GDPR is regulation that will help unite privacy laws across Europe. Here are some answered questions about GDPR Compliance.
The General Data Protection Regulation (GDPR) will come into effect next year, replacing the Data Protective Directive. This new regulation is meant to help unite privacy laws across Europe and will impose new requirements on organisations handling personal data.
Organisations that collect and use personal information from citizens in the EU will need to comply with the GDPR, regardless of where they are located.
The GDPR was approved and adopted in April 2016. Organisations in the EU will have to comply with EU GDPR by May, 2018.
Organisations can be fined up to 4% of annual global turnover or €20 million. There is a tiered approach to fines. For example, a company can be fined 2% for not having their records in order (article 28), not notifying the supervising authority and data subject about a breach or not conducting an impact assessment.
The GDPR applies to organisations located within the EU and also to organisations located outside of the EU if they handle the personal data of those within the EU. Basically, if you process personal data of anyone who resides in the EU, you must comply with the GDPR.
There are several changes the GDPR has introduced to help organisations and individuals better protect private data. Here are 12 key changes you should know about:
See also: GDPR 101 Part 1: Should I Be Worried?
The biggest difference between the two regulations is PCI DSS focuses on protecting card data, while the GDPR focuses on protecting personal data.
While the PCI DSS may not directly relate to the GDPR, it can help with GDPR obligation to implement technical measures to protect against data breaches.
See also: The Importance of the PCI DSS: Why You Should Get Compliant
Keep in mind that the purpose of the GDPR is to help organisations protect individual’s sensitive data. It’s more about ensuring that organisations improve their own data security.
Need help with data security? Talk with one of our consultants!