Insight into GDPR legislation changes 2018

Insight into GDPR legislation changes 2018

In April 2016 it was announced there will be an amendment to the current GDPR legislation taking affect from 25th May 2018. This legislation covers all countries within the EU.

As with any legislation, sanctions can be imposed from a warning to a fine of up to 4% annual worldwide turnover! Based on this it would be best to take action now, right?!

With over 16,400 searches via Google in the last 24 hours I have put together a very brief blog on the new GDPR legislation…..

Why are they changing the legislation?  

Ultimately, the legislation will strengthen and unify data protection for all individuals within the EU with the aim primarily to give control back to citizens and residents over their personal data and to simplify the regulatory environment for international businesses by unifying the regulation within the EU.

What are the biggest challenges?

The biggest challenge is simply understanding what each business needs to do to ensure you are compliant – as each company is looked at differently as to how long you contact ‘citizens’ to confirm they consent to you keeping their data.

Implementation of the EU GDPR will require comprehensive changes to business practices for companies that have not implemented a comparable level of high privacy before the regulation was enforced.

The European Commission and DPA (Data Protection Authority) have to provide sufficient resources and power to enforce the implementation and a unique level of data protection has to be agreed upon by all European DPA’s since a different interpretation of the regulation might still lead to different levels of privacy.

What do you need to do?

-         Appoint a DPO (Data Protection Officer) - all public organisations and companies with over 250 employees are required to have a DPO.

-         Amend your policies and procedures

-         Ensure staff are trained in how to provide citizens with their data, when to delete data and how to be fully compliant (this will aid you should you be audited)

-         Put a data breach response plan in place – you need to report any data breach within 72hrs if it is likely to affect citizens

-         Ensure you have a ‘Right to be Forgotten’ plan in place (exceptions – legal obligation, public interest or public health)

-         Be aware of SAR (Subject Access Request) changes – the 1st one is now free and the response is now 1 month.

-         Inform citizens of why you will be keeping their data, for how long and what it will be used for – it is important to be transparent!

-         Ensure you only use data for the reason you originally retained it for. 

要查看或添加评论,请登录

Dawn Lewis CertRP CIPD的更多文章

  • Navigating the High Seas vs. Steering the HR Ship: A Comparison

    Navigating the High Seas vs. Steering the HR Ship: A Comparison

    Embarking on a 12-night Canaries cruise with Royal Caribbean and leading a people-focused HR role in the UK may seem…

    1 条评论
  • Private Sector IR35 Postponed

    Private Sector IR35 Postponed

    For the last 3 years I have published posts relating to IR35, whether that is for the Public or Private Sector and…

  • What is 'Pride Month' and should businesses support it?

    What is 'Pride Month' and should businesses support it?

    I’ve spent a large part of this month reading the many trending tweets, Linked In posts, blogs & news articles on Pride…

  • IR35 – 1 year until it hits the Private Sector.

    IR35 – 1 year until it hits the Private Sector.

    With just 1 year to date until the changes to the IR35 legislation within the Private Sector, I looked back on an…

  • Apprenticeship Week

    Apprenticeship Week

    So, last week was National Apprenticeship Week, a whole week celebrating and showcasing the abilities of its…

  • Awareness Days....

    Awareness Days....

    I sat down at my desk, cup of tea in hand ready to start the day when I opened Twitter and noticed my ‘news feed’ was…

  • One year on from the IR35....

    One year on from the IR35....

    I recently read an article where it stated a BBC Presenter may be ordered to pay up to £420k in unpaid tax after HMRC…

  • Post IR35 - how has it affected you?

    Post IR35 - how has it affected you?

    From early 2017 it seemed like all I did was read, listen and talk about IR35. It was great to be considered a good…

  • Be a hero!!

    Be a hero!!

    As we approach the new financial year, as a group we are discussing our standing point with our chosen charity; Naomi…

  • Could giving up sugar help your career?

    Could giving up sugar help your career?

    We all know that too much sugar is bad for our health, let alone our waistlines, but now there is mounting evidence…

    1 条评论

社区洞察

其他会员也浏览了