Skip to main content

Update from European Commission on Implementation of GDPR

On 24th January, the European Commission produced a progress report on the implementation of the General Data Protection Regulation across Europe which comes into effect on 25th May 2018.

Titled the "Commission guidance on the direct application of the General Data Protection Regulation", they call for "all concerned actors to intensify the ongoing work to ensure the consistent application and interpretation of the new rules across the EU and to raise awareness among businesses and citizens".



The paper identifies that the directive strengthns the protection of individual rights and open opportunities for companies and business by:
  • A harmonised  legal  framework  leading  to  a  uniform  application  of  rules  to  the benefit  of  the  EU  digital  single  market.
  • A  level-playing  field  for  all  companies  operating  in  the  EU  market. 
  • The  principles  of  data  protection  by  design  and  by  default
  • Stronger individuals’ rights
  • More  control  over  personal  data  for  individuals.
  • Stronger protection against data breaches
  • The  Regulation  gives  all  data  protection  authorities  the  power  to  impose  fines  on controllers and processors.
  • More flexibility for controllers and processors processing personal data  due to unambiguous provisions on responsibility (the accountability principle)
  • More  clarity  on  the  obligations of processors and the responsibility of controllers when selecting a processor
  • A modern governance system to ensure that the rules are enforced more consistently and  strongly.
  • The  protection  of  the  personal  data  guaranteed  by  the  Regulation  travels  with  the data outside the EU ensuring a high level of protection
 The full paper is available to download here.

Comments

Popular posts from this blog

ICO to fine Marriott International £99m for 339 Guest Records Breach

The UK Information Commissioner’s Office (ICO) has issued a notice that it intends to fine Marriott International £99m in relation to a reservation database incident announced on November 30, 2018.

Football Association of Ireland (FAI) confirm security breach of payroll systems

FAI staff have been warned in an internal memo that bank account and PPS details could have been accessed during the hacking of the association's email servers.

Dixons Carphone Data Breach - Now Up to 10 Million Customer Records

Although a pre GDPR data breach, Dixons announced on 31st July 2018 an update to the breach they identified in June. When initially announced on 13th June, it was 1.2 million customer records involved, but with further investigation the breach now looks to have affected approximately 10 million records.