Private sector and GDPR

Slides:



Advertisements
Similar presentations
Confidentiality & Records Management. What is Information Governance? What is Records Management?
Advertisements

Property of Common Sense Privacy - all rights reserved THE DATA PROTECTION ACT 1998 A QUESTION OF PRINCIPLES Sheelagh F M.
Privacy Law for Network Administrators Steven Penney Faculty of Law University of New Brunswick.
Data Protection Act AS Module Heathcote Ch. 12.
1 Role of the Data Protection Officer Donald Henderson Information Compliance Manager 30 September 2010.
Information Management in Retail: A Legal Perspective Chris Hill Barlow Lyde & Gilbert LLP 17 September 2009.
Risky business legal tips for safe selling online Internet World Nigel Miller Partner, Fox Williams LLP 1 May 2008.
1 TAIEX JHA Workshop on data protection and cloud computing Data transfers to third countries and standard contractual clauses Skopje, 29 May 2014.
The EU General Data Protection Regulation Frank Rankin.
Data protection—training materials [Name and details of speaker]
František Nonnemann Skopje, 10th October 2012 JHA Data protection and re-use of PSI as a tool for public control–CZ approach.
How Prepared are Nordic CIOs for GDPR Compliance?
General Data Protection Regulation (EU 2016/679)
Data Protection Regulation
Information Management in Government: A Legal Perspective
General Data Protection Regulation (GDPR)
Data Protection Officer’s Overview of the GDPR
Accountability & Structured Privacy Management
Unpacking the European Commission General Data Protection Regulation
Preparing for a data protection audit 28 September 2017
Overview General Data Protection Regulation (GDPR)
Understanding EU GDPR from an Office 365 perspective
Microsoft 365 Get help with regulatory compliance
Presentation to GTMC on GDPR
GDPR – What’s it all about???
General Data Protection Regulations: what you really need to know
General Data Protection Regulation
General Data Protection Regulations Preparing for the upcoming changes in data protection law David Jones & Angharad Williams.
KEY CHANGES TO THE DATA PROTECTION LANDSCAPE
Museums + Heritage webinar, 30 November 2017
GDPR Overview Gydeline – October 2017
By: Eamon Callahan and Wilston Johnston
Information Governance and Data Privacy: A World of Risk
Data Protection Legislation
GDPR Overview Gydeline – October 2017
Head of Information Management Services Crown Worldwide
The European Union General Data Protection Regulation (GDPR)
Swedbank’s view on GDPR: challenges and opportunities
GDPR Road map to Compliance.
Radar Watchkeeping: Have you monitored your Communication department’s radar to avoid collisions with the new Regulation? 43rd EDPS-DPO meeting, 31 May.
Bob Siegel President Privacy Ref, Inc.
GDPR - Individual’s Rights
GENERAL DATA PROTECTION REGULATION (GDPR)
The General Data Protection Regulation (GDPR)
Sue Cawthray, CEO/ Gill Thrush, Catering Manager
New Data Protection Legislation
G.D.P.R General Data Protection Regulations
From DPA to GDPR: the key elements

GDPR Overview and Use Cases.
General Data Protection Regulation
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
Mathew Norman, Policy & Public Affairs Officer, RLA Wales
LORDSHILL HEALTH CENTRE GDPR Information
GDPR For The Voluntary Sector
Data Mapping On the Journey to Accountability
IMPLICATIONS OF GDPR ROBERT BELL.
Data Protection and Audit
Welcome!.
General Data Protection Regulations (GDPR) Training
 How does GDPR impact your business? Pro Tip: Pro Tip: Pro Tip:
GDPR & Accountability ISACA Ireland Annual Conference 2018
Presentation privacy law
The title: The implementation of Data Protection
Fines, Sanctions and Compensation The teeth in the GDPR & Data Protection Act 2018 by Simon McGarr, CIPP/E Data Compliance Europe.
Overview of the recommendations regarding approximation of the Law on personal data protection to the new EU General data protection regulation Valerija.
General Data Protection Regulation (GDPR)
General Data Protection Regulation “11 months in”
Getting Ready For GDPR Simon Marks Director
A. Šidlauskas Mykolas Romeris University (LITHUANIA)
Presentation transcript:

Private sector and GDPR dr. iur. Ants Nõmper 7th September 2017

1 2 3 contents Identification of new required implementations Legislative obstacles 3 IT-technical obstacles

1 IDENTIFICATION ISSUE: Is data protection relevant? What are the main changes? Lack of knowledge that data protection is important Confusion and panic produced by media No material changes in data protecion in Baltic countries Data protection will be more important to private sector Private sector cannot ignore data protection

1 IDENTIFICATION First step: data protection compliance audit SOLUTION: First step: data protection compliance audit Second step: updating documentation, action plans Third step: data protection trainings to employees

1 EXAMPLE Lithuanian beauty clinic processed client data, including before-and-after photos Data security measures were not followed Client data was leaked Consequences before GDPR: low fine Consequences after GDPR: large fine

COOPERATION PARTNER CONTRACTS 2 LEGISLATIVE OBSTACLES Common mistakes CONSENTS COOPERATION PARTNER CONTRACTS INTERNAL RULES Pre-ticked Internet and e-mail use is not regulated Personal data processing is not regulated Data subject is not informed of right to withdraw Employees are not notified of intra- group data transfers Consent is obtained by TOS

3 IT-TECHNICAL OBSTACLES Implementing GDPR requires implementing new IT-technical solutions and involving IT specialists on a daily basis; IT technical solution to comply with data portability requests (GDPR art. 20); IT technical solution for recording processing activities (GDPR art 30); IT technical solution to comply with data retention terms; IT technical solutions for complying with security of processing (GDPR art. 32) implementing security measures and encryption; IT technical solution to comply with „need-to-know“ basis access principle; IT technical solution for complying with data breach notification requirements