Deployment of a DPO Niamh Gavin AIB Data Protection Legal

Slides:



Advertisements
Similar presentations
1 The Data Protection Officer at work Experience, good practices and lessons learnt Pierre Vernhes – former DPO at the Council of the EU Workshop on Data.
Advertisements

LEGAL CONSEQUENCES John Mullins 03/09/ POTENTIAL LIABILITIES IN SPORT Torts Law – negligence Contract law Statutory obligation - workplace health.
The EU General Data Protection Regulation Frank Rankin.
General Data Protection Regulation (EU 2016/679)
Data Protection Regulation
GDPR 12 POINTS 679/2016 DATA LEX 2016.
Tony Sheppard Mobile Guardian
Data Protection Officer’s Overview of the GDPR
Accountability & Structured Privacy Management
Industry 4.0 – New ways of cooperative working – are we prepared?
Ian De Freitas, Partner, Farrer & Co 6 September 2017
Overview General Data Protection Regulation (GDPR)
GDPR Module 3: Accountability and Governance
Running a Privacy Impact Assessment (PIA)
Amandine Jambert - IT Experts Department
Presentation to GTMC on GDPR
General Data Protection Regulation (GDPR)
General Data Protection Regulations: what you really need to know
General Data Protection Regulation
General Data Protection Regulations Preparing for the upcoming changes in data protection law David Jones & Angharad Williams.
General Data Protection Regulation
Museums + Heritage webinar, 30 November 2017
GDPR Readiness Project
Service-centric policies – Update (NA3.2)
GDPR support January GDPR support January 2018.
INTRODUCTION TO GDPR 19/09/2018.
Introducing GDPR: How the General Data Protection Regulation transforms the world Laura Mudd November 2016.
Programme Fortify Digital Security
Radar Watchkeeping: Have you monitored your Communication department’s radar to avoid collisions with the new Regulation? 43rd EDPS-DPO meeting, 31 May.
GENERAL DATA PROTECTION REGULATION (GDPR)
General Data Protection Regulations
Data Protection Reform in Local Government
GDPR - New Data Protection Regulation
GDPR – The Role of the Data Protection Officer (DPO)
Introduction to GDPR 09/11/2018.
GDPR and paper records Why it’s not all cyber and fines Gary Shipsey
The Role of the Data Protection Officer
The Audit Function.
Sue Cawthray, CEO/ Gill Thrush, Catering Manager
EU Reference Centres for Animal Welfare
Data protection reform – update from the ICO
Information Governance
G.D.P.R General Data Protection Regulations
Data protection in the Education Sector - understanding the impact of GDPR Tuesday 23rd January 2018.
The GDPR & Schools - An Introduction -
GDPR Overview and Use Cases.
General Data Protection Regulation
Preparing for the GDPR - What do we need to do if we process children’s personal data? Data Protection Practitioners’ Conference 2018 #DPPC2018.
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
GDPR (General Data Protection Regulation)
EU action after Deepwater Horizon accident - Gulf of Mexico – April 2010
How we’ll prepare for the General Data Protection Regulation (GDPR)
Revised DPO Policy Paper
Guide to overview of changes under GDPR ww.ZAKSIT.com
GDPR (Patrix interpretation)
Data Mapping On the Journey to Accountability
Welcome!.
Governing the risk of GDPR compliance
GDPR & Accountability ISACA Ireland Annual Conference 2018
#eaThinkData Get Ready for GDPR #eaThinkData.
GDPR PERSONDATAFORORDNINGEN I PRAKSIS
What Governors need to know about GDPR
Session 3: To DPO or not to DPO?
The General Data Protection Regulations 2016
GDPR: Understanding your obligations and the ongoing challenges
AOITI WG3 Privacy-in-IoT Taskforce
General Data Protection Regulation “11 months in”
Is your medico-legal practice GDPR compliant?
GDPR – One Year On School Business Managers Forum 4 July 2019
A. Šidlauskas Mykolas Romeris University (LITHUANIA)
Presentation transcript:

Deployment of a DPO Niamh Gavin AIB Data Protection Legal 28 September 2017

Deadline GDPR EFFECTIVE DATE

Not a legal requirement under the current EU Data Protection Directive The DPO Role Today What’s the current status Not a legal requirement under the current EU Data Protection Directive Many EU countries (e.g. Germany & Sweden) have made it mandatory under local law The evolution and significance of this role under the GDPR

What’s new under the GDPR Mandatory v Voluntary – Assess your obligations Existing privacy related roles already in place may not meet the new legal criteria under the GDPR Protected role – DPO cannot be removed or penalised for performing tasks Failure to appoint a DPO – Consequences for organisations

Expert in data protection laws and practices Who is the DPO Expert in data protection laws and practices First there is the GDPR 173 Recitals (not having force of law) 11 Chapters 99 Articles (having full force of law) But don’t forget; ePrivacy Regulation, NIS Directive and more

Who is the DPO Must Report directly to highest management level Can be group DPO Can perform other tasks provided no conflict of interest Can be outsourced

Responsibilities of the DPO Monitoring compliance with the GDPR Consultation in the Data Protection Impact Assessment (DPIA) process Point of contact for the Regulator Point of contact for data subjects Role to play in record keeping

Proper resources (financial resources, additional staff etc.) What will the DPO need Organisations must provide: Proper resources (financial resources, additional staff etc.) Sufficient time to enable the DPO fulfil their tasks Active support from senior management Continuous training and on-going investment

Consider Liability in the event of non – compliance Is there protection against personal liability The Controller and or Processor are ultimately responsible for GDPR compliance What about wilful misconduct, gross negligence

Q & A