All Legal & Regulation articles – Page 33
-
Feature
GDPR Subject Access Requests
Handling subject access requests (“SAR”) effectively and within the legal timeframe remains a challenge for many employers especially where SARs are becoming increasingly onerous
-
Feature
Dealing with subject access requests under GDPR
Under the new General Data Protection Regulation (“GDPR”), which will come into force on 25 May 2018, individuals will benefit from heightened rights in terms of their ability to request and access personal data from any entities holding such data about them.
-
Feature
Elizabeth Denham’s Full Speech on Cyber Security and Data Protection
Elizabeth Denham, UK Information Commissioner, ICO talked about how cyber security and data protection are inextricably linked in her speech at the CBI Cyber Security Conference on 13 September 2017.
-
Feature
How to manage a GDPR project
Compliance with the GDPR is likely to be a key project for many companies, especially the far reaching nature of the requirements under the GDPR and potential fines for non-compliance of up to 4% of annual worldwide turnover.
-
Feature
The five essentials of data access control
Organisations now have under a year to prepare for the introduction of the general data protection regulations. One action that needs to be prioritised is establishing clear and secure user access to any data that the organisation holds.
-
Feature
GDPR compliance: Where does the responsibility lie?
The natural assumption ahead of GDPR implementation is that businesses and service providers have, or are, taking steps to ensure that their systems and processes are compliant.
-
Feature
GDPR: What landlords and letting agents need to know
Data protection is about to change dramatically with the introduction of the GDPR, and the housing sector needs to be aware of the implications.
-
Feature
GDPR and storage limitation: time to update your data retention policy?
The gist of the storage limitation principle under the General Data Protection Regulation (“GDPR”) (Art 5(1)(e)) isn’t materially different to the existing principle under the Data Protection Directive. In a nutshell, personal data should not be retained longer than necessary, in relation to the purpose for which such data is processed.
-
Feature
Guidelines and consequences for non-compliance
Even though enforcement doesn’t begin until May 2018, there are some key questions every organisation should be asking itself as the enforcement day approaches.
-
Feature
Five ways technology accelerates GDPR compliance
You may already be familiar with the GDPR. Indeed, you may be working right now on a compliance strategy to target the Regulation. Or maybe there’s still a lot of work to be done: research last year indicated that just 46 percent of organisations are highly confident that they’ll be ready by the implementation date and 88 percent report technological challenges.