Ground Rules. Ground Rules Technology We can provide details of all data electronically All data is securely stored We can fulfil the ‘right.

Slides:



Advertisements
Similar presentations
Marketing - Best Practice from a Legal Point of View Yvonne Cunnane - Information Technology Law Group 30 November 2006.
Advertisements

The Patient Choice Project Use Case Working Session February 12 th, 2016.
The EU General Data Protection Regulation Frank Rankin.
Your Code of Conduct: Data Protection & Compliance Your Code of Conduct: Data Protection & Compliance for Charities.
Students’ Unions 2011 Data Protection and Students’ Unions Mairead O’Reilly 19 July 2011.
General Data Protection Regulation (EU 2016/679)
Profile & Privacy Management Dashboard
Tony Sheppard Mobile Guardian
Accountability & Structured Privacy Management
Data Protection – The Essentials Alison Johnston Lead Policy Officer - Scotland Information Commissioner’s Office.
Private sector and GDPR
Presentation to GTMC on GDPR
GDPR – What’s it all about???
General Data Protection Regulations: what you really need to know
General Data Protection Regulations Preparing for the upcoming changes in data protection law David Jones & Angharad Williams.
Museums + Heritage webinar, 30 November 2017
GDPR Overview Gydeline – October 2017
Conducting Compliant Marketing & SARs Workshop - CMG Events
GDPR & Engaging Networks
12: :00     Welcome   13: :55     Terumo and Flexso will share insights on the successful implementation of SuccessFactors Compensation module.
Data protection reform:
General Data Protection Regulation (GDPR)
Radar Watchkeeping: Have you monitored your Communication department’s radar to avoid collisions with the new Regulation? 43rd EDPS-DPO meeting, 31 May.
GENERAL DATA PROTECTION REGULATION (GDPR)
Data Protection Reform in Local Government
GDPR is There, Are you Ready?
Introduction to GDPR 09/11/2018.
The General Data Protection Regulation (GDPR)
General Data Protection Regulation (GDPR)
Sue Cawthray, CEO/ Gill Thrush, Catering Manager
New Data Protection Legislation
Are you processing personal data lawfully?
Introducing… GDPR A quick guide to understanding the basics.
GDPR and Health and Safety
DATA e-Privacy Regulation Proposal
Data protection reform – update from the ICO
Appropriate Data Sharing in Health and Social Care
G.D.P.R General Data Protection Regulations
From DPA to GDPR: the key elements
The new data protection rules
MAD Academy Training Day 22nd April 2018.

General Data Protection Regulations
General Data Protection Regulation
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
Mathew Norman, Policy & Public Affairs Officer, RLA Wales
General Data Protection Regulation May 25th 2018
GDPR (General Data Protection Regulation)
Preparing for GDPR Sharing experiences of the process and using the British Canoeing Toolkit bit.ly/BCGDPRToolkit
IMPLICATIONS OF GDPR ROBERT BELL.
GDPR enforcement begins
where can you begin rolling out?
 How does GDPR impact your business? Pro Tip: Pro Tip: Pro Tip:
GDPR – Data Protection Law on Steroids?
BMV Leisure & Shaftesbury Luxury Lodges GDPR Statement
Dr. Sarah Quinton, UREC Chair,
Managing Data Darren Wright.
GDPR Consent Data Protection Practitioners’ Conference 2018 #DPPC2018.
GENERAL DATA PROTECTION REGULATION 2016 (GDPR)
Welcome IITA Inbound Insider Webinar: An Introduction to GDPR
Test data preparation for GDPR compliance
Securing consent ‘Consent’ as a ground for processing personal data lawfully should be used sparingly. Try and rely on another lawful ground first (click.
Data Protection What can I do? GDPR Principles General Data Protection
General Data Protection Regulation (GDPR)
GDPR Session
Data Privacy by Design Expanding Security for bepress Users
Privacy Principles Melinda Clarke.
GDPR Workshop – Partnerships for Jewish Schools
Getting Ready For GDPR Simon Marks Director
Data management made easy JUNE 2019
Presentation transcript:

Ground Rules

Technology We can provide details of all data electronically All data is securely stored We can fulfil the ‘right to be forgotten’ All new technology has privacy by design built-in

Processes and Systems We know the source of all data We know what data we are holding We are transparent about the use and sharing of data We can clearly demonstrate that we have consent to use this data We have systems in place to manage a data breach We can comply with an individual’s right to portability

Information and rights of access Individuals can easily find out what information we hold on them We have developed template responses We have updated all our permission statements and they are ready for GDPR Individuals can access their own data and update their preferences We can put it right when we’ve got it wrong

Unbundled Consent requests must be separate from other terms and conditions Consent should not be a precondition of signing up to a service unless necessary for that service

Pre-ticked opt-in boxes are invalid – use unticked opt-in boxes or similar active opt-in methods (eg a binary choice given equal prominence) Active opt-in

Granular Give granular options to consent separately for different types of processing wherever appropriate

Name your organization and any third parties who will be relying on consent – even precisely defined categories of third-party organizations will not be acceptable under the GDPR Named

Easy to withdraw Tell people they have the right to withdraw their consent at any time, and how to do this It must be as easy to withdraw as it was to give consent This means you will need to have simple and effective withdrawal mechanisms in place