SlideShare uma empresa Scribd logo
1 de 2
Baixar para ler offline
Imo’s common sense guide to GDPR – the two pager
What is GDPR?
The	new	EU	general	data	protection	law	coming	into	force	in	May	2018.	It	gives	
more	rights	to	individuals	which	will	mean	charities,	clubs	and	small	businesses	
need	to	review	their	procedures	and	make	some	changes.	However,	it’s	not	
actually	that	big	a	change	compared	to	the	data	protection	you	should	already	
be	performing.	Which	you	probably	aren’t.	
Some practical examples of why you need to plan this
• If	you	send	out	an	email	to	a	group	of	people,	do	not	put	all	the	email	
addresses	into	the	cc:	field.	Use	the	bcc	(blind	copy)	field	to	enter	in	the	list	of	
emails,	unless	you	can	show	that	all	those	people	have	given	you	explicit	
consent	to	reveal	their	email	addresses	to	all	the	other	people.	
• Data	has	to	be	kept	safe.	Is	yours	backed	up,	encrypted?	Do	you	have	those	
details	listed	somewhere	in	a	data	security	policy	or	procedure?	Is	one	of	
your	backups	held	offsite	in	case	of	fire,	theft	or	flood?	
• Is	there	a	data	privacy	policy	on	your	website?	And	a	cookies	agreement?	
• Do	you	have	a	form	for	new	customers	or	users?	It	must	request	explicit	
consent	for	their	data	to	be	held,	explain	what	it’s	held	for,	who	by	and	for	
how	long,	and	who	people	contact	if	they	don’t	agree.	
• Do	you	ever	text	customers	notifications	or	reminders?	You	must	inform	
customers	or	users	that	you	are	going	to	do	this,	and	give	an	opt-out	option	
whenever	you	use	it.	
• If	your	premises	were	broken	into	and	a	computer	stolen	that	holds	personal	
data,	you	would	need	to	inform	the	data	protection	commissioner	within	72	
hours	unless	it	is	anonymized	OR	encrypted.	Do	you	know	what’s	on	each	
computer,	and	whether	it’s	encrypted?	
• If	you	receive	a	request	from	a	data	subject	who	wants	to	get	a	copy	of	all	the	
data	you	hold	on	them	and	then	have	it	deleted,	could	you	do	this	within	30	
days	and	free	of	charge?	How	would	you	be	sure	you’d	found	all	their	data?	
That’s	the	law	from	May.	
• What	do	you	know	about	your	Internet	security?	Do	you	have	a	firewall	and		
malware	protection?	Is	access	to	data	protected	eg	by	passworded	accounts?	
• How	can	you	be	sure	all	your	staff	are	using	strong	computer	passwords?	
• If	you	sell	or	pass	on	an	old	computer	no	longer	in	use,	what	is	your	
procedure	to	ensure	there	is	no	personal	data	accessible	from	that	computer	
in	future?	
• Do	you	use	Paypal	to	receive	payments?	This	company	has	restrictive	data	
policies	as	part	of	its	terms	and	conditions	that	imply	customer	information	
may	be	passed	to	third	parties	in	a	jurisdiction	beyond	the	EU	in	a	way	which	
may	not	comply	with	GDPR.
Checklist
• Inventory	your	data	
• Record	who	has	access	(online	and	paper)	to	the	data	
• Check	your	data	security	–	backups,	online,	network	
• Figure	out	who	you	need	to	“repermission”	regarding	their	data	by	May	2018	
• Do	you	need	to	appoint	a	data	protection	officer?	(Probably	not.)	
• Who	is	going	to	be	responsible	for	data	protection	in	the	organization?	
• Revise	direct	marketing	procedures	
• Revise	website	privacy	and	cookies	policy	
• Revise	your	data	protection	procedures,	including	subject	data	access	
requests	
• Make	everyone	in	the	organization	aware	of	the	changes	and	how	they	can	
contribute	
• Keep	checking	for	any	changes	coming	up	to	May	2018	such	as	age	for	
parental	consent	where	children	are	involved.	
The longer version
I	have	a	14-page	version	with	action	lists	and	templates	available	free	of	charge	at	
https://www.slideshare.net/imogenbertin/gdpr-the-imo-guide-draft-2		
This	infographic	from	the	gdprcoalition.ieis	also	helpful.

Mais conteúdo relacionado

Mais procurados

Addressing analytics, data warehouse and Big Data challenges beyond database ...
Addressing analytics, data warehouse and Big Data challenges beyond database ...Addressing analytics, data warehouse and Big Data challenges beyond database ...
Addressing analytics, data warehouse and Big Data challenges beyond database ...
Chris Doolittle
 

Mais procurados (20)

What does GDPR laws mean for Australian businesses
What does GDPR laws mean for Australian businessesWhat does GDPR laws mean for Australian businesses
What does GDPR laws mean for Australian businesses
 
General Data Protection Regulation
General Data Protection RegulationGeneral Data Protection Regulation
General Data Protection Regulation
 
20181125 vef congres gdpr 2019
20181125 vef congres gdpr 201920181125 vef congres gdpr 2019
20181125 vef congres gdpr 2019
 
Big Data LDN 2017: Applied AI for GDPR
Big Data LDN 2017: Applied AI for GDPRBig Data LDN 2017: Applied AI for GDPR
Big Data LDN 2017: Applied AI for GDPR
 
Teleran Data Protection - Addressing 5 Critical GDPR Requirements
Teleran Data Protection - Addressing 5 Critical GDPR RequirementsTeleran Data Protection - Addressing 5 Critical GDPR Requirements
Teleran Data Protection - Addressing 5 Critical GDPR Requirements
 
The Marketing Guide to GDPR Compliance
The Marketing Guide to GDPR ComplianceThe Marketing Guide to GDPR Compliance
The Marketing Guide to GDPR Compliance
 
You Can't Use e-mail after next May - What Are You Going To Do?
You Can't Use e-mail after next May - What Are You Going To Do?You Can't Use e-mail after next May - What Are You Going To Do?
You Can't Use e-mail after next May - What Are You Going To Do?
 
GDPR Compliance Software | General Data Protection Regulation (GDPR) Dashboard
GDPR Compliance Software | General Data Protection Regulation (GDPR) DashboardGDPR Compliance Software | General Data Protection Regulation (GDPR) Dashboard
GDPR Compliance Software | General Data Protection Regulation (GDPR) Dashboard
 
Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...
Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...
Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...
 
BigID Data Sheet: Smart Data Labeling and Tagging
BigID Data Sheet: Smart Data Labeling and TaggingBigID Data Sheet: Smart Data Labeling and Tagging
BigID Data Sheet: Smart Data Labeling and Tagging
 
GDPR - General Data Protection Regulation Preparation
GDPR - General Data Protection Regulation PreparationGDPR - General Data Protection Regulation Preparation
GDPR - General Data Protection Regulation Preparation
 
GDPR in the Digital World
GDPR in the Digital WorldGDPR in the Digital World
GDPR in the Digital World
 
GDPR Compliance
GDPR ComplianceGDPR Compliance
GDPR Compliance
 
dcVAST GDPR Compliance One Pager
dcVAST GDPR Compliance One PagerdcVAST GDPR Compliance One Pager
dcVAST GDPR Compliance One Pager
 
Addressing analytics, data warehouse and Big Data challenges beyond database ...
Addressing analytics, data warehouse and Big Data challenges beyond database ...Addressing analytics, data warehouse and Big Data challenges beyond database ...
Addressing analytics, data warehouse and Big Data challenges beyond database ...
 
Talk1 esc7 muscl-gdpr_debate_v1_2
Talk1 esc7 muscl-gdpr_debate_v1_2Talk1 esc7 muscl-gdpr_debate_v1_2
Talk1 esc7 muscl-gdpr_debate_v1_2
 
GDPR ASAP: A Seven-Step Guide to Prepare for the General Data Protection Regu...
GDPR ASAP: A Seven-Step Guide to Prepare for the General Data Protection Regu...GDPR ASAP: A Seven-Step Guide to Prepare for the General Data Protection Regu...
GDPR ASAP: A Seven-Step Guide to Prepare for the General Data Protection Regu...
 
GDPR
GDPRGDPR
GDPR
 
Piwik PRO The Real Cost of Data Privacy
Piwik PRO The Real Cost of Data Privacy Piwik PRO The Real Cost of Data Privacy
Piwik PRO The Real Cost of Data Privacy
 
What is data protection and why it is important for business
What is data protection and why it is important for businessWhat is data protection and why it is important for business
What is data protection and why it is important for business
 

Semelhante a Swift guide to GDPR

GDPR- Get the facts and prepare your business
GDPR- Get the facts and prepare your businessGDPR- Get the facts and prepare your business
GDPR- Get the facts and prepare your business
Mark Baker
 

Semelhante a Swift guide to GDPR (20)

Treasure Data Marketers Guide to GDPR (Global Data Protection Regulation)
Treasure Data Marketers Guide to GDPR (Global Data Protection Regulation)Treasure Data Marketers Guide to GDPR (Global Data Protection Regulation)
Treasure Data Marketers Guide to GDPR (Global Data Protection Regulation)
 
Are you GDPR Ready? Checklist Whitepaper
Are you GDPR Ready? Checklist WhitepaperAre you GDPR Ready? Checklist Whitepaper
Are you GDPR Ready? Checklist Whitepaper
 
How will GDPR affect your business - Marketing Fox & Birkett Long
How will GDPR affect your business - Marketing Fox & Birkett LongHow will GDPR affect your business - Marketing Fox & Birkett Long
How will GDPR affect your business - Marketing Fox & Birkett Long
 
GDPR Pop Up | Human Capital Department - HR Forum - 26 April 2018
GDPR Pop Up | Human Capital Department - HR Forum - 26 April 2018GDPR Pop Up | Human Capital Department - HR Forum - 26 April 2018
GDPR Pop Up | Human Capital Department - HR Forum - 26 April 2018
 
Gdpr zilla
Gdpr zillaGdpr zilla
Gdpr zilla
 
Slides to Digital Privacy in the B2B Landscape event 04/04/2017
Slides to Digital Privacy in the B2B Landscape event 04/04/2017Slides to Digital Privacy in the B2B Landscape event 04/04/2017
Slides to Digital Privacy in the B2B Landscape event 04/04/2017
 
A Brief Overview on GDPR
A Brief Overview on GDPRA Brief Overview on GDPR
A Brief Overview on GDPR
 
Checklist for SMEs for GDPR compliance
Checklist for SMEs for GDPR complianceChecklist for SMEs for GDPR compliance
Checklist for SMEs for GDPR compliance
 
GDPR Explained in Simple Terms for Hospitality Owners
GDPR Explained in Simple Terms for Hospitality OwnersGDPR Explained in Simple Terms for Hospitality Owners
GDPR Explained in Simple Terms for Hospitality Owners
 
Will GDPR Kill Outbound Marketing?
Will GDPR Kill Outbound Marketing?Will GDPR Kill Outbound Marketing?
Will GDPR Kill Outbound Marketing?
 
Are you GDPRed yet?
Are you GDPRed yet?Are you GDPRed yet?
Are you GDPRed yet?
 
GDPR changes affect direct marketing
GDPR changes affect direct marketingGDPR changes affect direct marketing
GDPR changes affect direct marketing
 
GDPR Ready Presentation - Marc Michaels
GDPR Ready Presentation - Marc MichaelsGDPR Ready Presentation - Marc Michaels
GDPR Ready Presentation - Marc Michaels
 
How will GDPR affect Direct Mail marketing
How will GDPR affect Direct Mail marketingHow will GDPR affect Direct Mail marketing
How will GDPR affect Direct Mail marketing
 
How will GDPR affect Direct Mail Marketing?
How will GDPR affect Direct Mail Marketing?How will GDPR affect Direct Mail Marketing?
How will GDPR affect Direct Mail Marketing?
 
How will GDPR affect direct mail marketing
How will GDPR affect direct mail marketingHow will GDPR affect direct mail marketing
How will GDPR affect direct mail marketing
 
GDPR- Get the facts and prepare your business
GDPR- Get the facts and prepare your businessGDPR- Get the facts and prepare your business
GDPR- Get the facts and prepare your business
 
The GDPR - A data revolution
The GDPR - A data revolutionThe GDPR - A data revolution
The GDPR - A data revolution
 
GDPR: Time to Act
GDPR: Time to ActGDPR: Time to Act
GDPR: Time to Act
 
GDPR Privacy Policy
GDPR Privacy PolicyGDPR Privacy Policy
GDPR Privacy Policy
 

Mais de Imogen Bertin

Mais de Imogen Bertin (20)

2018 Belgooly Show flyer
2018 Belgooly Show flyer2018 Belgooly Show flyer
2018 Belgooly Show flyer
 
Belgooly Show Schedule 2018
Belgooly Show Schedule 2018Belgooly Show Schedule 2018
Belgooly Show Schedule 2018
 
Domestic Entry Form 2018
Domestic Entry Form 2018Domestic Entry Form 2018
Domestic Entry Form 2018
 
Belgooly Fun Dog Show 2018
Belgooly Fun Dog Show 2018Belgooly Fun Dog Show 2018
Belgooly Fun Dog Show 2018
 
Belgoolyshowflyer2017
Belgoolyshowflyer2017Belgoolyshowflyer2017
Belgoolyshowflyer2017
 
Horse and pony entry form
Horse and pony entry formHorse and pony entry form
Horse and pony entry form
 
Belgooly Show Cattle Entry Form 2017
Belgooly Show Cattle Entry Form 2017Belgooly Show Cattle Entry Form 2017
Belgooly Show Cattle Entry Form 2017
 
Belgooly Show Fun Dog Show 2017
Belgooly Show Fun Dog Show 2017Belgooly Show Fun Dog Show 2017
Belgooly Show Fun Dog Show 2017
 
Belgooly Show Domestic Entry Form 2017
Belgooly Show Domestic Entry Form 2017Belgooly Show Domestic Entry Form 2017
Belgooly Show Domestic Entry Form 2017
 
Belgooly Show Schedule 2017
Belgooly Show Schedule 2017Belgooly Show Schedule 2017
Belgooly Show Schedule 2017
 
Belgooly Show 2016 Flyer
Belgooly Show 2016 FlyerBelgooly Show 2016 Flyer
Belgooly Show 2016 Flyer
 
Fun dog show Belgooly
Fun dog show BelgoolyFun dog show Belgooly
Fun dog show Belgooly
 
Belgooly Show Schedule 2016
Belgooly Show Schedule 2016Belgooly Show Schedule 2016
Belgooly Show Schedule 2016
 
Belgooly Show Domestic entry form 2016
Belgooly Show Domestic entry form 2016Belgooly Show Domestic entry form 2016
Belgooly Show Domestic entry form 2016
 
Belgooly show flyer 2015
Belgooly show flyer 2015Belgooly show flyer 2015
Belgooly show flyer 2015
 
Show schedule 2015
Show schedule 2015Show schedule 2015
Show schedule 2015
 
Dometic schedule 2015
Dometic schedule 2015Dometic schedule 2015
Dometic schedule 2015
 
Belgooly show 2014 flyer
Belgooly show 2014 flyerBelgooly show 2014 flyer
Belgooly show 2014 flyer
 
Belgooly Show Animal entry forms
Belgooly Show Animal entry formsBelgooly Show Animal entry forms
Belgooly Show Animal entry forms
 
Belgooly show schedule 2014
Belgooly show schedule 2014Belgooly show schedule 2014
Belgooly show schedule 2014
 

Último

Activity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdfActivity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdf
ciinovamais
 
1029 - Danh muc Sach Giao Khoa 10 . pdf
1029 -  Danh muc Sach Giao Khoa 10 . pdf1029 -  Danh muc Sach Giao Khoa 10 . pdf
1029 - Danh muc Sach Giao Khoa 10 . pdf
QucHHunhnh
 
Vishram Singh - Textbook of Anatomy Upper Limb and Thorax.. Volume 1 (1).pdf
Vishram Singh - Textbook of Anatomy  Upper Limb and Thorax.. Volume 1 (1).pdfVishram Singh - Textbook of Anatomy  Upper Limb and Thorax.. Volume 1 (1).pdf
Vishram Singh - Textbook of Anatomy Upper Limb and Thorax.. Volume 1 (1).pdf
ssuserdda66b
 
Spellings Wk 3 English CAPS CARES Please Practise
Spellings Wk 3 English CAPS CARES Please PractiseSpellings Wk 3 English CAPS CARES Please Practise
Spellings Wk 3 English CAPS CARES Please Practise
AnaAcapella
 

Último (20)

UGC NET Paper 1 Mathematical Reasoning & Aptitude.pdf
UGC NET Paper 1 Mathematical Reasoning & Aptitude.pdfUGC NET Paper 1 Mathematical Reasoning & Aptitude.pdf
UGC NET Paper 1 Mathematical Reasoning & Aptitude.pdf
 
Activity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdfActivity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdf
 
Spatium Project Simulation student brief
Spatium Project Simulation student briefSpatium Project Simulation student brief
Spatium Project Simulation student brief
 
1029 - Danh muc Sach Giao Khoa 10 . pdf
1029 -  Danh muc Sach Giao Khoa 10 . pdf1029 -  Danh muc Sach Giao Khoa 10 . pdf
1029 - Danh muc Sach Giao Khoa 10 . pdf
 
On National Teacher Day, meet the 2024-25 Kenan Fellows
On National Teacher Day, meet the 2024-25 Kenan FellowsOn National Teacher Day, meet the 2024-25 Kenan Fellows
On National Teacher Day, meet the 2024-25 Kenan Fellows
 
SOC 101 Demonstration of Learning Presentation
SOC 101 Demonstration of Learning PresentationSOC 101 Demonstration of Learning Presentation
SOC 101 Demonstration of Learning Presentation
 
Introduction to Nonprofit Accounting: The Basics
Introduction to Nonprofit Accounting: The BasicsIntroduction to Nonprofit Accounting: The Basics
Introduction to Nonprofit Accounting: The Basics
 
This PowerPoint helps students to consider the concept of infinity.
This PowerPoint helps students to consider the concept of infinity.This PowerPoint helps students to consider the concept of infinity.
This PowerPoint helps students to consider the concept of infinity.
 
Mehran University Newsletter Vol-X, Issue-I, 2024
Mehran University Newsletter Vol-X, Issue-I, 2024Mehran University Newsletter Vol-X, Issue-I, 2024
Mehran University Newsletter Vol-X, Issue-I, 2024
 
Sociology 101 Demonstration of Learning Exhibit
Sociology 101 Demonstration of Learning ExhibitSociology 101 Demonstration of Learning Exhibit
Sociology 101 Demonstration of Learning Exhibit
 
Basic Civil Engineering first year Notes- Chapter 4 Building.pptx
Basic Civil Engineering first year Notes- Chapter 4 Building.pptxBasic Civil Engineering first year Notes- Chapter 4 Building.pptx
Basic Civil Engineering first year Notes- Chapter 4 Building.pptx
 
Unit-IV- Pharma. Marketing Channels.pptx
Unit-IV- Pharma. Marketing Channels.pptxUnit-IV- Pharma. Marketing Channels.pptx
Unit-IV- Pharma. Marketing Channels.pptx
 
Mixin Classes in Odoo 17 How to Extend Models Using Mixin Classes
Mixin Classes in Odoo 17  How to Extend Models Using Mixin ClassesMixin Classes in Odoo 17  How to Extend Models Using Mixin Classes
Mixin Classes in Odoo 17 How to Extend Models Using Mixin Classes
 
How to Create and Manage Wizard in Odoo 17
How to Create and Manage Wizard in Odoo 17How to Create and Manage Wizard in Odoo 17
How to Create and Manage Wizard in Odoo 17
 
SKILL OF INTRODUCING THE LESSON MICRO SKILLS.pptx
SKILL OF INTRODUCING THE LESSON MICRO SKILLS.pptxSKILL OF INTRODUCING THE LESSON MICRO SKILLS.pptx
SKILL OF INTRODUCING THE LESSON MICRO SKILLS.pptx
 
Towards a code of practice for AI in AT.pptx
Towards a code of practice for AI in AT.pptxTowards a code of practice for AI in AT.pptx
Towards a code of practice for AI in AT.pptx
 
Application orientated numerical on hev.ppt
Application orientated numerical on hev.pptApplication orientated numerical on hev.ppt
Application orientated numerical on hev.ppt
 
Understanding Accommodations and Modifications
Understanding  Accommodations and ModificationsUnderstanding  Accommodations and Modifications
Understanding Accommodations and Modifications
 
Vishram Singh - Textbook of Anatomy Upper Limb and Thorax.. Volume 1 (1).pdf
Vishram Singh - Textbook of Anatomy  Upper Limb and Thorax.. Volume 1 (1).pdfVishram Singh - Textbook of Anatomy  Upper Limb and Thorax.. Volume 1 (1).pdf
Vishram Singh - Textbook of Anatomy Upper Limb and Thorax.. Volume 1 (1).pdf
 
Spellings Wk 3 English CAPS CARES Please Practise
Spellings Wk 3 English CAPS CARES Please PractiseSpellings Wk 3 English CAPS CARES Please Practise
Spellings Wk 3 English CAPS CARES Please Practise
 

Swift guide to GDPR

  • 1. Imo’s common sense guide to GDPR – the two pager What is GDPR? The new EU general data protection law coming into force in May 2018. It gives more rights to individuals which will mean charities, clubs and small businesses need to review their procedures and make some changes. However, it’s not actually that big a change compared to the data protection you should already be performing. Which you probably aren’t. Some practical examples of why you need to plan this • If you send out an email to a group of people, do not put all the email addresses into the cc: field. Use the bcc (blind copy) field to enter in the list of emails, unless you can show that all those people have given you explicit consent to reveal their email addresses to all the other people. • Data has to be kept safe. Is yours backed up, encrypted? Do you have those details listed somewhere in a data security policy or procedure? Is one of your backups held offsite in case of fire, theft or flood? • Is there a data privacy policy on your website? And a cookies agreement? • Do you have a form for new customers or users? It must request explicit consent for their data to be held, explain what it’s held for, who by and for how long, and who people contact if they don’t agree. • Do you ever text customers notifications or reminders? You must inform customers or users that you are going to do this, and give an opt-out option whenever you use it. • If your premises were broken into and a computer stolen that holds personal data, you would need to inform the data protection commissioner within 72 hours unless it is anonymized OR encrypted. Do you know what’s on each computer, and whether it’s encrypted? • If you receive a request from a data subject who wants to get a copy of all the data you hold on them and then have it deleted, could you do this within 30 days and free of charge? How would you be sure you’d found all their data? That’s the law from May. • What do you know about your Internet security? Do you have a firewall and malware protection? Is access to data protected eg by passworded accounts? • How can you be sure all your staff are using strong computer passwords? • If you sell or pass on an old computer no longer in use, what is your procedure to ensure there is no personal data accessible from that computer in future? • Do you use Paypal to receive payments? This company has restrictive data policies as part of its terms and conditions that imply customer information may be passed to third parties in a jurisdiction beyond the EU in a way which may not comply with GDPR.
  • 2. Checklist • Inventory your data • Record who has access (online and paper) to the data • Check your data security – backups, online, network • Figure out who you need to “repermission” regarding their data by May 2018 • Do you need to appoint a data protection officer? (Probably not.) • Who is going to be responsible for data protection in the organization? • Revise direct marketing procedures • Revise website privacy and cookies policy • Revise your data protection procedures, including subject data access requests • Make everyone in the organization aware of the changes and how they can contribute • Keep checking for any changes coming up to May 2018 such as age for parental consent where children are involved. The longer version I have a 14-page version with action lists and templates available free of charge at https://www.slideshare.net/imogenbertin/gdpr-the-imo-guide-draft-2 This infographic from the gdprcoalition.ieis also helpful.