Qubit conference-new-york-2021
 
Secure analytics and machine learning in cloud use cases
Secure analytics and machine learning in cloud use casesSecure analytics and machine learning in cloud use cases
Secure analytics and machine learning in cloud use cases
 
Evolving international privacy regulations and cross border data transfer - g...
Evolving international privacy regulations and cross border data transfer - g...Evolving international privacy regulations and cross border data transfer - g...
Evolving international privacy regulations and cross border data transfer - g...
 
Data encryption and tokenization for international unicode
Data encryption and tokenization for international unicodeData encryption and tokenization for international unicode
Data encryption and tokenization for international unicode
 
The future of data security and blockchain
The future of data security and blockchainThe future of data security and blockchain
The future of data security and blockchain
 
New technologies for data protection
New technologies for data protectionNew technologies for data protection
New technologies for data protection
 
Privacy preserving computing and secure multi-party computation ISACA Atlanta
Privacy preserving computing and secure multi-party computation ISACA AtlantaPrivacy preserving computing and secure multi-party computation ISACA Atlanta
Privacy preserving computing and secure multi-party computation ISACA Atlanta
 
Safeguarding customer and financial data in analytics and machine learning
Safeguarding customer and financial data in analytics and machine learningSafeguarding customer and financial data in analytics and machine learning
Safeguarding customer and financial data in analytics and machine learning
 
Protecting data privacy in analytics and machine learning ISACA London UK
Protecting data privacy in analytics and machine learning ISACA London UKProtecting data privacy in analytics and machine learning ISACA London UK
Protecting data privacy in analytics and machine learning ISACA London UK
 
New opportunities and business risks with evolving privacy regulations
New opportunities and business risks with evolving privacy regulationsNew opportunities and business risks with evolving privacy regulations
New opportunities and business risks with evolving privacy regulations
 
What is tokenization in blockchain - BCS London
What is tokenization in blockchain - BCS LondonWhat is tokenization in blockchain - BCS London
What is tokenization in blockchain - BCS London
 
Protecting data privacy in analytics and machine learning - ISACA
Protecting data privacy in analytics and machine learning - ISACAProtecting data privacy in analytics and machine learning - ISACA
Protecting data privacy in analytics and machine learning - ISACA
 
What is tokenization in blockchain?
What is tokenization in blockchain?What is tokenization in blockchain?
What is tokenization in blockchain?
 
Nov 2 security for blockchain and analytics ulf mattsson 2020 nov 2b
Nov 2 security for blockchain and analytics   ulf mattsson 2020 nov 2bNov 2 security for blockchain and analytics   ulf mattsson 2020 nov 2b
Nov 2 security for blockchain and analytics ulf mattsson 2020 nov 2b
 
Unlock the potential of data security 2020
Unlock the potential of data security 2020Unlock the potential of data security 2020
Unlock the potential of data security 2020
 
What is tokenization in blockchain?
What is tokenization in blockchain?What is tokenization in blockchain?
What is tokenization in blockchain?
 

Recently uploaded

Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteDianaGray10
 
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024BookNet Canada
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024Lorenzo Miniero
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxLoriGlavin3
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek SchlawackFwdays
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Mark Simos
 
Generative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersGenerative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersRaghuram Pandurangan
 
Training state-of-the-art general text embedding
Training state-of-the-art general text embeddingTraining state-of-the-art general text embedding
Training state-of-the-art general text embeddingZilliz
 
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024BookNet Canada
 
Sample pptx for embedding into website for demo
Sample pptx for embedding into website for demoSample pptx for embedding into website for demo
Sample pptx for embedding into website for demoHarshalMandlekar2
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxLoriGlavin3
 
The Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsThe Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsPixlogix Infotech
 
unit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptxunit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptxBkGupta21
 
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxDigital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxLoriGlavin3
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
How to write a Business Continuity Plan
How to write a Business Continuity PlanHow to write a Business Continuity Plan
How to write a Business Continuity PlanDatabarracks
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 3652toLead Limited
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxLoriGlavin3
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Commit University
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 

Recently uploaded (20)

Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test Suite
 
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
 
Generative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersGenerative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information Developers
 
Training state-of-the-art general text embedding
Training state-of-the-art general text embeddingTraining state-of-the-art general text embedding
Training state-of-the-art general text embedding
 
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
 
Sample pptx for embedding into website for demo
Sample pptx for embedding into website for demoSample pptx for embedding into website for demo
Sample pptx for embedding into website for demo
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
 
The Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsThe Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and Cons
 
unit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptxunit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptx
 
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxDigital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
How to write a Business Continuity Plan
How to write a Business Continuity PlanHow to write a Business Continuity Plan
How to write a Business Continuity Plan
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 

Do You Have a Roadmap for EU GDPR Compliance?

  • 1. Do You Have a Roadmap for EU GDPR Compliance? David Morris, Thought Leader and Pioneer in Cybersecurity United States Ian West, Specialist in GDPR, Data Governance, Data Privacy & Security United Kingdom Ulf Mattsson, CTO Security Solutions Atlantic BT, United States ulf.mattsson@atla nticbt.com Khizar A. Sheikh, Chair, Privacy, Cybersecurity, and Data Law, Mandelbaum Salsburg United States ksheikh@lawfirm.ms
  • 3. Webcast - Aug 17 3 Title : Do You Have a Roadmap for EU GDPR Compliance? Description : The General Data Protection Regulation (GDPR) goes into effect in 2018 and it will affect any business that handles data, even if it's not based in the European Union. Are you looking to move and host data for EU citizens? Do you have a roadmap and associated estimated costs for EU GDPR compliance? Join this webinar to learn: • Case study and legal/regulatory impact to GDPR • Security Metrics • Oversight of third parties • How to measure cybersecurity preparedness Presenters : Ulf Mattsson, David Morris, Ian West. and Khizar Sheikh Date & Time : Aug 17 2017 5:00 pm Timezone : United States - New York Webcast URL : https://www.brighttalk.com/webcast/14723/259741
  • 4. GDPR Case Studies Source: EU GDPR Report, Crowd Research Partners, 2017 4 1.US and Spain – customer data 2.Italy, Germany and more – financial data 3.Germany – outsourcing 4.Sweden – PII data
  • 6. PWC GDPR Survey Source: PWC GDPR Survey, 2017 6 PwC recently conducted a pulse survey of 200 CIOs, CISOs, General Counsels, CCOs, CPOs and CMOs from US companies with more than 500 employees. The survey asked the c-suite about their plans for Europe’s landmark General Data Protection Regulation (GDPR). The “pulse” revealed five surprising results.
  • 7. Over half of US multinationals say GDPR is their top data- protection priority Source: PWC GDPR Survey, 2017 7 The EU reached agreement on the GDPR in December 2015, and in the last twelve months preparing for the new law’s obligations have jumped to the top of corporate agendas. Of the 200 respondents to PwC’s recent pulse survey on GDPR preparedness, 54 % reported that GDPR readiness is the highest priority on their data-privacy and security agenda. Another 38% said GDPR is one of several top priorities, while only 7% said it isn’t a top priority.
  • 8. Information security enhancement is a top GDPR initiative Source: PWC GDPR Survey, 2017 8 Much of the discussion about the GDPR has focused on the law’s privacy-centric requirements, such as mandatory record keeping, the right to be forgotten and data portability. The GDPR’s relatively generic information-security obligations, however, figure prominently in GDPR plans of US companies. •Among the 23% of survey respondents who haven’t started preparing for GDPR, their top priorities are data discovery, information security enhancement, third-party risk management and GDPR gap assessment. •Among the 71% who have begun GDPR preparation, the most-cited initiatives in flight are information security, privacy policies, GDPR gap assessment and data discovery. •Among the 6% who have completed GDPR preparations, the most-cited projects are information security, GDPR gap assessment, data discovery, and third-party risk management. •IT re-architecture is the lowest priority for companies in all three phases.
  • 9. 77% plan to spend $1 million or more on GDPR Source: PWC GDPR Survey, 2017 9 Securing a $1 million budget for data privacy has been more an exception than a rule for many American corporations. The GDPR’s potential 4% fine of global revenues, however, has changed budget appetites for mitigating this GDPR risk. While 24% of respondents plan to spend under $1 million for GDPR preparations, 68% said they will invest between $1 million and $10 million. Nine percent (9%) expect to spend over $10 million to address GDPR obligations.
  • 10. Binding corporate rules are gaining popularity Source: PWC GDPR Survey, 2017 10 The pulse survey asked executives which EU cross-border data-transfer mechanism they planned to use for processing EU personal data outside of Europe. After the invalidation of the Safe Harbor agreement in October 2015, most Safe Harbor members implemented so-called model contractual clauses as a stop-gap measure. Many observers, especially those in the legal community, thought model clauses would become the new norm. While 58% of respondents reported that future strategies would include model contracts, a stunning 75% said they will pursue binding corporate rules (BCRs), while 77% plan to self- certify to the EU-US Privacy Shield agreement. The uncertain future of both model contracts and the Privacy Shield may drive US multinationals to adopt two or even all three of these options to hedge their risks.
  • 11. How US businesses are re-evaluating their presence in Europe Source: PWC GDPR Survey, 2017 11 US corporations that are heavily invested in Europe will probably stay the course in the near term. Indeed, 64% of executives reported that their top strategy for reducing GDPR exposure is centralization of data centers in Europe. Just over half (54%) said they plan to de-identify European personal data to reduce exposure. The threats of high fines and impactful injunctions, however, clearly have many others reconsidering the importance of the European market. In fact, 32% of respondents plan to reduce their presence in Europe, while 26% intend to exit the EU market altogether.
  • 12. Outlook: Striving to keep pace with the GDPR Source: PWC GDPR Survey, 2017 12 American multinationals that have not taken significant steps to prepare for GDPR are already behind their peers. The typical large US corporation is currently moving through a data- discovery and assessment phase toward a multi-million-dollar remediation initiative that includes shoring up standard data-privacy and security capabilities in US operations. As European regulators in 2017 further clarify how they interpret the GDPR, more American companies are likely to re-evaluate the return-on-investment of their European initiatives.
  • 14. GDPR Key Findings Source: EU GDPR Report, Crowd Research Partners, 2017 14
  • 15. Familiarity with GDPR Source: EU GDPR Report, Crowd Research Partners, 2017 15
  • 16. GDPR Impact Source: EU GDPR Report, Crowd Research Partners, 2017 16
  • 17. GDPR Impact by Industry Source: EU GDPR Report, Crowd Research Partners, 2017 17
  • 18. GDPR Compliance by Region Source: EU GDPR Report, Crowd Research Partners, 2017 18
  • 19. GDPR Compliance by Industry Source: EU GDPR Report, Crowd Research Partners, 2017 19
  • 20. GDPR Preparedness Source: EU GDPR Report, Crowd Research Partners, 2017 20
  • 21. GDPR Organizational Ownership Source: EU GDPR Report, Crowd Research Partners, 2017 21
  • 22. GDPR - Challenges Source: EU GDPR Report, Crowd Research Partners, 2017 22
  • 23. GDPR Initiatives Source: EU GDPR Report, Crowd Research Partners, 2017 23
  • 24. GDPR Chapters of Concern Source: EU GDPR Report, Crowd Research Partners, 2017 24
  • 25. GDPR Articles of Concern Source: EU GDPR Report, Crowd Research Partners, 2017 25
  • 26. GDPR Impact on Security Practices Source: EU GDPR Report, Crowd Research Partners, 2017 26
  • 27. GDPR Impact on Security Budgets Source: EU GDPR Report, Crowd Research Partners, 2017 27
  • 29. GDPR Study - Demographics Source: Ponemon Institute, 2017 29
  • 30. GDPR – Our Sample Source: Ponemon Institute, 2017 30
  • 31. GDPR Most Difficult Source: Ponemon Institute, 2017 31
  • 32. GDPR PII Definition is more expansive Source: Ponemon Institute, 2017 32
  • 33. GDPR – Compliance to Breach Process Source: Ponemon Institute, 2017 33
  • 34. GDPR – Plan to meet GRC Requirements Source: Ponemon Institute, 2017 34
  • 35. GDPR IT Sec Budget Source: Ponemon Institute, 2017 35
  • 36. GDPR Data Governance Budgets Source: Ponemon Institute, 2017 36
  • 37. GDPR – Data Protection Officers Source: Ponemon Institute, 2017 37
  • 38. GDPR Governance In-place Source: Ponemon Institute, 2017 38
  • 39. GDPR – Rights to EU Citizens? Source: Ponemon Institute, 2017 39
  • 40. GDPR – Do you know Which Data has Gone to 3rd parties? Source: Ponemon Institute, 2017 40
  • 41. GDPR compared to PCI, HIPAA and more Source: Ponemon Institute, 2017 41
  • 44. Preparing for GDPR: People Source: IBM, 2017 44
  • 45. Preparing for GDPR: Process Source: IBM, 2017 45
  • 46. Preparing for GDPR: Technology Source: IBM, 2017 46
  • 47. Preparing for GDPR Moving Forward Source: IBM, 2017 47
  • 48. Steps for for Securing Data to Comply with the GDPR
  • 49. Does GDPR Apply? Source: Imperva, 2017 49
  • 50. Checklist for GDPR Source: Imperva, 2017 50
  • 51. Source: Imperva, 2017 51 Checklist for GDPR
  • 52. GDPR Rules Requires Data Protection Technology Source: Imperva, 2017 52
  • 53. GDPR Prep Now or Pay the Price Source: Imperva, 2017 53
  • 54. GDPR – Plan to go The Distance Source: Imperva, 2017 54
  • 56. GDPR Already a Reality Source: Cordery Legal Compliance, UK, 2017 56
  • 57. GDPR – Your Plan Source: Cordery Legal Compliance, UK, 2017 57
  • 58. Source: Cordery Legal Compliance, UK, 2017 58 GDPR – Your Plan
  • 59. GDPR 12 Steps to take now (ICO UK)
  • 60. Preparing for GDPR Source: ICO – Information Commissioner’s Office, UK, 2017 60
  • 62. 62 The Currency of Trust: The “Why” of GDPR Source: Exate, 2017
  • 66. What If … Source: Exate, 2017