What is GDPR the EU General Data Protection Regulation?

What is the GDPR EU General Data Protection Regulation?

General Data Protection Regulation Defined:

The General Data Protection Regulation (GDPR) (Regulation (EU) 2016/679) is a regulation by which the European Parliament, the Council of the European Union and the European Commission intend to strengthen and unify data protection for all individuals within the European Union  (EU).   https://en.wikipedia.org/wiki/General_Data_Protection_Regulation

On October 6, 2015, the EU’s highest court (ECJ)[1] struck down the Safe Harbor Agreement between the US and the European Commission.

Many believe the EU will move forward with the General Data Protection Regulation (GDPR), “The EU General Data Protection Regulation (GDPR) was proposed in 2012 and aims to apply a single set of data protection rules across the European Union (EU) to protect user’s data.”[2]

The new EU GDPR breach notification requirements mandate the increase in data monitoring, privacy data leak prevention and alerts

GDPR – Some Important Points Regarding General Data Protection Regulation

  • Vast “Personal” Data Pool to include data from cookies, genetic data, IP & MAC addresses
  • Data Profiling will probably require explicit consent from the subjects of profiles
  • PII may need explicit consent for collection and processing
  • Outside of the EU? Activities geared towards EU residents means you are covered even if by Non EU entities.
  • Data Protection Officers must be designated
  • Breach Notifications  Data authorities and consumers must be notified within 72 hours after the discovery of the breach.
  • Big Fines
    • fines of up to 10,000,000 EUR or (for undertakings) 2% of total worldwide annual turnover (whichever is the greatest); or
    • fines of up to 20,000,000 EUR or (for undertakings) 4% of total worldwide annual turnover (whichever is the greatest).[i]

GTB TECHNOLOGIES’ ABILITY TO VISUALIZE AND CONTROL SENSITIVE DATA WILL BE THE CRITICAL KEY TO AN EFFECTIVE GDPR STRATEGY

GDPR Data Protection Suite from GTB Technologies

Sign up for your free risk assessment

Error: Contact form not found.

Visibility: Accurately, discover sensitive data; detect and address broken business process, or insider threats including sensitive data breach attempts.

Protection: Automate data protection, breach prevention and incident response both on and off the network; for example, find and quarantine sensitive data within files exposed on user workstations, FileShares and cloud storage.

Notification: Alert and educate users on violations to raise awareness and educate the end user about cybersecurity and corporate policies.

Education: Start target cyber-security training; e.g., identify end-users violating policies and train them.

  • Employees and organizations have knowledge and control of the information leaving the organization, where it is being sent, and where it is being preserved.
  • Ability to allow user classification to give them influence in how the data they produce is controlled, which increases protection and end-user adoption.
  • Control your data across your entire domain in one Central Management Dashboard with Universal policies.
  • Many levels of control together with the ability to warn end-users of possible non-compliant – risky activities, protecting from malicious insiders and human error.
  • Full data discovery collection detects sensitive data anywhere it is stored, and provides strong classification, watermarking, and other controls.
  • Delivers full technical controls on who can copy what data, to what devices, what can be printed, and/or watermarked.
  • Integrate with GRC workflows.
  • Reduce the risk of fines and non-compliance.
  • Protect intellectual property and corporate assets.
  • Ensure compliance within industry, regulatory, and corporate policy.
  • Ability to enforce boundaries and control what types of sensitive information can flow where.
  • Control data flow to third parties and between business units.