General Data Protection Regulation (GDPR)
Dinuka Fernando
Associate Technical Lead at Axiata Digital Labs| Speaker | Blogger
"The digital future of Europe can only be built on trust. With solid common standards for data protection, people can be sure they are in control of their personal information"
What is GDPR?
GDPR stands for General Data Protection Regulation and it is a new set of rule which was introduced to an European Union.It's a new European privacy regulation .The intention of the General Data Protection Regulation is to protect data of an individuals within the European Union and GDPR aims both citizens and the companies in the European Union.
Applying GDPR in digital economy can be benefit for citizens and businesses as well.
How did GDPR come about?
GDPR was approved by the European Union parliament on 14 th of April 2016 and it was enforced on 25 th of May 2018.
GDPR is applicable to all kind of selling companies and which are storing,processing personal information/data about European citizens.
GDPR is affects greatly to control personal data of an individuals.If the businesses uses the GDPR that the individuals can be guarantee about their personal data.
How GDPR will affects to the businesses ?
Any businesses that stores and processes personal data/personal information about citizens in EU is comply with GDPR rules,So if the businesses store or process data of EU citizens must follow this GDPR rules which was introduced by the EU parliament.If your business is not compliance with the GDPR it will be a penalty for your Company and the cost is up to 20M Euro,4% of annual global turnover.
Furthermore if your business sells goods or services to customers or businesses in the EU you have to follow GDPR rules.
What is Personal data?
"Personal data is any information that relates to an identified or identifiable living individual".
Identifiers- name,Identification number,location details,an online identifiers or to one or more factors specific to the physical,physiological,genetic mental,economic,culture of the natural person.
What are the basic GDPR requirements?
The right to access - every individual has their right to access/request to their personal data and to get informed how the business uses their personal data.
The right to be forgotten- If the customer is no longer customer for that company customer has right to have clear/remove their data.
The right to be informed -individual must informed before collecting/gathering information about the personal data of them.
The right to be notify - If there is a data breach each individual has right to be informed about the data breach within 72 hours.
As you can see these GDPR requirements are changing the protection of processing and storing the customer data.By following these GDPR rules citizens and the businesses also getting benefits.That means GDPR guiding businesses and the citizens to a win win situation.
So the GDPR is protecting EU citizens data and also added extra value for the businesses as well.