Presentation is loading. Please wait.

Presentation is loading. Please wait.

View the Microsoft external site for more information: www. Microsoft

Similar presentations


Presentation on theme: "View the Microsoft external site for more information: www. Microsoft"— Presentation transcript:

1 View the Microsoft external site for more information: www. Microsoft
View the Microsoft external site for more information: Partner Opportunities with the General Data Protection Regulation (GDPR)

2 1 2 3 Agenda Introduction to the GDPR Partner Opportunities
with the GDPR Next Steps 1 2 3

3 Providing clarity and consistency for the protection of personal data
12/21/2017 3:44 PM Providing clarity and consistency for the protection of personal data The General Data Protection Regulation (GDPR) imposes new rules on organizations that offer goods and services to people in the European Union (EU), or that collect and analyze data tied to EU residents, no matter where they are located. Enhanced personal privacy rights Increased duty for protecting data Mandatory breach reporting Significant penalties for non-compliance © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

4 What are the key changes with the GDPR?
Microsoft Envision 2016 12/21/2017 3:44 PM What are the key changes with the GDPR? Personal privacy Individuals have the right to: Access their personal data Correct errors in their personal data Erase their personal data Object to processing of their personal data Export personal data Controls and notifications Strict security requirements Breach notification obligation Appropriate consents for data processing Confidentiality Recordkeeping Transparent policies Transparent and easily accessible policies regarding: Notice of data collection Notice of processing Processing details Data retention/deletion IT and training Need to invest in: Privacy personnel and employee training Data policies Data Protection Officer (larger organizations) Processor/Vendor contract © 2016 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

5 Partnering with you to prepare for GDPR
12/21/2017 3:44 PM Partnering with you to prepare for GDPR Share What we’ve learned in our own journey to compliance Invest In additional features and functions to advance compliance capabilities Microsoft’s goal is to streamline your GDPR compliance through smart technology, innovation, and collaboration. Together we’ll help you build a more secure environment, simplify your compliance with the GDPR, and give you the tools and resources you need to be successful. Preparing for GDPR Demonstrate How our existing enterprise products & services can jumpstart compliance © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

6 IDC Predicts The General Data Protection Regulation (GDPR) Will Create a $3.5B Market Opportunity for Security and Storage Vendors Source: IDC Press release, 03 Nov 2015

7 Why does GDPR create opportunities for partners?
Potential Global Impact Operational Complexity Significant Fines Need for Privacy Professionals The regulation applies to companies that trade products or services with European customers or in European market1. GDPR policies require privacy-by-design and by-default. Partners can become privacy consultants or implementers to support customer GDPR journey. Fines for non-compliance can be up to 4% of your global revenues or €20 million, whichever is greater. A fine of this magnitude could put many companies out of business1. There will be a serious resource shortfall of Privacy Professionals. Professional Services vendors will pick up the slack2. Source: 1 Enza Iannopollo, April 20, Forrester’s Predictions 2017: Six Ways Privacy Will Rock Global Business, By Fatemeh Khatibloo with Christopher McClean, Heidi Shey, Enza Iannopollo, Laura Koetzle, Srividya Sridharan, Alexander Spiliotes, Christian Austin, Nov 1, 2016

8 5 Core GDPR Rules Require Your Attention Now1
with Microsoft’s recommendation on the next steps A large number of firms that do business in the Europe market or with European customers will have to tackle privacy rules for the first time. Microsoft Cloud services and your GDPR-related services can be critical to compliance. Data Breach Notification Partners can work closely with security leaders to provide GDPR assessments and determine how Microsoft Cloud services and partner services can enable customers to meet privacy-by-design requirements. Privacy-by-design With 72-hour data breach notification, partners can utilize Microsoft Cloud services to become an incident response (IR) orchestrator through managed services or professional services. Global Mandate At least 75,000 DPOs will be required by 2018 WW2. Partners can consider providing DPO as a service to customers. Data Privacy Officer (DPO) Per GDPR policy, organizations must demonstrate that they have implemented appropriate measures to mitigate privacy risks. Partners and customers can use Microsoft Cloud services to build evidence of mitigation strategies and controls. Evidence of risk mitigation Source: 1 Brief: You Need An Action Plan For The GDPR, Enza Iannopollo with Christopher McClean, Fatemeh Khatibloo, Bill Barringham, Andrew Reese, Oct 14, Study: GDPR’s global reach to require at least 75,000 DPOs worldwide, Rita Heimes, CIPP/US, Sam Pfeifle, Nov 9, 2016

9 Microsoft is here to help partners and customers
12/21/2017 3:44 PM Microsoft is here to help partners and customers With our long-standing commitment to security and privacy, you can trust Microsoft to provide the products and services you’ll need as you work toward GDPR compliance. Our goal is to streamline your GDPR compliance through smart technology, innovation, and collaboration.  © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

10 Why Partners should utilize Microsoft solution for GDPR?
1 Microsoft is the first major cloud services provider to pledge GDPR compliance1 2 Microsoft has been an industry leader on Model Clauses, HIPAA, ISO 27018, and we are taking a similar lead on GDPR compliance 3 Microsoft offers the most comprehensive set of compliance capabilities of any major cloud service provider2 – we have the best baseline to build from 4 Microsoft provides a single stack solution – all pieces work well together2 5 Microsoft’s speed of solution innovation is high3 – we will continue to innovate to enable our partners and customers to meet their compliance needs Source: 1 March 16, March 16, 2017 3 MDC Partner Research’s Microsoft and Office 365 Security Solution Selling Qualitative Research Findings, December 2016

11 To provide effective services to your customers, you should not wait until the regulation takes effect in May 2018 to prepare.

12 Process to support your customers
12/21/2017 3:44 PM Process to support your customers 1 2 3 4 5 Discover Identify what personal data they have and where it resides. Control Manage how personal data is used and accessed Protect Establish security controls to prevent, detect, and respond to vulnerabilities & data breaches Report Action data requests and keep required documentation Review Analyze data and systems, stay compliant and reduce risk © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

13 Windows 10 Protect devices with industry-leading encryption, anti-malware technologies, and identity and access solutions Protecting Personal Data Windows Hello Windows Defender Device Guard Credential Guard BitLocker Drive Windows Information Protection Shielded Virtual Machines Just Enough Administration and Just in Time Administration

14 Microsoft Azure Safeguard customer data in the cloud, including personal data, with industry-leading security measures and privacy policies Controlling Access Azure Active Directory Microsoft Azure Information Protection Protecting Personal Data Azure Security Center Data Encryption in Azure Storage Azure Key Vault Log Analytics

15 Office and Office 365 Secure your IT environment and achieve compliance with enterprise-grade user and administrative controls Controlling Access Data Loss Prevention (DLP) Advanced Data Governance Office 365 eDiscovery Customer Lockbox Protecting Personal Data Advanced Threat Protection (ATP) Threat Intelligence Advanced Security Management (ASM) Office 365 Audit Logs

16 Enterprise Mobility + Security
Protect customer data both in the cloud, and on-premises, with industry-leading security capabilities Discover, Control, and Protect Personal Data Microsoft Azure Active Directory (Azure AD) Microsoft Cloud App Security Microsoft Intune Microsoft Azure Information Protection Microsoft Advanced Threat Analytics (ATA)

17 Dynamics 365 Safeguard customer data in the cloud, including personal data, with industry-leading security measures and privacy policies Controlling Access Data Loss Prevention (DLP) Advanced Data Governance Office 365 eDiscovery Customer Lockbox Protecting Personal Data Advanced Threat Protection (ATP) Threat Intelligence Advanced Security Management (ASM) Office 365 Audit Logs

18 Next Steps Don’t forget to follow this check list!
Determine if you need to be GDPR compliance. If so, act now! Reassure your customers that the Microsoft cloud services will be compliant with the GDPR and we will share our knowledge to help them get compliant in time for May 25, Learn more about the GDPR and Microsoft Security offerings Identify your offerings and go-to-market strategy, using Microsoft Cloud Pilot your services and offerings with a few customers before you go broad.

19 GDPR Resources http://Microsoft.com/GDPR
Blog Post ( Microsoft Online Services and GDPR Microsoft Azure Office and Office 365 Microsoft Dynamics 365 Enterprise Mobility Suite Windows 10

20 © 2017 Microsoft Corporation. All rights reserved
© 2017 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.


Download ppt "View the Microsoft external site for more information: www. Microsoft"

Similar presentations


Ads by Google