The General Data Protection Regulation (GDPR) came into force on 25 May 2018. The objective behind this European regulation was to modernise laws due to rapid technological changes in order to protect the personal information of individuals and to harmonise data privacy laws across Europe. The GDPR gives greater protection and control to individuals over their information and transforms the way organisations handle information from their customers and employees.
Processing of data covers anything one does with personal data, including holding or storing it either electronically or manually. It is essential that any business that processes personal data about EU citizens complies with the GDPR.
The GDPR outlines six principles that companies or service providers using customers’ personal data must follow for good data protection practice, namely:
When collecting data, organisations must ensure that the processing is legitimate. Data subjects have a right to know how and why their data is being collected and used. This ensures a good company-customer relationship and reduces the risk of complaints and/or requests from data subjects.
Your organisation may be just getting started - or may already have a GDPR programme in place. We can help you make the best of this regulation, regardless of where you are on your GDPR journey. Here is how our team can help you with: