 How does GDPR impact your business? Pro Tip: Pro Tip: Pro Tip:

Slides:



Advertisements
Similar presentations
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
Advertisements

The EU General Data Protection Regulation Frank Rankin.
General Data Protection Regulation (EU 2016/679)
Data Protection Regulation
Data Protection Officer’s Overview of the GDPR
Key changes with the GDPR
Accountability & Structured Privacy Management
Understanding EU GDPR from an Office 365 perspective
Privacy principles Individual written policies
Microsoft 365 Get help with regulatory compliance
Presentation to GTMC on GDPR
GDPR – What’s it all about???
GDPR – Legal Aspects Desislava Krusteva, Attorney-at-Law, CIPP/E
General Data Protection Regulations: what you really need to know
General Data Protection Regulation (GDPR
General Data Protection Regulation
General Data Protection Regulations Preparing for the upcoming changes in data protection law David Jones & Angharad Williams.
GDPR Readiness Project
What is EGDPR?.
General Data Protection Regulation
Data Protection Update – GDPR or bust
Microsoft Corporation
The European Union General Data Protection Regulation (GDPR)
GDPR Road map to Compliance.
Introducing GDPR: How the General Data Protection Regulation transforms the world Laura Mudd November 2016.
Bob Siegel President Privacy Ref, Inc.
GDPR - Individual’s Rights
GENERAL DATA PROTECTION REGULATION (GDPR)
GDPR 101 and ucsb’s response
General Data Protection Regulation
Introduction to GDPR 09/11/2018.
The Rise of Privacy: Complying with GDPR in the United States
GDPR and paper records Why it’s not all cyber and fines Gary Shipsey
GDPR General Data Protection Regulation EU: Coming May 25, 2018
The General Data Protection Regulation (GDPR)
Are you processing personal data lawfully?
GDPR and Health and Safety
The general data protection regulations practicalities for practice
Information Governance
G.D.P.R General Data Protection Regulations
The new data protection rules

General Data Protection Regulations
General Data Protection Regulation
Preparing for the GDPR - What do we need to do if we process children’s personal data? Data Protection Practitioners’ Conference 2018 #DPPC2018.
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
Mathew Norman, Policy & Public Affairs Officer, RLA Wales
GDPR - New Data Protection Regulation
GDPR How does it apply to me?.
GDPR (General Data Protection Regulation)
How we’ll prepare for the General Data Protection Regulation (GDPR)
GDPR Workshop MEU Symposium Prague 2018
General Data Protection Regulations 2018
General Data Protection Regulations (GDPR) Training
GDPR enforcement begins
Are you GDPR ready? Get help with regulatory compliance
Information Handling Research Student Induction Day
 GDPR Readiness Quiz Quick Insight: Quick Insight: Quick Insight:
The General Data Protection Regulation: Are You Ready?
The title: The implementation of Data Protection
Welcome IITA Inbound Insider Webinar: An Introduction to GDPR
General Data Protection regulation (GDPR)
What is EUGDPR?.
General Date Protection Regulation
Dr Elizabeth Lomas The General Data Protection Regulation (GDPR): Changing the data protection landscape Dr Elizabeth Lomas
Data Protection What can I do? GDPR Principles General Data Protection
General Data Protection Regulation (GDPR)
Is your medico-legal practice GDPR compliant?
Getting Ready For GDPR Simon Marks Director
GDPR is here – are you ready?
Presentation transcript:

 How does GDPR impact your business? Pro Tip: Pro Tip: Pro Tip: Partner Logo Here  Quiz How does GDPR impact your business? Effective May 25, 2018, the General Data Protection Regulation (GDPR) introduces new requirements about how organizations manage and protect personal data while respecting individual choice—no matter where the data is sent, processed, or stored. Take this 10-question quiz to check your knowledge about the GDPR and what it means for your organization. 1. Does the GDPR apply to my organization? Impacts organizations that offer goods and services to people in EU or collect and analyze data tied to EU residents, no matter where they are Includes companies, government agencies, non-profits, and others For all sizes of organizations: small, large, and enterprise Pro Tip: The GDPR isn’t just Europe – it applies more broadly than many people think. 2. Is the data my organization processes subject to the GDPR? GDPR regulates collection, storage, use, and sharing of “personal data” Includes any data related to an identified or identifiable person Personal Identifiable Information (PII) Some identifiers: IP address, employee information, sales data, customer data, and biometric data Pro Tip: The GDPR is all about personal data, which can reside in: Customer databases Feedback forms filled out by customers Email content Photos CCTV footage Loyalty program records HR databases 3. What are the risks if we don’t comply? Fines can be up to 4% of annual turnover or €20 million Individuals (or organizations acting on their behalf) can start civil litigation Other organizations may only work with you if you’re compliant Pro Tip: Up until now, data protection laws did not include significant fines. The GDPR changes things dramatically. GDPR compliance is not a one-time activity and carries significant penalties for non-compliance. 4. What are the main requirements? Transparency, fairness, lawfulness when handling and using personal data Data processing minimization Collection and storage minimization Ensure accuracy of personal data Limit storage Ensure security, integrity, and confidentiality Pro Tip: Organizations need to be clear how they handle personal data – there must be a lawful basis. Processing is limited to specified, explicit, legitimate purposes. Storage should be adequate and relevant for the intended purpose. 5. What does transparency really mean? Organizations must tell individuals about their data processing Why it is processed, how long it is stored, with whom it is shared, and is it transferred outside the EU Easy to access and understand format Pro Tip: Data controllers must ensure that anyone whose data is collected is kept adequately and sufficiently informed about just what is being done, and will be done, with their data.

Pro Tip: Pro Tip: Pro Tip: Pro Tip: Pro Tip: 6. What are some of the other requirements? Implement privacy by design and privacy by default Appoint a Data Protection Officer Institute data breach reporting Pro Tip: The Data Protection Officer should be accountable to the highest level to ensure compliance. The data breach reporting threshold is lower under GDPR. 7. What are individual rights? Access to personal data an organization holds for an individual Right to be forgotten Stop processing, revoke consent, and data portability Pro Tip: The GDPR was designed to strengthen the rights of EU citizens and does so by clarifying, extending, and introducing new rights. 8. What kind of record keeping is required? Organizations need to maintain detailed processing records Purpose of processing Data categories processed Data transfers Security measures employed Pro Tip: The GDPR sets new standards in record- keeping. Organizations processing personal data will need to keep detailed records to be compliant. 9. What if a data breach occurs? Data breach includes accidental destruction, loss or alteration of personal data or unauthorized disclosure of personal data Obligation to notify regulator and/or consumers within 72 hours Pro Tip: The GDPR requires organizations take appropriate measures to prevent unauthorized access or disclosure and to notify stakeholders in the case of breach. 10. Can Microsoft help us meet the GDPR requirements? Yes! Microsoft is adding technology, documentation, capabilities, and transparency to help organizations with GDPR compliance Microsoft has committed to Enterprise Online services compliance by May 2018 Pro Tip: GDPR analysis begins with understanding what data exists and where it resides, and taking appropriate steps. As a Microsoft partner, we can work with you to help you make the most of available tools and technologies. Make sure you’re prepared to meet and stay compliant with the GDPR. It’s not surprising if your answers to this simple GDPR quiz have made you reconsider your approach to the GDPR – this new regulation will typically require making changes to people, processes, and technology. Contact us to learn how capabilities in Microsoft 365 and our services can help. <<Partner Contact Information>> <<Partner URL>> Partner Logo Here