How we’ll prepare for the General Data Protection Regulation (GDPR)

Slides:



Advertisements
Similar presentations
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
Advertisements

An overview of the Data Protection Act Legal framework The Data Protection Act 1998 came into force in March 2001, replacing the Data Protection.
Data Protection STFC Presentation to PPD Senior Staff 26/11/2009 FoI/DP team.
Understanding Privacy An Overview of our Responsibilities.
Now that you’re registered Matt Crichton | Communications Officer Anne Duffy | Advice Services Officer Amanda Watkins I Senior Manager, Compliance Regina.
General Data Protection Regulation (EU 2016/679)
Data Protection Regulation
Tony Sheppard Mobile Guardian
General Data Protection Regulation (GDPR)
Accountability & Structured Privacy Management
Ian De Freitas, Partner, Farrer & Co 6 September 2017
What Does GDPR mean for you
Overview General Data Protection Regulation (GDPR)
Understanding EU GDPR from an Office 365 perspective
Microsoft 365 Get help with regulatory compliance
General Data Protection Regulation (GDPR)
GDPR Awareness and Training Workshop
General Data Protection Regulations: what you really need to know
General Data Protection Regulations Preparing for the upcoming changes in data protection law David Jones & Angharad Williams.
Museums + Heritage webinar, 30 November 2017
The EU General Data Protection Regulation (GDPR)
GDPR Overview Gydeline – October 2017
GDPR support January GDPR support January 2018.
GDPR Overview Gydeline – October 2017
INTRODUCTION TO GDPR 19/09/2018.
General Data Protection Regulation (GDPR)
Data Protection and GDPR
GDPR - Individual’s Rights
GENERAL DATA PROTECTION REGULATION (GDPR)
General Data Protection Regulations
Introduction to GDPR 09/11/2018.
Reporting personal data breaches to the ICO
GDPR and paper records Why it’s not all cyber and fines Gary Shipsey
General Data Protection Regulation (GDPR)
The session will commence at Please mute your microphone
GDPR in schools and academies
Sue Cawthray, CEO/ Gill Thrush, Catering Manager
GDPR and Health and Safety
Data protection reform – update from the ICO
Information Governance
G.D.P.R General Data Protection Regulations
Data protection in the Education Sector - understanding the impact of GDPR Tuesday 23rd January 2018.
From DPA to GDPR: the key elements
Data Protection and GDPR – An introduction for Baptist Churches
The new data protection rules
GDPR – Practical Implementation Managing contracts, procurement and relationships with suppliers Terry Brewer Chief Executive.
General Data Protection Regulation
Data Protection Managing risk is not just about health and safety and insurance. It’s about data protection too. New stricter data protection legislation.
Preparing for the GDPR - What do we need to do if we process children’s personal data? Data Protection Practitioners’ Conference 2018 #DPPC2018.
Data Protection What’s new about The General Data Protection Regulation (GDPR) May 2018? Call Kerry on Or .
General Data Protection Regulation (GDPR)
A whistle stop tour of GDPR
Mathew Norman, Policy & Public Affairs Officer, RLA Wales
LORDSHILL HEALTH CENTRE GDPR Information
GDPR (General Data Protection Regulation)
General Data Protection Regulations 2018
Detecting, reporting & investigating data breaches under GDPR
 How does GDPR impact your business? Pro Tip: Pro Tip: Pro Tip:
GDPR Quiz Today’s trainer: Click here to use Kahoot! 1
By The Data Protection Commissioner
 GDPR Readiness Quiz Quick Insight: Quick Insight: Quick Insight:
#eaThinkData Get Ready for GDPR #eaThinkData.
What Governors need to know about GDPR
The General Data Protection Regulations 2016
GDPR: Understanding your obligations and the ongoing challenges
GDPR Session
Is your medico-legal practice GDPR compliant?
GDPR Workshop – Partnerships for Jewish Schools
National data opt-out - Preparing for implementation
Getting Ready For GDPR Simon Marks Director
Presentation transcript:

How we’ll prepare for the General Data Protection Regulation (GDPR) An overview for local trustees This presentation is to be delivered by the Chief Officer or Senior Manager to Trustee boards.

What is the GDPR? From 25 May 2018 all UK organisations, including Citizens Advice, will need to comply with a new data protection law, the General Data Protection Regulation (GDPR) The GDPR is an evolution of the Data Protection Act, not a revolution. It’s a good time to review how we look after personal data and make any changes to comply with the GDPR If we don’t comply with the law then we risk reputational damage and increased regulatory action

What are the key changes under the GDPR? We need to demonstrate how we comply with the law and that we have good governance structures We must document the data we hold, where it came from and who we share it with We need to clearly explain to clients how we’ll use their data - for example in our privacy notices We must be able to respond to requests from clients, staff and volunteers to delete, remove or change data we hold

What are the key changes under the GDPR? We have to report serious data breaches to the ICO within 72 hours Our consent to use or share data will need to be more specific and we’ll need to keep a record There are higher fines if the law is breached

How will we be supported? Citizens Advice will be supporting us to become compliant through: Updated tools, policies, templates, guidance and checklists Online webinars Training FAQs Phone and email support from the operations team and Relationship Managers We can also get support from the Information Commissioner's Office as they provide: Detailed guidance on each area of the GDPR An overview of the GDPR changes and legislation Online and telephone advice and support What Citizens Advice will do Provide updated policies, guidance, training and checklists to help you become compliant Hold monthly online surgeries where you can ask questions Continue to provide support through Operations Support and relationship managers ICO have resources and information available on their website Citizens Advice are planning to provide more guidance as GDPR draws nearer, for example: Consent, subject access request

What we’ll do when and how we’ll get support Phase 1 November Phase 2 December - January Phase 3 February - March Phase 4 April - May Identify who in our service looks after our data Make sure we share data we are handling it correctly Identify how we’ll respond to requests to see copies of the data you hold Look at how we get consent Document the data we hold Review whether we send any data outside of the EU Update our privacy notices Make sure we can carry out the GDPR rights of our clients Review whether we need to do a privacy impact assessment Make sure our staff and volunteers know what to do if there’s a data breach Review whether we support anyone under 16 years old Remind all staff and volunteers of best practice and our update policies Support pack Annual conference Join 1 of 3 webinars Support pack Chief Officers Forum Join 1 of 3 webinars Support pack Training Join 1 of 3 webinars Support pack Online drop-in surgery Join 1 of 3 webinars Ask the operations team, our Relationship Manager, or visit our FAQs

What do trustees need to do now? Identify a Trustee to act as an ‘accounting officer’ for information risk and GDPR Discuss GDPR as an agenda item at our board meetings Check that each step of the ‘Helping you get ready for GDPR’ pack is completed Ensure any data protection or privacy risks are included on the local Citizens Advice risk register

Thank you [Insert name of team or presenter] [Insert any contact details you want to share]