GDPR (Patrix interpretation)

Slides:



Advertisements
Similar presentations
Rome I regulation Discussion topics
Advertisements

 The Data Protection Act 1998 is an Act of Parliament which defines UK law on the processing of data on identifiable living people and it is the main.
INTERNATIONAL LAW PARMA UNIVERSITY International Business and Development International Market and Organization Laws Prof. Gabriele Catalini.
Cartagena protocol on Biosafety to the Convention on Biological Diversity and the International debates (COP- MOP) Stakeholders’ workshop on the Biosafety.
1 Role of the Data Protection Officer Donald Henderson Information Compliance Manager 30 September 2010.
Presentation Title Data Protection The new EU Regulation Insert your logo here.
Your Code of Conduct: Data Protection & Compliance Your Code of Conduct: Data Protection & Compliance for Charities.
General Data Protection Regulation (EU 2016/679)
Consent and Contract under EU Data Protection Law
Industry 4.0 – New ways of cooperative working – are we prepared?
Brussels Privacy Symposium on Identifiability
GDPR (General Data Protection Regulation)
Luca De Matteis Justice counsellor (criminal law, data protection)
Understanding EU GDPR from an Office 365 perspective
Issues of personal data protection in scientific research
Contingent Workforce: Global Privacy Laws Overview
Viewing the GDPR Through a De-Identification Lens
General Data Protection Regulations and the IoT
Presentation to GTMC on GDPR
Operationele blik op GDPR
GDPR – Legal Aspects Desislava Krusteva, Attorney-at-Law, CIPP/E
General Data Protection Regulations: what you really need to know
General Data Protection Regulation
General Data Protection Regulations Preparing for the upcoming changes in data protection law David Jones & Angharad Williams.
GDPR Any impact on procurement? 16/11/2017.
DEN FARLIGE FANTASTISKE APP
Museums + Heritage webinar, 30 November 2017
EU perspective – Sustainable development means….
Portfolio Day.
The European Union General Data Protection Regulation (GDPR)
The General Data Protection Regulation – in short
Bob Siegel President Privacy Ref, Inc.
GENERAL DATA PROTECTION REGULATION (GDPR)
GDPR General Data Protection Regulation EU: Coming May 25, 2018
The General Data Protection Regulation (GDPR)
DATA e-Privacy Regulation Proposal
The GDPR and research data
Bart van der Sloot Data Protection 2.0 The proposal for a General Data Protection Regulation Bart van.
GDPR – Practical Implementation Managing contracts, procurement and relationships with suppliers Terry Brewer Chief Executive.
General Data Protection Regulation
Preparing for the GDPR - What do we need to do if we process children’s personal data? Data Protection Practitioners’ Conference 2018 #DPPC2018.
Relocation CARNIVAL come one…come all
General Data Protection Regulation (GDPR)
Mathew Norman, Policy & Public Affairs Officer, RLA Wales
GDPR - New Data Protection Regulation
GDPR How does it apply to me?.
GDPR (General Data Protection Regulation)
Guide to overview of changes under GDPR ww.ZAKSIT.com
GDPR For The Voluntary Sector
Bart van der Sloot Data Protection 2.0 The proposal for a General Data Protection Regulation Bart van.
GDPR Workshop MEU Symposium Prague 2018
General Data Protection Regulations 2018
GDPR enforcement begins
CCG COMMISSIONS HIU COLLATING PROVIDER: A&E BI TEAM CSU
Is Data Protection a Fundamental Right Protecting the Individual?
Presentation privacy law
Recording Clinical Data
The title: The implementation of Data Protection
Welcome IITA Inbound Insider Webinar: An Introduction to GDPR
Confidentiality Agreement
Data Protection: The new EU Regulation
Themes for training on data protection
European Commission proposals for data protection
General Data Protection Regulation (GDPR)
Privacy & Interfederation
THE IMPACT OF DATA PROTECTION RULES ON CORPORATE INFO SECURITY AND INCIDENT RESPONSE MANAGEMENT – The Energy sector CEER Cybersecurity Workshop Massimo.
General Data Protection Regulation
European Economic Area’s General Data Protection Regulation
HIU Process Map The collating provider has primacy, and must have/had a direct relationship with the patient CCG COMMISSIONS HIU COLLATING PROVIDER: A&E.
Getting Ready For GDPR Simon Marks Director
Presentation transcript:

GDPR (Patrix interpretation)

General Data Protection Regulation What is it? What is its purpose? Who does it concern? What consequences will it have for our business processes? What can Patrix do to help? How does it effect Patrix’ relation to you?

What is it? General Data Protection Regulation A regulation created by the EU Parliament and Council Replaces the Data Protection Directive Takes effect on the 25 May 2018

What is its purpose? It was created so that each person shall be aware of and have the power over how its personal data is used by any business

Who does it concern? It protects all natural persons It regulates the use of personal data by any business processing data in the EU or that has its business in the EU whether the processing takes place inside or outside of the EU.

Roles: Data Subject Is a natural person of which personal data is processed.

Roles: Data Controller A Data Controller is a person or organisation that determines the purpose and means of the processing of data. There must be a named responsible person for this topic in any organisation that processes data in the capacity of Data Controller.

Roles: Data Processor A Data Processor is a person or organisation that processes personal data on behalf of a Data Controller. There must be a named responsible person in an organisation for the processing of personal data.

What practical consequences will it have for businesses It is the responsibility of the Data Controller only to process data in a legal manner: After consent If under a contractual obligation (data subject agreement party) If necessary by law If Data Controller’s (or third party’s) interest outweights Data Subjects fundamental right.

Consent Clear information on what, why, how and where the data will be processed. Right for data subject to withdraw its consent easily (right to be forgotten). Data Controller not to step ouside the boundaries. Limit the processing to a minimum regardless of the consent.

Control! The Data Controller must at all times have control over the personal data and be prepared to reply to any data subject on any question about its personal data and to delete it if so required.

What can Patrix do to help? Patrix can assist with identifying where any specific personal data is stored in the Patricia Db Patrix can assist with removing any personal data from the Patricia Db.

Relation Patrix-Client Processing Agreement Specific Assignment

Processing Agremment Patrix will need to have a Data Processing agreement in place betwen it and its clients (Data Controller). This agreement will regulate the general rules under which the data will be processed. Only one Agreement is needed and will have effect for an indefinite period of time.

Specific Assignment Patrix also needs a specific assignment from its clients before accessing personal data. This will be limited in time and very specific to the nature of the assignment.