GDPR Please don’t panic!

Slides:



Advertisements
Similar presentations
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
Advertisements

Data Protection and research Rachael Maguire Records Manager.
General Data Protection Regulation (EU 2016/679)
The Data Protection Act 1998
Education Update Data Protection
Data Protection Regulation
Tony Sheppard Mobile Guardian
Trevor Ellis Trainee Programmer (1981 – 28 years ago)
Handling Personal Data
Presentation to GTMC on GDPR
General Data Protection Regulations: what you really need to know
General Data Protection Regulation
Museums + Heritage webinar, 30 November 2017
GDPR Overview Gydeline – October 2017
The Data Protection Act 1998
Portfolio Day.
GDPR Overview Gydeline – October 2017
Data Protection & Freedom of Information- An Introduction
The General Data Protection Regulation GDPR parish workshop
GENERAL DATA PROTECTION REGULATION (GDPR)
Data Protection Reform in Local Government
6 Principles of the GDPR and SQL Provision
Amano Technologies Limited. March 2018.
The General Data Protection Regulation (GDPR)
Sue Cawthray, CEO/ Gill Thrush, Catering Manager
New Data Protection Legislation
The Data Protection Act & ICT Law
GDPR and Health and Safety
Privacy: a work in progress
Information Governance
G.D.P.R General Data Protection Regulations
ScHARR Bite Size Research Ethics and GDPR: legal requirements for research - what you need to know.
Data Protection and GDPR – An introduction for Baptist Churches
The new data protection rules
General Data Protection Regulations
General Data Protection Regulation
General Data Protection Regulation (GDPR)
Data Protection principles
PATIENT NOTICE Data Protection Legislation is Changing From the 25th May, the current UK Data Protection Act 1998 is being replaced by the EU General Data.
Data Protection Managing risk is not just about health and safety and insurance. It’s about data protection too. New stricter data protection legislation.
Preparing for the GDPR - What do we need to do if we process children’s personal data? Data Protection Practitioners’ Conference 2018 #DPPC2018.
Information for Patients Please return to reception
Data Protection in Schools
Identify the laws and guidelines that affect day-to-day use of IT.
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
General Data Protection Regulation (GDPR)
A whistle stop tour of GDPR
Mathew Norman, Policy & Public Affairs Officer, RLA Wales
GDPR (General Data Protection Regulation)
How we’ll prepare for the General Data Protection Regulation (GDPR)
GDPR For The Voluntary Sector
General Data Protection Regulations 2018
General Data Protection Regulations (GDPR) Training
 How does GDPR impact your business? Pro Tip: Pro Tip: Pro Tip:
GDPR Quiz Today’s trainer: Click here to use Kahoot! 1
The General Data Protection Regulation Six months on – What’s changed
Data Protection in Schools
Welcome IITA Inbound Insider Webinar: An Introduction to GDPR
#eaThinkData Get Ready for GDPR #eaThinkData.
GDPR – General Data Protection Regulation
Hot Topic 1: GDPR and Traffic Data Systems
What Governors need to know about GDPR
Dr Elizabeth Lomas The General Data Protection Regulation (GDPR): Changing the data protection landscape Dr Elizabeth Lomas
Identify the laws and guidelines that affect day-to-day use of IT.
Data Protection What can I do? GDPR Principles General Data Protection
GDPR Session
ScHARR Bite Size Research Ethics and GDPR: legal requirements for research - what you need to know.
General Data Protection Regulation Community Councils
Getting Ready For GDPR Simon Marks Director
GDPR what do we need to do?
Presentation transcript:

GDPR Please don’t panic! You are probably already compliant – just a few things that you need to be aware of It really is about using your common sense and applying the law to your circumstances As long as you start to plan for GDPR by 25 May you will be fine I will send out links to ICO and anything else as they come through Don’t scribble – this will be sent round Please email me any questions you have if I can’t answer them tonight Will use MAP as an example of what we will do

Data What is the purpose of using the data? Can you justify the data that you hold? Context and purpose of using the data is critical Must give information at the beginning saying what you will do with the data (in your constitution?) You don’t need to get consent every time/year (only if your purpose changes) Email addresses for e-bulletins, invitation to forums Piece of paper here tonight inviting you to join the mailing list

Consent What is Consent? Consent has to be opt-in, not opt-out Consent must be verifiable (so verbal consent must be recorded) https://ico.org.uk/for-organisations/guide-to-the-general-data-protection- regulation-gdpr/lawful-basis-for-processing/consent/ What is not Consent? Silence, tickboxes Opting-out Withdrawing consent should be as easy as giving consent

Six principles Processed lawfully, fairly and in a transparent manner in relation to individuals Collected for a specific purpose Relevant and limited to the purpose Accurate and up-to-date Kept in a form which permits identification of data subjects for no longer than is necessary Processed in a manner that ensures appropriate security of the personal data Can you comply with all of them? And do you have evidence? Mention IGS and postal address Always using BCC blind copy on emails

Suggestions/advice Do an information audit – give yourselves until 15 May to complete Decide if any changes need to be made to the type of data you hold Write a couple of sentences explaining how and why you will use people’s data Write a sentence explaining how members can opt-out Make the information available (website, bottom of emails, etc) Minute the work you have done to be GDPR compliant Review in a year’s time

Further reading ICO (Information Commissioner’s Office) https://ico.org.uk/for-organisations/guide-to-the-general-data- protection-regulation-gdpr/ https://ico.org.uk/media/for- organisations/documents/1624219/preparing-for-the-gdpr-12- steps.pdf Will be publishing guidance mid-March Self-assessment toolkit