Getting ready for the GDPR

Published on March 9, 2018

According to the EU GDPR Portal, the EU General Data Protection Regulation (GDPR) is the most important change in data privacy regulation in 20 years. It replaces the Data Protection Directive 95/46/EC that was designed to harmonize data privacy laws across Europe, to protect and empower all EU citizens’ data privacy and to reshape the […]

According to the EU GDPR Portal, the EU General Data Protection Regulation (GDPR) is the most important change in data privacy regulation in 20 years.

It replaces the Data Protection Directive 95/46/EC that was designed to harmonize data privacy laws across Europe, to protect and empower all EU citizens’ data privacy and to reshape the way companies across the region approach data privacy. It will take effect on 25 May 2018.

GDPR Key Changes
Accuracy

People will now be able to ask organizations at any time to update or correct their data if the information is not accurate.

Data Collection – Transparency

The GDPR was designed to ensure that there will be more transparency between the organisations who collect and control the data and the individuals whose personal data is being collected. Any company which wants to collect data via a web form must communicate clearly to that person what the data is going to be used for.

Purpose and Usage Limitation

Organizations can only use the data collected and stored by them for specified, explicit, and legitimate purposes.

This means they must use “appropriate technical and organizational security measures” to protect personal data against unauthorised processing and accidental loss, disclosure, access, destruction, or alteration.

Retention

Organizations may only hold on to personal data for as long as is necessary to fulfil the intended purpose of collection.

Accountability

The organization needs to keep records to prove compliance and they’ll also need to ensure they have policies in place governing the collection and use of that data.

GDPR fines

There are sanctions for contraventions which are up to €20m or 4% of an organisation’s annual global turnover.

Disclaimer: This blog post is not legal advice for your company to use in complying with EU data privacy laws like the GDPR. Instead, it provides background information to help you better understand the GDPR.

Related Articles

CIPD Level 3 Modules Explained: What You Will Study and Why It Matters

What Are the CIPD Level 3 Modules? They give learners the practical knowledge they need before moving into more advanced HR responsibilities.

Read More
5 Top Benefits of CIPD Level 5 UK

CIPD Level 5 is the qualification that moves HR professionals from basic HR support into more strategic HR practice.

Read More
UK HR Qualification: Why CIPD Is the Best Place to Start

Learn what a CIPD qualification is, how CIPD levels work, and which CIPD course is right for your HR or L&D career.

Read More

Bradfield Offices

London: Unit 2, 6-7 St. Mary at Hill, EC3R 8EE, London, UK

Dubai: Knowledge Park, Block 11, Office 103, P.O Box 500702, Dubai, United Arab Emirates

Email: enquiries@bradfield.co.ukwww.bradfield.co.uk

Find Us On Socials 

Company Registration: Bradfield Learning and Development LTD No. 3835955
© Bradfield Learning & Development 2021. All rights reserved.
arrow-right linkedin facebook pinterest youtube rss twitter instagram facebook-blank rss-blank linkedin-blank pinterest youtube twitter instagram