Getting ready for the GDPR

Published on March 9, 2018

According to the EU GDPR Portal, the EU General Data Protection Regulation (GDPR) is the most important change in data privacy regulation in 20 years. It replaces the Data Protection Directive 95/46/EC that was designed to harmonize data privacy laws across Europe, to protect and empower all EU citizens’ data privacy and to reshape the […]

According to the EU GDPR Portal, the EU General Data Protection Regulation (GDPR) is the most important change in data privacy regulation in 20 years.

It replaces the Data Protection Directive 95/46/EC that was designed to harmonize data privacy laws across Europe, to protect and empower all EU citizens’ data privacy and to reshape the way companies across the region approach data privacy. It will take effect on 25 May 2018.

GDPR Key Changes
Accuracy

People will now be able to ask organizations at any time to update or correct their data if the information is not accurate.

Data Collection – Transparency

The GDPR was designed to ensure that there will be more transparency between the organisations who collect and control the data and the individuals whose personal data is being collected. Any company which wants to collect data via a web form must communicate clearly to that person what the data is going to be used for.

Purpose and Usage Limitation

Organizations can only use the data collected and stored by them for specified, explicit, and legitimate purposes.

This means they must use “appropriate technical and organizational security measures” to protect personal data against unauthorised processing and accidental loss, disclosure, access, destruction, or alteration.

Retention

Organizations may only hold on to personal data for as long as is necessary to fulfil the intended purpose of collection.

Accountability

The organization needs to keep records to prove compliance and they’ll also need to ensure they have policies in place governing the collection and use of that data.

GDPR fines

There are sanctions for contraventions which are up to €20m or 4% of an organisation’s annual global turnover.

Disclaimer: This blog post is not legal advice for your company to use in complying with EU data privacy laws like the GDPR. Instead, it provides background information to help you better understand the GDPR.

Related Articles

How Hard Is CIPD Level 5? An Honest Guide for Learners

CIPD Level 5 is a significant professional qualification, so it is reasonable to ask how difficult it will be before committing your time and money.

Read More
CIPD Level 3 vs Level 5: Which Qualification Should You Choose?

Compare CIPD Level 3 and Level 5, including entry requirements, course content, career outcomes and membership, to choose the right HR qualification.

Read More
CIPD Level 3 Entry Requirements: Who Can Enrol?

The qualification is aimed specifically at people who are new to the profession, currently working in an HR support role or preparing to move into their first people-focused position.

Read More

Bradfield Offices

London: Unit 2, 6-7 St. Mary at Hill, EC3R 8EE, London, UK

Dubai: Knowledge Park, Block 11, Office 103, P.O Box 500702, Dubai, United Arab Emirates

Email: enquiries@bradfield.co.ukwww.bradfield.co.uk

Find Us On Socials 

Company Registration: Bradfield Learning and Development LTD No. 3835955
© Bradfield Learning & Development 2021. All rights reserved.
arrow-right linkedin facebook pinterest youtube rss twitter instagram facebook-blank rss-blank linkedin-blank pinterest youtube twitter instagram