From May 25, 2018 the General Data Protection Regulation (GDPR) will be in force. Meaning that from that date the same privacy legislation will apply throughout the European Union. Do you already comply with the GDPR?
GDPR – the biggest changes
The GDPR contains:
-
- Stronger and more extensive privacy rights
- More responsibilities for organizations
- The same, stronger competences for all European Data Protection Authorities, such as the competence to impose fines up to 20 million euros or 4% of the worldwide turnover.
An emphasis will lie on the responsibility of organizations. As an organization you must be able to show that you are compliant with the GDPR. This means, among other things, that you can show which personal data you collect, how you use data, how long you store it and how you secure it.
With these important preparations EY Law can assist. From maturity assessments to complete implementation procedures, we are there to assist in every step of the process.
In this section of our website you can find some more insights around GDPR written by our data privacy specialists.
-
Web analytics tools: according to the French DPA, the use of a proxy server could be a solution to what it considers as unlawful data transfer to the US.
-
The European Commission and the United States agreed to a new data sharing pact
-
Making Europe Great Again or How the Data Act is a key cornerstone to make the EU a leader of the Digital age.
-
Change of power ahead for the Belgian Data Protection Authority?
-
My organization already has a whistleblowing tool. Do I need to take action?
-
How do I ensure confidentiality of the whistleblower under the Whistleblowing Directive?
-
Whistleblowing Directive to be transposed by the end of this week. Should you take action even if Belgium misses the deadline?
-
New campaign urges Internet users and companies to take action against phishers
-
Data protection alert: Updated standard contractual clauses
-
Data protection alert: just in time: European Commission adopts adequacy decisions for the UK
-
How to prepare for – and deal with – an inspection by the Data Protection Authority?
-
Action required: Schrems II Case invalidates EU-U.S. Privacy Shield Framework
-
Embracing the digital age to overcome the challenges of COVID-19
-
Coronavirus (Covid-19) – What organisations must now urgently consider with regard to data protection
-
U bent GDPR compliant. En nu?
-
New cybersecurity obligations for operators of essential services and digital service providers
-
GDPR Newsflash