GDPR An Update 2 November 2017.

Slides:



Advertisements
Similar presentations
Employee privacy in a global company Sandra Kelman Privacy Manager (Asia Pacific) Privacy Issues Forum 30 March 2006.
Advertisements

Feedback from Advice and Information Strategy Group 3 July 2012.
4. Solvency II update Catherine Beech 9 October
EU VAT Recent developments - Update - Maryse VOLVERT European Commission.
University Retention Schedule Training. Introduction to the University Retention Schedule.
The EU General Data Protection Regulation Frank Rankin.
General Data Protection Regulation (EU 2016/679)
Funded Agency Channel overview
GDPR 12 POINTS 679/2016 DATA LEX 2016.
Tony Sheppard Mobile Guardian
General Data Protection Regulation (GDPR)
Accountability & Structured Privacy Management
University Information Audit 2014
What Does GDPR mean for you
Understanding EU GDPR from an Office 365 perspective
General Data Protection Regulations and the IoT
The Federal programs department September 26, 2017
GDPR – What’s it all about???
CIIMS Proposal for TOP-003 Approach
Explorative Analysis of the Implications and Compliance of the Protection of Personal Information (POPI) Act in a Open and Distance Learning (ODL) Institution:
Policing Plan Liz France Deputy Chairman
Natalie Chapman Transport Manager Calendar
General Data Protection Regulations: what you really need to know
General Data Protection Regulation
The National Data Guardian review & Government response
General Data Protection Regulations Preparing for the upcoming changes in data protection law David Jones & Angharad Williams.
KEY CHANGES TO THE DATA PROTECTION LANDSCAPE
Ubc survey tool community engagement event
GDPR support January GDPR support January 2018.
INTRODUCTION TO GDPR 19/09/2018.
Data Project: Update Sarah Jenkins: Data Project Manager.
GDPR - New Data Protection Regulation
GDPR – The Role of the Data Protection Officer (DPO)
Introduction to GDPR 09/11/2018.
The session will commence at Please mute your microphone
Software for ambitious enterprises
Information Governance
G.D.P.R General Data Protection Regulations
The GDPR and research data
Introduction to Records Management, FOI & Data Protection
GDPR – Practical Implementation Managing contracts, procurement and relationships with suppliers Terry Brewer Chief Executive.
General Data Protection Regulations
General Data Protection Regulation
Dealing with your GDPR Challenges
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
Mathew Norman, Policy & Public Affairs Officer, RLA Wales
GDPR (General Data Protection Regulation)
How we’ll prepare for the General Data Protection Regulation (GDPR)
GDPR For The Voluntary Sector
General Data Protection Regulations 2018
ICT Functional Leadership Government Information Group
Xoserve IX Refresh Customer Update 30/10/2018.
Data Management Ethical considerations for educational research
ACCORD Update/Training Event The Changing Research Landscape 26th February 2019 Heather Charles Head of Research Governance.
GDPR Dashboard General Data Protection Regulation 06/02/2018
Key Value Indicators (KVIs)
European Labour Law Jean Monnet Chair of EU Labour Law Academic Year Silvia Borelli:
ADD YOUR LOGO HERE TYPE IN CENTRE NAME LEVEL 2 GDPR AWARENESS
Privacy by Design Session 6
Outlook and Shared Drives
Education and Training Statistics Working Group, May 2011
2019 Spring & Fall Timeline May 10, 2019
ADD YOUR LOGO HERE TYPE IN CENTRE NAME LEVEL 1 GDPR AWARENESS
Microsoft Data Insights Summit
The Citywide open data public records tracker
Investment Forum Regulatory Update Round
TYPE IN CENTRE NAME LEVEL 2 GDPR AWARENESS TYPE IN NAME
UND’s Promotion & Tenure Process: Electronic Submission and Next Steps
National data opt-out - Preparing for implementation
Data Protection Privacy Impact Assessment Project Management Process V0.4 Last updated – 29/01/2019.
Presentation transcript:

GDPR An Update 2 November 2017

Countdown The clock is ticking… 6 Months 3 Weeks 2 Days The General Data Protection Regulations will come into force on 25 May 2018 Presentation to insert name here

Internal Compliance Project Update Retention Policies for personal data have been defined across the business We have fully reviewed our cyber and digital security set-up to ensure it meets the GDPR standard Our new member portal has been introduced with further improvements to the back office processing of member data to take place before the end of 2017 We are midway through our full DPIA process and aim to be signing off compliant business units action plans as complete by January 2018 Our move to SharePoint has led to the removal of most unnecessary data from our file system and historic data will be removed from our active systems later this year Privacy policies and marketing statements are currently being reviewed and will be live in early 2018 including a more detailed preferences centre for members and customers The Right to Forget tool is being worked on at present and is set to be tested on dummy data in December Retention policies – 5 years for ex-member data – all current member data is retained Presentation to insert name here

Access to Data Member Group data is no longer accessible though the Member Secure Area Introduction of the new MyBCS portal Business Intelligence reports will be available on request from your Member Group co-Ordinator These can include statistics on member growth, age ranges, location data and other options in the format of a simple report All reports will be in an anonymised format and contain no personal data This approach will replace old reports generated from the Member Portal Depending on uptake, this approach may lead to automated monthly reports for groups. Presentation to insert name here

The New Policy for Member Data Rationale explanation Obligations as a Data Controller The Changes The planned process (previous four points covered in the policy document) Consultation question in survey Presentation to insert name here

Timeline Convention 15th November 2016 Data Survey January MyBCS launch in Summer 2017 Business Intelligence launch October 2017 Policy Announcement November 2017 Policy Consultation November/December 2017 Policy Launch January 2018 Full compliance March 2018 Presentation to insert name here

Expectations The approach to data processing will be consistent across our business, including for volunteers and member groups Our policies are in line across the Group for data handling and retention We have conducted a large data cleansing exercise to rid the business of ‘out of date’ and inaccurate data We are introducing new measures so that only those staff with a genuine business need to have access to data, have it. And this will be reviewed regularly We collectively share the same pain when implementing the new Regulations Any behavior not in line with the new Policy will be reported to the DPO and investigated Possible sanctions against individuals and / or Groups Presentation to insert name here