GDPR - What to do!!
Pexel.com

GDPR - What to do!!

I am not an expert on GDPR but here is what I have understood.

The GDPR is a European Union (EU) privacy law and will come into effect from 25th May 2018 and you are wondering what is it about!!

It regulates how anyone or anybody uses the personal data of people located in the EU. Personal data is “any information relating to an identified or identifiable natural person (‘data subject’); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person;”

Anything you do with this data is called data processing. The definition of data processing is again very broad. Basically it covers almost everything and anything under the sun that you can think of doing with data!!

There are two important pieces to this:

Consent: You need to have consent to process any EU citizen's personal data. This consent must be specific and verifiable. As per GDPR, the definition is: “‘consent’ of the data subject means any freely given, specific, informed and unambiguous indication of the data subject's wishes by which he or she, by a statement or by a clear affirmative action, signifies agreement to the processing of personal data relating to him or her;”

Verifiable consent would mean that you have records of when and how you got the permission from the subject to process the data.

  • So no pre-ticked boxes!! A pre-ticked is taken as the subject did not specifically give consent to you.
  • You should be able to prove by written records, that you have this permission.
  • The consent has to be specific, meaning that the language of consent should not be ambiguous and should clearly identify, for what the subject is giving consent for.
  • Consent should not be hidden anywhere. It has to be visible (very visible!!)
  • Give complete details of how you would process the data of the subject.
  • Be specific about how long the consent is being given for. A refresh request should go out in case you want to extend the consent, or the data should be simply deleted.

Individual Rights: GDPR also provides information on Individual rights.

  • If the subject requests to be forgotten, you will have to delete their data immediately.
  • The subject can ask for ways their data is being processed anytime and you will have to comply with that.

Please add on anything that I have missed. Hope this helps to get upto speed!!


要查看或添加评论,请登录

Rajat Garg的更多文章

  • Potential is not enough. Without aspirations, it’s like an engine without fuel. ??

    Potential is not enough. Without aspirations, it’s like an engine without fuel. ??

    Over the years, I’ve come across many people with immense potential—skills, talent, and a natural ability to excel. But…

    4 条评论
  • Evolving Leadership: From Startup Hustle to Organizational Growth

    Evolving Leadership: From Startup Hustle to Organizational Growth

    The journey from a scrappy startup to a structured organization is akin to a hero’s journey in a movie. The…

    7 条评论
  • The Emotional Journey of a Mentor: Navigating the Ups and Downs!

    The Emotional Journey of a Mentor: Navigating the Ups and Downs!

    Mentoring is often seen as a rewarding and noble endeavor, offering guidance, sharing knowledge, and fostering growth…

    7 条评论
  • Strategic Moves: Mastering Leadership Through Insight

    Strategic Moves: Mastering Leadership Through Insight

    Welcome to the first edition of "Strategic Moves," a specially curated newsletter designed to deepen your understanding…

    4 条评论
  • Tried working from a Farm?

    Tried working from a Farm?

    Have you ever imagined working (running a company coach-to-transformation and leading a global organization ICF) from a…

    55 条评论
  • The Good Boy Syndrome!

    The Good Boy Syndrome!

    Don't worry about the gender of the topic. It could be any gender!! I used it because I was one (and maybe still…

    22 条评论
  • The story of 1st India ICF Coaching Conclave!!

    The story of 1st India ICF Coaching Conclave!!

    I will try to keep this short but hopefully sweet :). The journey started with a meeting in March of the chapter…

    27 条评论
  • Are you a Giver or a Taker!!

    Are you a Giver or a Taker!!

    Adam Grant in his book "Give and Take", gives definitions of three types of people that exist. Givers are people who…

    3 条评论
  • Do you want to change but can't!!

    Do you want to change but can't!!

    We are always in the process of either changing ourselves or others. Most of the time it is the others we try to change…

    3 条评论
  • The Leadership Test

    The Leadership Test

    I am sure we have all wondered at times: “Am I a Leader?” You are sure about leading people and you have been doing it…

社区洞察

其他会员也浏览了